Application Security Specialist

2 weeks ago


Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time
Application Security Specialist & Penetration Tester Location: Hong Kong

Key Role

As Application Security Specialist & Penetration Tester, you will lead and execute a variety of engagements, conducting secure code review and advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices, servers, web and mobile apps, web APIs, wireless infrastructures, IoT devices, and other information systems.

You will have the opportunity to combine technical expertise with your imagination to conduct targeted attacks and discover vulnerabilities, with the goal of ensuring wizlynx group's customers remain one step ahead of its adversaries.

This role will be part of a team of Cyber Security Experts, providing excellent services to customers and internal teams.

What your key responsibilities will be

Responsibilities may include the following, but are not limited to:

  • Lead and execute secure code review, network, web application, and wireless penetration tests that will vary in level of complexity from simple to potentially complex.
  • Author quality secure code review and penetration test reports with professional documentation of identified and exploited vulnerabilities/weaknesses.
  • Serve as a consultant in pre-sales, including assessment of client needs, project scopes, and proposal preparation.
  • Share all knowledge and training with internal colleagues and teams.
  • Maintain up-to-date knowledge of the IT security industry, including awareness of new or revised security solutions, security standards, trends/best practices, offensive techniques, tools, and software development paradigms.

What we are looking for

  • Bachelor's degree, preferably in computer science or information systems, or equivalent work experience.
  • Minimum of one year professional experience in penetration testing and code review.
  • Technical knowledge across a broad range of computing platforms and network protocols.
  • High proficiency in a variety of operating systems such as Unix/Linux/Mac/Windows, including bash and PowerShell.
  • High proficiency in manual techniques for penetration testing (network equipment, servers, web applications, APIs, wireless, mobile, databases, and other information systems).
  • Proven professional experience testing web applications for common web application security vulnerabilities as defined by OWASP, including input validation vulnerabilities, broken access controls, session management vulnerabilities, cross-site scripting issues, SQL injection, and web server configuration issues.
  • Good knowledge of both static and dynamic analysis of an application, be it web-based, mobile app, or standalone.
  • Experience with tools such as Microfocus Fortify or Checkmarx are an asset.
  • Ability in reviewing source code, including the evaluation of best practices for the platform/framework in use.
  • Very good knowledge of one or more of the following programming languages & frameworks: Python, .NET, Perl, and Java.
  • Strong oral and written communication skills, including a demonstrated ability to prepare quality documentation and presentations for technical and non-technical audiences.
  • Certifications such as OSCP, OSCE, OSWE, CREST CRT, GIAC (GXPN, GWAPT, GPEN, GMOB, GWEB) are an asset.

Language Skills:

  • Excellent communication skills in English and Cantonese (written and spoken); other languages are an advantage.

Soft Skills:

  • Excellent interpersonal skills, capable of interacting with people at all levels; team player.
  • Action-oriented and results-driven.
  • Organized with strong time-management skills.
  • Ability to dynamically switch among different tasks.
  • Customer-friendly approach and appearance.
  • Willingness to travel.
  • Strong problem-solving and analytical skills.

What we are offering you

You will get the opportunity to work with the best cyber security experts in a multi-cultural environment.

At wizlynx group, you will also have the chance to go to conferences, participate in ethical hacking competitions, attend advanced trainings, and pass highly recognized certifications. We are offering you to work in a thrilling, challenging but fun environment where what you do is important and meaningful. At wizlynx, there is no limit but the sky. If you wish to learn and get involved in other areas of cyber security or the business, we will ensure that you get all the help you need to succeed. Furthermore, as a senior penetration tester, you will be part of the wizlynx red teaming services consisting of emulating real-world threats using cybercriminals' TTPs. You will get dedicated time for security research on topics that interest you the most.

Who we are

wizlynx group is an ethical, trustworthy, and vendor-agnostic Swiss Cyber Security provider. Our customers rely on us to effectively protect their business and trade secrets against any form of cybercrime, such as malware outbreaks, malicious insiders, cyberattacks, cyber espionage, data leakage, and more.

We live and breathe Cyber Security For this reason, we have designed a service portfolio that covers the entire risk management lifecycle to ensure our customers benefit the most from our passion and experience, but primarily to maximize their protection.

Our Cyber Security Services rely on highly skilled security professionals and penetration testers with long-lasting experience, both in defense and offense, while holding the most recognized certifications in the industry.

Apply now if you think you are a good match We will respond to let you know what the next steps are, but in the meantime feel free to check us out:

APPLY NOW

Your Full Name

Your Email

Upload Resume

Your Full Name Your Email Upload Resume I grant wizlynx group my consent to the processing of my personal information for the job application purposes.

#J-18808-Ljbffr

  • Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full time

    We're on the lookout for a talented Cybersecurity Specialist to help drive our mission to protect clients' sensitive information. As a member of our team, you'll have the opportunity to develop your skills in security consulting and work closely with cross-functional teams to ensure seamless delivery of our services.In this exciting role, you will:Leverage...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Application Security Specialist & Penetration TesterLocation: Hong KongKey RoleAs Application Security Specialist & Penetration Tester, you will lead and execute a variety of engagements, conducting secure code review and advanced hands-on penetration testing beyond automated tool validation, which will focus on targets that may include network devices,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Centurion Information Security Full time

    Security Expertise:Penetration Testing:As a Penetration Tester at Centurion Information Security, you will be responsible for conducting independent penetration testing and vulnerability assessments to identify and exploit vulnerabilities in our clients' networks, systems, and applications.Key Skills:Experience in conducting penetration testing and...


