Application Security Specialist

4 days ago


Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time
Application Security Specialist & Penetration TesterLocation: Hong Kong

Key Role

As Application Security Specialist & Penetration Tester, you will lead and execute a variety of engagements, conducting secure code review and advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices, servers, web and mobile apps, web APIs, wireless infrastructures, IoT devices, and other information systems.

You will have the opportunity to combine technical expertise with your imagination to conduct targeted attacks and discover vulnerabilities, with the goal of ensuring wizlynx group's customers remain one step ahead of its adversaries.

This role will be part of a team of Cyber Security Experts, providing excellent services to customers and internal teams.

What your key responsibilities will be

Responsibilities may include the following, but are not limited to:

  • Lead and execute secure code review, network, web application, and wireless penetration tests that will vary in level of complexity from simple to potentially complex.
  • Author quality secure code review and penetration test reports with professional documentation of identified and exploited vulnerabilities/weaknesses.
  • Serve as a consultant in pre-sales, including assessment of client needs, project scopes, and proposal preparation.
  • Share all knowledge and training with internal colleagues and teams.
  • Maintain up-to-date knowledge of the IT security industry, including awareness of new or revised security solutions, security standards, trends/best practices, offensive techniques, tools, and software development paradigms.

What we are looking for

  • Bachelor's degree, preferably in computer science or information systems, or equivalent work experience.
  • Minimum of one year professional experience in penetration testing and code review.
  • Technical knowledge across a broad range of computing platforms and network protocols.
  • High proficiency in a variety of operating systems such as Unix/Linux/Mac/Windows, including bash and PowerShell.
  • High proficiency in manual techniques for penetration testing (network equipment, servers, web applications, APIs, wireless, mobile, databases, and other information systems).
  • Proven professional experience testing web applications for common web application security vulnerabilities as defined by OWASP, including input validation vulnerabilities, broken access controls, session management vulnerabilities, cross-site scripting issues, SQL injection, and web server configuration issues.
  • Good knowledge of both static and dynamic analysis of an application, be it web-based, mobile app, or standalone.
  • Experience with tools such as Microfocus Fortify or Checkmarx are an asset.
  • Ability in reviewing source code, including the evaluation of best practices for the platform/framework in use.
  • Very good knowledge of one or more of the following programming languages & frameworks: Python, .NET, Perl, and Java.
  • Strong oral and written communication skills, including a demonstrated ability to prepare quality documentation and presentations for technical and non-technical audiences.
  • Certifications such as OSCP, OSCE, OSWE, CREST CRT, GIAC (GXPN, GWAPT, GPEN, GMOB, GWEB) are an asset.

Language Skills:

  • Excellent communication skills in English and Cantonese (written and spoken); other languages are an advantage.

Soft Skills:

  • Excellent interpersonal skills, capable of interacting with people at all levels; team player.
  • Action-oriented and results-driven.
  • Organized with strong time-management skills.
  • Ability to dynamically switch among different tasks.
  • Customer-friendly approach and appearance.
  • Willingness to travel.
  • Strong problem-solving and analytical skills.

What we are offering you

You will get the opportunity to work with the best cyber security experts in a multi-cultural environment.

At wizlynx group, you will also have the chance to go to conferences, participate in ethical hacking competitions, attend advanced trainings, and pass highly recognized certifications. We are offering you to work in a thrilling, challenging but fun environment where what you do is important and meaningful. At wizlynx, there is no limit but the sky. If you wish to learn and get involved in other areas of cyber security or the business, we will ensure that you get all the help you need to succeed. Furthermore, as a senior penetration tester, you will be part of the wizlynx red teaming services consisting of emulating real-world threats using cybercriminals' TTPs. You will get dedicated time for security research on topics that interest you the most.

Who we are

wizlynx group is an ethical, trustworthy, and vendor-agnostic Swiss Cyber Security provider. Our customers rely on us to effectively protect their business and trade secrets against any form of cybercrime, such as malware outbreaks, malicious insiders, cyberattacks, cyber espionage, data leakage, and more.

We live and breathe Cyber Security For this reason, we have designed a service portfolio that covers the entire risk management lifecycle to ensure our customers benefit the most from our passion and experience, but primarily to maximize their protection.

Our Cyber Security Services rely on highly skilled security professionals and penetration testers with long-lasting experience, both in defense and offense, while holding the most recognized certifications in the industry.

Apply now if you think you are a good match We will respond to let you know what the next steps are, but in the meantime feel free to check us out: https://www.wizlynxgroup.com/

APPLY NOW

Your Full Name

Your Email

Upload Resume

Your Full Name Your Email Upload Resume I grant wizlynx group my consent to the processing of my personal information for the job application purposes.

#J-18808-Ljbffr

  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Application Security Specialist & Penetration Tester Location: Hong Kong Key Role As Application Security Specialist & Penetration Tester, you will lead and execute a variety of engagements, conducting secure code review and advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Job Summary:We are looking for a highly skilled Cyber Security Specialist to join our team at Wizlynx Malaysia Sdn Bhd. The successful candidate will be responsible for leading and executing secure code review and penetration tests, conducting risk assessments, and providing expert advice on cyber security matters.About the Role:- Lead and execute secure...


  • Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full time

    Pentastic Security Limited is committed to providing a supportive and collaborative environment for our team members to thrive in their careers.Required Skills and QualificationsTo succeed as a Security Consultant, you will need:Technical RequirementsBachelor's Degree in Computer Science or equivalent.At least 2 years of experience in the information...


  • Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full time

    Pentastic Security Limited is a leading provider of cybersecurity solutions, and we're looking for an ambitious Entry-Level Cybersecurity Professional to join our team. In this role, you'll work closely with our experts to provide high-quality security services to our clients.To be successful, you'll need a solid foundation in computer science, strong...

