Adhere to the Group Information Security Policy and other policies mandated by the Group.
Ensuring that all application infrastructure and network security tests are conducted legally ethically and in Compliance with the ORGANIZATION Group Code of Conduct.
Performing a variety of security testing assignments including red teaming infrastructure and applications (web apps mobile apps client/server apps).
Ensure that all test cases and tools are used appropriately for testing of various application types network and infrastructure.
Interface with software developers infrastructure and network teams to address concerns issues or escalations; track and drive to closure any issues that impact the service and its value to clients.
Develop comprehensive and accurate reports and presentations for both technical and executive audiences.
Identify improvement areas in the security testing domain and implement learnings the Head of Information Security Assurance.
Coordinate with application development teams on their demands for security testing and provide a seamless experience with testing and reporting of penetration tests.
Mentors technical staff and management on best practices.
Knowledge & Skills
Scripting experience with any of the following: JavaScript Python PowerShell among others.
High level of personal integrity as well as the ability to professionally handle confidential matters and show an appropriate level of judgment and maturity.
Must be able to communicate across all levels of the organization from nontech end user community to csuite audiences.
Must be a critical thinker with strong problemsolving skills.
Ability to work with minimal supervision
Should possess excellent communication and presentation skills
Should be emotionally intelligent
Should possess strong people skills
Must be passionate about contributing to an organization focused on continuously improving consumer experiences
Requirements
Degree in Computer Science Engineering Information Security or a related discipline or equivalent work experience.
5 or more years of work experience as a Lead Penetration Tester in a tier one commercial bank sector.
Knowledge across a variety of platforms operating systems and networked environments
Experience with penetration testing frameworks tools and methodologies
Experience across Red Teaming web application penetration testing vulnerability assessments mobile application testing wireless configuration reviews thick client testing code reviews and other security assurance activities
Experience participating in Capture The Flag (CTF) boottoroot bug bounty or other hacking challenges and competitions is a plus
Proficiency with programming or scripting languages is highly desirable
CREST/OSCP/OSCE Certified. CISSP/CCSP will be an added advantage.
Disclaimer: Drjobpro.com is only a platform that connects job seekers and employers. Applicants are advised to conduct their own independent research into the credentials of the prospective employer.We always make certain that our clients do not endorse any request for money payments, thus we advise against sharing any personal or bank-related information with any third party. If you suspect fraud or malpractice, please contact us via contact us page.