companyAppspace logo

Senior Web Application Penetration Tester

AppspaceKuala Lumpur, Malaysia
On-site Full-time

Clicking Apply Now takes you to AutoApply where you can tailor your resume and apply.


Unlock Your Potential

Generate Job-Optimized Resume

One Click And Our AI Optimizes Your Resume to Match The Job Description.

Is Your Resume Optimized For This Role?

Find Out If You're Highlighting The Right Skills And Fix What's Missing

Experience Level

Senior

Qualifications

To excel in this role, candidates should possess strong analytical skills, a deep understanding of security principles, and a commitment to continuous learning within the field of information security. Relevant certifications such as CEH, OSCP, or similar are highly regarded.

About the job

About Appspace

Appspace helps organizations improve work experiences worldwide. The company supports flexible work arrangements so employees can perform at their best. Appspace values well-being, encourages strong connections, and invests in professional development.

Role Overview: Senior Web Application Penetration Tester

This position leads internal penetration testing and works closely with application developers to find and address security vulnerabilities, especially those highlighted in the OWASP Top 10. The role also partners with cross-functional teams to strengthen secure Software Development Life Cycle (SDLC) practices.

What You Will Do

  • Perform penetration testing on web applications, cloud setups, and mobile apps using black-box testing tools, dynamic and static analysis (DAST & SAST), and a range of penetration test techniques.
  • Apply black box, gray box, and white box testing methods. Red teaming skills are important for this role.
  • Understand application architectures and business goals. Help establish secure coding standards by staying current with security trends and sharing knowledge with the team.
  • Use both manual and automated approaches to test platforms such as network equipment, servers, web applications, APIs, wireless, mobile, and databases. Run vulnerability assessments for issues like injection flaws, privilege escalation, fuzzing, buffer overflows, and more.
  • Show a strong record of finding web application security issues defined by OWASP, including input validation, broken access controls, session management, cross-site scripting, SQL injection, and server misconfigurations.
  • Programming skills in Python, Perl, Java, or Shell Scripting are a plus.
  • Work with tools such as web proxies, port scanners, vulnerability scanners, and exploit frameworks (for example, Burp, Nessus, Nmap, Metasploit).
  • Advise development teams on effective ways to resolve security vulnerabilities.

Location

Kuala Lumpur, Malaysia

About Appspace

Appspace is at the forefront of enhancing workplace environments. Our innovative solutions empower organizations to create spaces that foster collaboration and productivity. We believe in the importance of a supportive work culture and the need for continuous improvement in how people work.

Similar jobs

Tailoring 0 resumes

We'll move completed jobs to Ready to Apply automatically.