About the Company:
Talent Insider is an upcoming HR Consultancy Service, founded in 2021. Our clients have been some of the leading brands in Indonesia, and this service continues to expand.
Registered in Singapore & Indonesia, we can assist with your growth plans and strategies, and continue to expand our regional presence with strong regional partners to assist our client in recruitment and branding strategy.
Job Description:
- Perform Manual Penetration Tests Against Company's Internal And External Assets, Including Networks, Servers, Applications, And Web Services. This Involves Identifying And Exploiting Vulnerabilities In Order To Assess The Security Of Company's Systems.
- Conduct Internal And External Red And Purple Team Engagements. Red Teaming Is A Simulated Attack On A Company's Systems By A Team Of Ethical Hackers, While Purple Teaming Is A Combination Of Red Teaming And Blue Teaming (the Process Of Defending Against Cyberattacks). These Engagements Help To Identify And Mitigate Security Risks.
- Assess Security Vulnerabilities To Identify Appropriate Remediation. This Involves Determining The Severity Of Each Vulnerability And Recommending The Best Course Of Action For Fixing It, Such As Patching, Changing Configurations, Or Deprecating The Affected System Or Application.
- Leverage Enterprise Tools To Perform Vulnerability Scans Of Company's Assets. This Involves Using Automated Tools To Scan Company's Systems For Known Vulnerabilities.
- Report On Project And Operational Metrics. This Involves Tracking And Reporting On The Progress Of Penetration Testing Projects, As Well As The Overall Security Posture Of Company's Systems.
- Document Security Flaws, Including Technical Details And Remediation Recommendations. This Involves Creating Detailed Reports Of Any Security Flaws That Are Found, As Well As Recommendations For How To Fix Them.
Job Requirements:
- A bachelor's degree in computer science or information systems, or equivalent work experience in the field of cybersecurity.
- Demonstrated in-depth experience in the following areas:
- Web application and web service testing
- Network infrastructure penetration testing
- Mobile application security testing (Android / iOS)
- Adversarial attack simulations (Red / Purple Teaming)
- Thick client assessment and reverse engineering
- Assessment of cloud platforms such as Alibaba Cloud, AWS, Azure or Google Cloud Platform
- Knowledge of secure design methodologies (such as threat modelling and attack surface enumeration)
