We are looking for an individual who is a self-motivated learner, has a passion to discover security vulnerabilities and is committed to making a meaningful contribution to Hexadius. While a Technical or Information Security background would be advantageous, intellectual curiosity and a can-do attitude is more important than the subject of your degree.
If you love hacking things, solving problems, and working on projects alongside a range of clients, then this is an excellent opportunity for you.
Typical responsibilities will be as follows:
- Conduct security assessments such as vulnerability assessment and penetration testing, web application testing, mobile application testing, source code review, host security review, network architecture review and SAP security.
- Document security assessment reports and provide a score using the Common Vulnerability Scoring System (CVSS).
- Performing and interpreting results from security tools including, but not limited to Burp Suite, SQLMap, Nessus, Nmap and Frida.
We are looking for a team-player who is open to challenges and willing to expand their knowledge in the area of cybersecurity.
The following attributes, while not mandatory, will be highly regarded:
- Basic knowledge of security vulnerabilities: OWASP Top 10, OWASP MSTG.
- Basic understanding of programming languages.
- Strong written and verbal communication skills.
- Fresh graduates are welcome to apply
- Experience with a start-up company/ niche consulting firm
- Relevant certifications such as OSCP
While not mandatory, OSCP/ CREST CRT will be very useful. If not already certified, the candidate should be willing to get certified within 3 – 6 months.