  • IT Security Specialist

    10 hours ago


    Hong Kong, Central and Western District, Hong Kong SAR China PCCW Full time

    OverviewPCCW Media/HKT is seeking an IT Security Manager to maintain and improve the security posture of a large-scale on-premise IT system.About the RoleThis non-supervisory position will work closely with Infrastructure, Application Security Specialists, and 3rd-party service providers.Candidate will interface with customer's Technology Risk Management...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank of China Full time

    Job Requirements: The ideal candidate will have a strong background in IT security, technology risk, risk management, compliance, or IT audit functions. You should have over 4 years of experience in a similar role and be familiar with recognized professional qualifications under HKMA enhanced competency framework. You will be responsible for conducting...


  • Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full time

    Pentastic Security Limited is a leading provider of cybersecurity solutions. We are seeking a dedicated and skilled Cybersecurity Specialist to join our team.About the Role:We are looking for an individual with a strong background in computer science and at least 2 years of experience in the information technology space. The ideal candidate will have...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Job DescriptionWe are seeking an experienced Information Security Specialist to join our team. As a Penetration Testing Expert, you will lead and execute various engagements, conducting secure code review and advanced hands-on penetration testing.You will have the opportunity to combine technical expertise with your imagination to conduct targeted attacks...

  • Security Specialist

    5 days ago


    Hong Kong, Central and Western District, Hong Kong SAR China Shenendehowa Central School District Full time

    Job OverviewThe Shenendehowa Central School District is seeking a dedicated and skilled Security Specialist to join its team. This role is responsible for ensuring the safety and security of students, staff, and facilities across the district.


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    We are seeking a highly skilled Cyber Security Specialist to lead and execute various engagements, conducting secure code review and advanced hands-on penetration testing.This role will involve conducting targeted attacks and discovering vulnerabilities to ensure our customers remain one step ahead of their adversaries.You will have the opportunity to work...


  • Hong Kong, Central and Western District, Hong Kong SAR China Pantheon Lab Limited Full time

    Pantheon Lab Limited is pushing the boundaries of reality by implementing cutting-edge deep learning technologies.We are looking for a Senior Web Applications Specialist to join our team and contribute to the development of innovative web applications.As a key member of our software development team, you will be responsible for designing, building, testing...


  • Hong Kong, Central and Western District, Hong Kong SAR China Standard Chartered Life and Careers Full time

    We are seeking a skilled Digital Asset Security Specialist to join our team at Standard Chartered Life and Careers. The ideal candidate will have a strong background in Digital Asset HSM application management, with expertise in Mainframe and Linux.The successful applicant will be responsible for ensuring the secure storage and management of digital assets,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Crypto Full time

    At Crypto.com, we believe that cryptocurrency should be accessible to everyone. To achieve this goal, we need talented engineers like you to help us build a secure and scalable cloud infrastructure. As a Senior Cloud Security Specialist – DevOps, you will be responsible for configuring and maintaining GitOps workflows using Spacelift and FluxCD for...


  • Hong Kong, Central and Western District, Hong Kong SAR China BDx Data Centers Full time

    About the RoleWe are seeking an experienced Information Security Specialist Manager to lead our security operations centre. The ideal candidate will have a strong background in cloud security, on-prem security, and experience with firewalls, IDS/IPS, SIEM, EDR, and encryption technologies.Key Responsibilities:Monitor and respond to security incidents within...


  • Hong Kong, Central and Western District, Hong Kong SAR China ioTech Solutions Full time

    My client, a leader in Hong Kong's financial services sector, is seeking an experienced Security Engineer to join as a Security Specialist and support the firm's cybersecurity ecosystem including data protection, identity, access management, and solution implementation. Key Responsibilities: Work with domain experts to design security frameworks, document...


  • Hong Kong, Central and Western District, Hong Kong SAR China Tek Systems Full time

    About Us:Tek Systems is a leading provider of IT solutions, dedicated to delivering cutting-edge security services. Our team is passionate about staying ahead of the curve when it comes to cybersecurity, and we're looking for like-minded individuals to join us.The Role:We're seeking an IT Security Specialist to join our team, someone who has a strong...


  • Hong Kong, Central and Western District, Hong Kong SAR China Crypto Full time

    Crypto is seeking a highly skilled Blockchain Security Support Specialist to join our team. As a key member of our operations team, you will be responsible for ensuring the smooth operation of our blockchain-based applications in production environments. Your expertise in application features and supported blockchains will enable you to effectively work with...


  • Hong Kong, Central and Western District, Hong Kong SAR China CITIC Telecom International CPC Limited Full time

    CITIC Telecom International CPC Limited offers a unique opportunity for fresh graduates to develop their skills and knowledge in the ICT industry through our 1-year Management Trainee Program.Program OverviewThe program is designed to nurture high-calibre IT graduates and provide them with extensive exposure to the ICT industry. Trainees will undertake...


  • Hong Kong, Central and Western District, Hong Kong SAR China Fortinet, Inc. Full time

    Fortinet is seeking a highly motivated Security Posture Specialist to join its team. As a key member of the proactive security services team, you will be responsible for developing and delivering tabletop exercises to customers, performing readiness assessments on customers' security posture and Incident Response Plan, and assisting in the development of...


  • Hong Kong, Central and Western District, Hong Kong SAR China Crypto Full time

    Crypto.com is a pioneering cryptocurrency platform, dedicated to accelerating the adoption of digital assets through innovation and education. Our vision is to empower individuals to take control of their financial future.We are seeking an experienced Cloud Security Specialist to join our team in ensuring the security and integrity of our cloud-based...