Axiata Digital Labs

Security Engineer - Penetration Testing

Axiata Digital Labs  •  Kuala Lumpur, MY (Onsite)  •  3 months ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

Key Responsibilities

  • Perform manual penetration testing of web application, mobile, API and networks to discover and exploit vulnerabilities
  • Clearly document, communicate findings and remediation recommendations to the application/service owners
  • Liaise with internal stakeholders to ensure timely delivery of security assessments
  • Perform regular VA/PT of web, mobile, network and API applications
  • Identify the internet exposure of our operating companies and constantly evaluate the security posture
  • Document vulnerabilities, impact, and recommendations in a systematic manner
  • Take on security challenges, take ownership of them and drive them to completion

Person Specifications

  • Minimum 2+ years of experience performing vulnerability assessments and penetration testing on Web/Mobile/Network/API applications
  • Excellent understanding of OWASP Top 10 vulnerabilities and its mitigations
  • Clear understanding of networking fundamentals: OSI layers, TCP/IP, protocols, etc
  • Experience working on a GNU/Linux based penetration testing operating system and the command line (such as Kali Linux, Parrot, BlackArch, etc.)
  • Experience with automation scripting and fluent in at least one programming/scripting language
  • Experience working on open-source and commercial tools like Burp Suite, Nuclei, Frida, Nessus, etc
  • Good spoken and written English skills

Nice To Have

  • Security certifications: OSCP, OSWE, CRTP, GIAC certs or equivalent
  • Knowledge of Cloud penetration testing: AWS, Azure, etc
  • Knowledge of Windows penetration testing: Active Directory, Azure AD
  • CVE publications, knowledge of exploit development
  • Talks/workshops organized at security conferences
  • Excellent bug bounty track record
  • Open-source contributions made to security tools, scripts & solutions
  • Development background and code review capabilities
  • Experience with OT penetration testing
Axiata Digital Labs

About Axiata Digital Labs

Axiata Digital Labs is an innovative software service provider, offering telco-focused digital and IT services and solutions that enable individuals, startups and enterprises.

With over 1200 professionals spread across 7 countries, we help global customers in the space of telecommunications, digital services & financial services. Our convergent digital design experiences, innovative platforms and reusable assets connect numerous technologies to deliver tangible business value and experience to our customers.

Axiata Digital Labs is the technology hub of Axiata Group Berhad Malaysia which is one of the leading groups in telecommunication in Asia.

In pursuit of Axiata’s vision to be a New Generation Digital Champion, Axiata Digital Labs positions itself as a key driver to deliver a range of innovative telecommunication products and services.

Industry
IT & Software
Company Size
501-1,000 employees
Headquarters
Colombo, LK
Year Founded
2019
Social Media