Application Penetration Tester (Assistant Vice President) at Citi
, , Singapore -
Full Time


Start Date

Immediate

Expiry Date

10 Mar, 26

Salary

0.0

Posted On

10 Dec, 25

Experience

5 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Application Security, Penetration Testing, Ethical Hacking, Security Tools, OWASP Top 10, CWE/SANS Top 25, Threat Modeling, Application Architecture, Technical Writing, Presentation Skills, Vulnerability Assessment, Defensive Security, Security Controls, Counter Measures, Process Improvement, Automation

Industry

Financial Services

Description
We're currently looking for a high caliber professional to join our team as AVP Application Penetration Tester based in Singapore. Being part of our team means that we'll provide you with the resources to meet your unique needs, empower you to make healthy decision and manage your financial well-being to help plan for your future. For instance: If your background is penetration testing with expertise in application security such as: hands-on ethical hacking using security tools (Burp Suite, AppScan and etc.), knowledge of OWASP Top 10, CWE/SANS Top 25, Threat Modeling, understanding application architecture, design and functionalities, then our application penetration testing team is the right place for you! ------------------------------------------------------ For complementary skills, please see above and/or contact the recruiter. ------------------------------------------------------ Act as a subject matter expert in offensive information security performing grey and black box application reviews, programming, networking, operating systems, and databases. Drive remediation by outlining a defense-in-depth approach to business stakeholders and providing strategic solutions to developers on effective security controls and counter measures. Have strong technical writing and presentation skills to report and articulate the vulnerability assessment results to any audience. Contribute to the review of internal processes and activities and assist in identifying potential opportunities for improvement and automation. Must have or be willing to obtain Industry-accredited security certifications such as: GIAC GWAPT, GPEN, OSCP, CISSP LI-Hybrid ------------------------------------------------------ Job Family Group: Technology ------------------------------------------------------ Job Family: Information Security ------------------------------------------------------ Time Type: Full time ------------------------------------------------------
Responsibilities
Act as a subject matter expert in offensive information security, performing grey and black box application reviews. Drive remediation by outlining a defense-in-depth approach and providing strategic solutions to developers.
Loading...