Application Security Specialist

6 days ago


Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time
Application Security Specialist & Penetration Tester Location: Hong Kong

Key Role

As Application Security Specialist & Penetration Tester, you will lead and execute a variety of engagements, conducting secure code review and advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices, servers, web and mobile apps, web APIs, wireless infrastructures, IoT devices, and other information systems.

You will have the opportunity to combine technical expertise with your imagination to conduct targeted attacks and discover vulnerabilities, with the goal of ensuring wizlynx group's customers remain one step ahead of its adversaries.

This role will be part of a team of Cyber Security Experts, providing excellent services to customers and internal teams.

What your key responsibilities will be

Responsibilities may include the following, but are not limited to:

  • Lead and execute secure code review, network, web application, and wireless penetration tests that will vary in level of complexity from simple to potentially complex.
  • Author quality secure code review and penetration test reports with professional documentation of identified and exploited vulnerabilities/weaknesses.
  • Serve as a consultant in pre-sales, including assessment of client needs, project scopes, and proposal preparation.
  • Share all knowledge and training with internal colleagues and teams.
  • Maintain up-to-date knowledge of the IT security industry, including awareness of new or revised security solutions, security standards, trends/best practices, offensive techniques, tools, and software development paradigms.

What we are looking for

  • Bachelor's degree, preferably in computer science or information systems, or equivalent work experience.
  • Minimum of one year professional experience in penetration testing and code review.
  • Technical knowledge across a broad range of computing platforms and network protocols.
  • High proficiency in a variety of operating systems such as Unix/Linux/Mac/Windows, including bash and PowerShell.
  • High proficiency in manual techniques for penetration testing (network equipment, servers, web applications, APIs, wireless, mobile, databases, and other information systems).
  • Proven professional experience testing web applications for common web application security vulnerabilities as defined by OWASP, including input validation vulnerabilities, broken access controls, session management vulnerabilities, cross-site scripting issues, SQL injection, and web server configuration issues.
  • Good knowledge of both static and dynamic analysis of an application, be it web-based, mobile app, or standalone.
  • Experience with tools such as Microfocus Fortify or Checkmarx are an asset.
  • Ability in reviewing source code, including the evaluation of best practices for the platform/framework in use.
  • Very good knowledge of one or more of the following programming languages & frameworks: Python, .NET, Perl, and Java.
  • Strong oral and written communication skills, including a demonstrated ability to prepare quality documentation and presentations for technical and non-technical audiences.
  • Certifications such as OSCP, OSCE, OSWE, CREST CRT, GIAC (GXPN, GWAPT, GPEN, GMOB, GWEB) are an asset.

Language Skills:

  • Excellent communication skills in English and Cantonese (written and spoken); other languages are an advantage.

Soft Skills:

  • Excellent interpersonal skills, capable of interacting with people at all levels; team player.
  • Action-oriented and results-driven.
  • Organized with strong time-management skills.
  • Ability to dynamically switch among different tasks.
  • Customer-friendly approach and appearance.
  • Willingness to travel.
  • Strong problem-solving and analytical skills.

What we are offering you

You will get the opportunity to work with the best cyber security experts in a multi-cultural environment.

At wizlynx group, you will also have the chance to go to conferences, participate in ethical hacking competitions, attend advanced trainings, and pass highly recognized certifications. We are offering you to work in a thrilling, challenging but fun environment where what you do is important and meaningful. At wizlynx, there is no limit but the sky. If you wish to learn and get involved in other areas of cyber security or the business, we will ensure that you get all the help you need to succeed. Furthermore, as a senior penetration tester, you will be part of the wizlynx red teaming services consisting of emulating real-world threats using cybercriminals' TTPs. You will get dedicated time for security research on topics that interest you the most.

