Middle Pentest
Middle Pentest
IPSIP Group2-4 Years
- Posted an hour ago
- Be among the first 10 applicants
Job Description
Location: Sala Area, HCMC
ABOUT US:
IPSIP delivers offensive and defensive cybersecurity services to organizations worldwide. Our Offensive Security team specializes in Penetration Testing and Red Team engagements, simulating real-world attacks against web, API, cloud, network, and enterprise environments to uncover critical security weaknesses and improve cyber resilience.
RESPONSIBILITIES:
- Perform penetration testing and vulnerability assessments on customers web applications, corporate websites, servers, and IT infrastructure.
- Conduct information gathering and reconnaissance activities according to project requirements.
- Perform vulnerability discovery and analysis using both automated security scanning tools and manual testing techniques.
- Validate identified vulnerabilities through controlled exploitation and assess their potential technical and business impact.
- Analyze security findings, distinguish true vulnerabilities from false positives, and prioritize findings based on risk. Prepare clear and detailed technical reports covering vulnerabilities, evidence/Proof of Concept, risk ratings, impact, and remediation recommendations.
- Conduct security re-testing to verify whether identified vulnerabilities have been properly remediated.
- Collaborate with internal technical teams and customers to communicate security findings and provide appropriate remediation guidance.
- Follow established penetration testing methodologies and maintain proper documentation throughout engagements.
REQUIREMENTS:
- Minimum 2 years of experience in Penetration Testing, Vulnerability Assessment, Application Security, or a related offensive security role.
- Vietnamese fluency is required
- Hands-on experience in penetration testing and/or vulnerability assessment for web applications, corporate websites, servers, and IT infrastructure.
- Practical experience with both automated vulnerability scanning and manual security testing.
- Good understanding of common web application and infrastructure vulnerabilities, including OWASP Top 10, CVEs, security misconfigurations, and common attack techniques.
- Familiarity with commonly used penetration testing and vulnerability assessment tools.
- Solid understanding of networking fundamentals, Linux, and common web technologies.
- Ability to analyze technical findings, validate vulnerabilities, and produce clear and structured security reports.
BENEFITS:
- 100% sponsorship for relevant technical certifications and professional training.
- Premium healthcare insurance.
- Opportunity to work on international projects
- Continuous learning through technical mentoring, knowledge sharing, and exposure to modern technologies.
- Free parking, coffee, and tea.
Send your CV to: [Confidential Information]
Zalo: 0948828215
Let's connect. I'm happy to discuss more.
More Info
Key Skills
Security Misconfigurations
Automated Security Scanning Tools
Networking Fundamentals
Manual Testing Techniques
