Enter a job title or keyword

Senior Security Engineer Penetration Testing

Axonect


Job Location:

Kuala Lumpur - Malaysia

Monthly Salary: Not provided by the employer
Posted: 25 September 2026 (2 days ago)
Application Deadline: 23 December 2026
Vacancies: 1 Vacancy

Job Summary

Overview

We are seeking a technical Senior Security Engineer for the Penetration Testing role is expected to independently lead penetration testing engagements serve as atechnical escalation point for the team mentor junior consultants review assessmentquality and provide operational continuity for the Penetration Testing Lead when required.

Key Responsibilities

  • Lead and execute web mobile API network cloud and Active Directory penetrationtests
  • Lead engagements from scoping execution and reporting through stakeholderpresentations
  • Review penetration testing reports and technical deliverables for quality consistencyand accuracy
  • Provide technical escalation support for junior consultants and VM analysts
  • Mentor team members through coaching report reviews and technical workshops
  • Support engagement planning estimation and resource allocation across concurrent assessments
  • Drive methodology improvements testing standards and automation initiatives
  • Support remediation discussions with business and technology stakeholders
  • Act as delegated operational lead when required

Person Specifications

Qualifications

  • Minimum 3 to 5 years of hands-on penetration testing experience
  • Strong expertise across Web Mobile API Network Active Directory and Cloud securitytesting
  • Demonstrated experience leading penetration testing engagements independently
  • Experience mentoring junior consultants and performing technical quality reviews
  • Strong understanding of Active Directory attack paths privilege escalation and post-exploitation techniques
  • Experience assessing AWS and/or Azure cloud environments
  • Ability to write scripts and automate offensive security workflows
  • Excellent written and verbal English communication skills
  • Exposure to AI security testing including LLM prompt injection agent abuse indirectprompt injection tool-chain security review and AI application security assessment

Preferred Experience

  • Resource planning and engagement scheduling
  • Coordination of multiple concurrent penetration testing engagements
  • Red team operations C2 infrastructure and phishing simulations
  • Code review and secure development knowledge
  • Experience in Intelligence-led penetration testing or threat-led penetration testing
  • Experience building testing methodologies reporting standards and QA processes

Preferred Certifications

  • OSCP (preferred)
  • CRTP
  • OSWE
  • GIAC certifications
  • Relevant cloud security certifications