  • Hong Kong, Central and Western District, Hong Kong SAR China Pentastic Security Limited Full time

    About UsPentastic Security Limited is a dynamic and growing company specializing in cybersecurity solutions.We offer a flexible working environment that suits your needs, allowing you to achieve a better work-life balance.As a Security Consultant, you will have the opportunity to develop your career and become a subject matter expert in cybersecurity...


  • Hong Kong, Central and Western District, Hong Kong SAR China Centurion Information Security Full time

    Job OverviewCenturion Information Security seeks a skilled Chief Security Architect to lead our penetration testing efforts. As a critical member of our team, you will play a key role in identifying and assessing vulnerabilities in our clients' networks, systems, and applications.Key ResponsibilitiesDevelop and execute tailored scope of work (SOW) in...


  • Hong Kong, Central and Western District, Hong Kong SAR China Crypto Full time

    Application Security Engineer (Pentester) 1 week ago Be among the first 25 applicants Discover security vulnerabilities through design review, source code review and penetration testing, either manually or by using automated tools, and follow up on the remediation process Participate in relevant agile scrum meetings and provide professional recommendations...


  • Hong Kong, Central and Western District, Hong Kong SAR China BDx Data Centers Full time

    About the Role:The Cloud Security Architecture Specialist will be responsible for ensuring the security and integrity of Bdx Data Centers' cloud-based systems and applications. This includes developing and implementing secure cloud architecture designs, conducting regular vulnerability assessments and security audits, and ensuring compliance with relevant...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Job DescriptionWe are seeking an experienced Cyber Security Specialist to join our team. The ideal candidate will have a strong background in penetration testing, secure code review, and application security.The successful candidate will lead and execute secure code reviews, network, web application, and wireless penetration tests of varying complexity. They...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Job Overview:Cyber Security Specialist.As a Cyber Security Specialist, you will play a crucial role in protecting our clients' assets from cyber threats. This includes conducting penetration tests to identify vulnerabilities and providing recommendations for remediation. You will work closely with our team of security experts to ensure that our clients...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Cyber Security Specialist Job Description\Our company, wizlynx group, is an ethical and trustworthy Swiss Cyber Security provider. We protect our customers' businesses and trade secrets against cybercrime, including malware outbreaks, malicious insiders, cyberattacks, cyber espionage, data leakage, and more.As a Cyber Security Specialist, you will lead and...


  • Hong Kong, Central and Western District, Hong Kong SAR China BIXIN Full time

    Job Overview:We are looking for an experienced Information Security Specialist to join our team at BIXIN. In this role, you will be responsible for multiple aspects of cybersecurity, including security operations, application security, and threat hunting & intelligence.The ideal candidate will have experience with various security products & tools, including...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    About the JobAs a Senior Application Security Consultant, you will play a crucial role in ensuring the security of our clients' applications and systems. You will lead and execute penetration testing engagements, identify vulnerabilities, and provide recommendations for remediation.Responsibilities:Conduct manual techniques for penetration testing, including...


  • Hong Kong, Central and Western District, Hong Kong SAR China BIXIN Full time

    About Bixin: As a leading blockchain services provider in Hong Kong, we are committed to delivering secure and innovative solutions. Our team of experts is dedicated to ensuring the integrity of our systems and protecting our clients' assets.Job Title: Information Security SpecialistKey Responsibilities:Conduct network security testing and penetration...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    Job Description">We are seeking an experienced Cyber Security Specialist to join our team in Hong Kong. The ideal candidate will have a strong background in cyber security, with experience in penetration testing, vulnerability assessment, and incident response.">Key Responsibilities:Conduct network, web, and mobile application penetration tests, identifying...


  • Hong Kong, Central and Western District, Hong Kong SAR China ForthTech Research (HK) Limited Full time

    Job Title: Network Security SpecialistForthTech Research (HK) Limited is seeking a highly skilled Network Security Specialist to join our team. As a key member of our security operations center, you will play a crucial role in maintaining and enhancing the detection, prevention, response, and monitoring capabilities of our network security suite.Main...


  • Hong Kong, Central and Western District, Hong Kong SAR China Centurion Information Security Full time

    Job Description:Company Overview:Centurion Information Security is a leading provider of information security services, dedicated to helping organizations protect their assets and maintain a strong security posture.Job Summary:We are seeking an experienced Penetration Tester to join our team, responsible for conducting penetration testing and vulnerability...

  • Security Specialist

    6 days ago


    Hong Kong, Central and Western District, Hong Kong SAR China Lane Crawford Full time

    Lane Crawford is an internationally renowned luxury department store with over 170 years of success, delivering an exceptional and eclectic product curation with dynamic Asian spirit and values. As the Security Specialist, you will play a vital role in safeguarding Lane Crawford's assets and information by implementing robust security measures and protocols....


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    At Wizlynx Malaysia Sdn Bhd, we are seeking a talented Cyber Security Specialist to join our team of expert professionals. As a leading provider of cyber security services, we have designed a comprehensive service portfolio that covers the entire risk management lifecycle.In this role, you will be responsible for leading and executing secure code reviews,...


  • Hong Kong, Central and Western District, Hong Kong SAR China Wizlynx Malaysia Sdn Bhd Full time

    We are looking for a skilled Penetration Tester and Application Security Expert to join our team at Wizlynx Malaysia Sdn Bhd. As a key member of our Cyber Security Services team, you will be responsible for leading and executing secure code reviews and penetration tests.Key ResponsibilitiesLead and execute secure code review, network, web application, and...


  • Hong Kong, Central and Western District, Hong Kong SAR China Eastech Systems Limited Full time

    Job Title: Web Application SpecialistWe are seeking a skilled Web Application Specialist to join our team at Eastech Systems Limited. The ideal candidate will have a strong focus on creating high-quality, maintainable, and scalable web applications.About the Role:The specialist will design, develop, and maintain web applications and backend services.The...