As a penetration tester for NAB, you will be part of a team that evaluates a wide range of NAB group products and services to identify security weaknesses and exposures that pose a risk to the enterprise, and work with teams to understand their risk and path to remediation.
Penetration Security Testing (also called pentesting or ethical hacking) is the practice of testing a computer system, network, or web application to find security vulnerabilities that an attacker could exploit.
About YOU
You are a naturally inquisitive professional, always looking to understand the inner workings of a solution.
You have experience testing various technologies and platforms and are always looking for new tools or techniques to learn about and apply, including but not limited to; Web applications, web APIs, mobile applications (iOS, Android), network and server technologies, cloud services (AWS, Azure), and hardware.
You are collaborative and enjoy working in a team of like-minded professionals, always looking to work with, learn from, and share knowledge with those around you.
Responsibility
Working with a diverse range of colleagues to define security testing activities (scope) across target applications and infrastructure
Best practices to promote continuous improvement of penetration testing methodologies and processes
Delivery of technical reports and documentation
Communication of security vulnerabilities and exposures to internal stakeholders
Perform penetration testing and vulnerability assessments, including the triage of findings to determine key exposures.
Expanding upon this responsibility, you will also be required to perform:
_- Tests against various technical assets (applications, networks), as expanded upon below
Physical Security Assessments
Security Audits
Analyse Security Policies
Write Security Assessment Reports_
Requirement
Extensive experience as a penetration tester or security analyst, with experience in large organisations.
Extensive experience penetration testing various assets, including but not limited to; web applications, mobile applications, networks/infrastructure, and cloud services. You should highlight any key strengths across these disciplines.
A clear understanding of both manual and automated penetration testing techniques, including knowledge of common penetration testing tools and impacts on systems.
Fluent understanding of cloud technologies (AWS, Azure), Linux and Windows OSes, and mobile technologies
A comprehensive understanding of Penetration Testing frameworks and methodologies (OWASP, OSSTTMM, WAHH).
Advanced problem-solving skills
Excellent written and verbal communication skills – with experience writing and conveying complex penetration testing findings and their associated risks through reports to stakeholders; findings writeups, or verbal discussions.
Ability to attend to the detail on multiple concurrent tasks while meeting various deadlines.
Industry certifications such as OSCP, CREST (CRT, CCT), or equivalent are highly desired
Training on self-development platforms (i.e. HackTheBox, Pentesterlabs, wechall, etc.)
Strong English communication skills (both verbal & written), especially in the global software development environment
Why it would be awesome to work with us?
Join a global software development environment
Competitive remuneration package
Enjoy exceptional perks (tech/non-tech training courses, extra health insurance for you and your family (2 members), daily snack, billiards competition, ... you name it.)
Business Trips to Australia
Comfortable and inspiring workplace
**Cloud First - NAB is undergoing an exciting "Cloud First" technology transformation by taking advantage of the latest tools and techniques used by leading technology and digital companies globally. But it’s not just about the Tech, we are also investing heavily in our people, so if you have an appetite to learn, grow and elevate others around you, this is the place for you!
It's more than money - We naturally also provide a very competitive remuneration package but a career with us is about a lot more than money. We believe in people with ideas and dreams, and we want you to achieve your aspirations. We'll work together to deliver exceptional products and outcomes that push the limits of our own aspirations. Our passion for creating value and exceeding our customers' expectations means we're constantly striving to redefine our standards of excellence. You'll have our backing to develop and our encouragement to explore, realize and reach your full potential.**
Want to experience yourself? Visit our brand new Agile office & have a chat with us over a cup of coffee!_**
Location
Etown 3, Tan Binh Dist., Saigon
Salary Range
USD Super Attractive
Job Overview
About YOU
Responsibility
Working with a diverse range of colleagues to define security testing activities (scope) across target applications and infrastructure Best practices to promote continuous improvement of penetration testing methodologies and processes Delivery of technical reports and documentation Communication of security vulnerabilities and exposures to internal stakeholders Perform penetration testing and vulnerability assessments, including the triage of findings to determine key exposures. Expanding upon this responsibility, you will also be required to perform:
_- Tests against various technical assets (applications, networks), as expanded upon below
Physical Security Assessments
Security Audits
Analyse Security Policies
Write Security Assessment Reports_
Requirement
Extensive experience as a penetration tester or security analyst, with experience in large organisations.
Extensive experience penetration testing various assets, including but not limited to; web applications, mobile applications, networks/infrastructure, and cloud services. You should highlight any key strengths across these disciplines.
A clear understanding of both manual and automated penetration testing techniques, including knowledge of common penetration testing tools and impacts on systems.
Fluent understanding of cloud technologies (AWS, Azure), Linux and Windows OSes, and mobile technologies
A comprehensive understanding of Penetration Testing frameworks and methodologies (OWASP, OSSTTMM, WAHH).
Advanced problem-solving skills
Excellent written and verbal communication skills – with experience writing and conveying complex penetration testing findings and their associated risks through reports to stakeholders; findings writeups, or verbal discussions.
Ability to attend to the detail on multiple concurrent tasks while meeting various deadlines.
Industry certifications such as OSCP, CREST (CRT, CCT), or equivalent are highly desired
Training on self-development platforms (i.e. HackTheBox, Pentesterlabs, wechall, etc.)
Strong English communication skills (both verbal & written), especially in the global software development environment
Why it would be awesome to work with us?
**Cloud First - NAB is undergoing an exciting "Cloud First" technology transformation by taking advantage of the latest tools and techniques used by leading technology and digital companies globally. But it’s not just about the Tech, we are also investing heavily in our people, so if you have an appetite to learn, grow and elevate others around you, this is the place for you!
It's more than money - We naturally also provide a very competitive remuneration package but a career with us is about a lot more than money. We believe in people with ideas and dreams, and we want you to achieve your aspirations. We'll work together to deliver exceptional products and outcomes that push the limits of our own aspirations. Our passion for creating value and exceeding our customers' expectations means we're constantly striving to redefine our standards of excellence. You'll have our backing to develop and our encouragement to explore, realize and reach your full potential.**
Want to experience yourself? Visit our brand new Agile office & have a chat with us over a cup of coffee!_**
Contact
E: thu.vong@pycogroup.com M: 039 949 1605