VAPT Specialist

  • Sector: Monroe Information Technology
  • Contact: Ma. Janine Lopez
  • Start Date: ASAP
  • Client: Monroe Consulting Group
  • Location: Pasig
  • Salary: PHP40000 - PHP120000 per month + To be discussed
  • Expiry Date: 07 April 2025
  • Job Ref: BBBH478498_1742786915
  • Contact Email: janine.lopez@monroeconsulting.com.ph

Executive recruitment company Monroe Consulting Group Philippines is recruiting for a prominent technology and consulting firm, renowned as a technological partner for core business processes globally.

Job Summary
Our respected client is seeking an experienced and tech savvy professional for the job of VAPT (Vulnerability Assessment and Penetration Testing) Specialist. The candidate will be responsible for performing vulnerability assessments and penetration testing on web and mobile applications.

The job is On-site in Ortigas, Pasig City with a morning/day shift schedule.

Key Job Responsibilities:

  • Conduct vulnerability assessment and penetration testing on web and mobile applications
  • Provide detailed assessment report and recommendations following the preferred report format of the client, if available
  • Provide assistance and consultation services to teams responsible for remediations
  • Organize and conduct meetings or consultation sessions, when needed, to facilitate completion VAPT sub activities
  • Independently manage and complete schedule of activities or assigned tickets
  • Regularly submit progress report to immediate supervisors
  • Ensure confidentiality of client information at all times

Key Job Qualifications:

  • Experience Level: Junior (1-2 years), Mid (3-5 years), Senior (5+ years)
  • Hands-on experience in web and mobile application VAPT, following the OWASP Top 10 testing framework
  • Proficient in using open-source and commercial security testing tools such as Kali Linux, Metasploit, Qualys, Nessus, Burp Suite, OWASP ZAP, etc.
  • Working knowledge of web and mobile application development
  • Ability to write assessment reports that are clear and understandable for both technical and non-technical audiences
  • Cybersecurity certifications such as CEH, CISSP, or equivalent are preferred