Who we are

wizlynx group is an ethical, trustworthy, and vendor-agnostic Swiss Cyber Security provider. Our customers rely on us to effectively protect their business and trade secrets against any form of cybercrime, such as malware outbreaks, malicious insiders, cyberattacks, cyber espionage, data leakage, and more.

We live and breathe Cyber Security For this reason, we have designed a service portfolio that covers the entire risk management lifecycle to ensure our customers benefit the most from our passion and experience, but primarily to maximize their protection.

Our Cyber Security Services rely on highly skilled security professionals and penetration testers with long-lasting experience, both in defense and offense, while holding the most recognized certifications in the industry.

Apply now if you think you are a good match We will respond to let you know what the next steps are, but in the meantime feel free to check us out:

APPLY NOW

Your Full Name

Your Email

Upload Resume

Your Full Name Your Email Upload Resume I grant wizlynx group my consent to the processing of my personal information for the job application purposes.

#J-18808-Ljbffr

  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    Job DescriptionCompany OverviewThe Bank of China (Hong Kong) Limited is a leading financial institution with a strong commitment to innovation and excellence. We are seeking a highly skilled Information Security Specialist - Application Security to join our team.Job SummaryThis role is responsible for providing advisory services on technology risk...


  • Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full time

    Pentastic Security Limited is a leading provider of cybersecurity solutions, dedicated to helping organizations protect themselves against emerging threats.About the RoleWe're seeking an experienced Cybersecurity Consultant to join our team. As a key member, you'll be responsible for assisting clients in assessing and mitigating vulnerabilities in their...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Company Overviewwizlynx group is an ethical, trustworthy, and vendor-agnostic Swiss Cyber Security provider. Our customers rely on us to effectively protect their business and trade secrets against any form of cybercrime.We are seeking a highly skilled and experienced Cyber Security Professional to join our team. As a Senior Penetration Tester, you will lead...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Company Overview:Wizlynx Malaysia Sdn Bhd is a reputable Cyber Security provider committed to delivering exceptional service to our clients. Our team of experts offers a comprehensive range of services to protect businesses against cyber threats, including penetration testing, secure code review, and project management.Job Description:We are seeking an...

  • IT Security Specialist

    19 hours ago


    Hong Kong, Central and Western District, Hong Kong SAR China Recruit Squad Limited Full time

    At Recruit Squad Limited, we are dedicated to providing exceptional recruitment and HR advisory services with integrity and trust. As a leading provider of Permanent Recruitment, Executive Search, and Contract Recruitment/Secondment Services, we cater to various industries including Information Technology, Financial Institutions, Insurance,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    **About the Role**We are seeking an experienced IT Security Risk Specialist to join our team at Bank Of China (Hong Kong) Limited.Key ResponsibilitiesAssist in reviewing IT initiatives and providing advisory from technology risk perspectives.Establish and review policies, guidelines, procedures in application security area.Provide advisory and practical...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Key ResponsibilitiesLead and execute secure code review, network, web application, and wireless penetration tests with varying levels of complexity.Author professional reports documenting identified vulnerabilities/weaknesses.Participate in pre-sales assessments, including client needs evaluation and project scope definition.Maintain up-to-date knowledge of...


  • Hong Kong, Central and Western District, Hong Kong SAR China Bank Of China (Hong Kong) Limited Full time

    **Job Overview:**We are seeking a seasoned professional to join our team as a Strategic Application Security Manager at Bank Of China (Hong Kong) Limited.As a key member of our organization, you will play a critical role in ensuring the security and integrity of our applications and systems.


  • Hong Kong, Central and Western District, Hong Kong SAR China Pinpoint Asia Full time

    About UsPinpoint Asia is a specialist technology recruitment firm based in Hong Kong. We serve a wide range of clients, from tech startups to large-scale enterprises in various industries.Your RoleWe are seeking an experienced API Access Security Specialist to join our team. As an API Access Security Specialist, you will design, develop, and implement...

  • Security Specialist

    6 days ago


    Hong Kong, Central and Western District, Hong Kong SAR China Shenendehowa Central School District Full time

    About the RoleWe are seeking a highly skilled Security Specialist to join our team at Shenendehowa Central School District. As a key member of our facilities team, you will play a critical role in maintaining a safe and secure learning environment for our students.Key ResponsibilitiesManage campus traffic and ensure smooth operations during peak...


  • Hong Kong, Central and Western District, Hong Kong SAR China ConnectedGroup Full time

    About the JobConnectedGroup is seeking an experienced Information Security Specialist to join our team. As an Assistant Manager, you will play a key role in developing and implementing our cyber security strategies.Job Summary:We are looking for a skilled professional with extensive knowledge in cyber security operations and incident response. The ideal...


  • Hong Kong, Central and Western District, Hong Kong SAR China Retail Technology Asia Full time

    Job OverviewRetail Technology Asia, a leading cloud-based digital retail service company in Hong Kong, is seeking a skilled Cyber Security Governance Specialist to join its Cyber Security team.


  • Hong Kong, Central and Western District, Hong Kong SAR China West Kowloon Cultural District Authority Full time

    Job OverviewThe Cyber Security Analyst will play a critical role in leading initiatives on the assurance of security and integrity, collaborating with cross-functional teams to ensure the integration of security controls throughout our infrastructure and applications.Governance: Assist in the development, implementation, and management of cyber security...

  • Security Leader

    2 days ago


    Hong Kong, Central and Western District, Hong Kong SAR China Shangri-La Group Full time

    Job OverviewShangri-La Group is a global leader in luxury hospitality with unique Asian heritage. We have over 100 hotels and resorts under four brands nested in key cities and beautiful beachfront locations globally. Our company culture emphasizes the importance of learning and development, providing unparalleled investment opportunities for our colleagues...


  • Hong Kong, Central and Western District, Hong Kong SAR China KYC Consulting Full time

    At KYC Consulting, we are seeking a highly skilled Splunk Security Operations Specialist to join our team. About the RoleThis is a unique opportunity for a seasoned IT security professional with expertise in Splunk administration and development to leverage their skills in a fast-paced environment.Job DescriptionThe successful candidate will be responsible...


  • Hong Kong, Central and Western District, Hong Kong SAR China Logicalis Asia Pacific Full time

    About UsLogicalis Asia Pacific is a leading provider of information and communications technology (ICT) data and security solutions.We are seeking an experienced Network Security Specialist to join our team.As a key member of our team, you will be responsible for supporting customers with a wide range of ICT data and security products.Your primary focus will...


  • Hong Kong, Central and Western District, Hong Kong SAR China West Kowloon Cultural District Authority Full time

    About the Role:The West Kowloon Cultural District Authority is seeking a highly skilled and experienced Information Technology Security Specialist to join our team. As an IT Cybersecurity Expert, you will be responsible for developing and implementing security policies and procedures that align with industry standards.You will lead initiatives to assure the...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    About the PositionWe are seeking a highly skilled Penetration Tester and Security Specialist to join our team at Wizlynx Malaysia Sdn Bhd. In this role, you will be responsible for leading and executing various security-related engagements, including secure code reviews and penetration testing.ResponsibilitiesConduct thorough security assessments and...


  • Hong Kong, Central and Western District, Hong Kong SAR China Cyberport Hong Kong Full time

    Cyberport Hong Kong is a leading innovation hub that provides AI solutions to businesses. We are seeking a highly skilled AI Application Specialist Lead to join our team.About the CompanyWe provide a range of AI solutions to businesses, including machine learning, deep learning, and natural language processing. Our team of experts works closely with clients...


  • Hong Kong, Central and Western District, Hong Kong SAR China Zscaler LATAM Full time

    Company OverviewZscaler LATAM is a leading provider of cloud-based security solutions. Our innovative approach enables businesses to securely connect users, devices, and applications anywhere in the world.