Lead Pen Tester

JOB DESCRIPTION

We are seeking motivated Lead Pen Tester (Group Security) to be part of a team that evaluates a wide range of Our client's products and services - to identify security weaknesses and exposures that pose a risk to the enterprise, and work with teams to understand their risk and path to remediation.
Technical
Execute penetration tests, either in a team or individually, to identify vulnerabilitiesand weaknesses that could impact bank systems;
Including testing of web applications, mobile applications, web APIs, Infrastructure, Cloud technologies, and hardware.
Triage vulnerabilities and justify risk in alignment with common vulnerability scoringsystems, considering the environment and context;
Report testing results to key project stakeholders in varying formats (i.e. traditionalreport, bug tickets), including verbal communication;
Work with larger technical programs across the bank to understand and constructtesting requirements;
Where required, work as an embedded penetration tester on large programs;
Assist with other offensive security activities within the team
Self-manage security testing projects from end-to-end;
Participate in 'run the business' activities, such as maintenance and uplift of thepenetration testing environment.
Leadership
Maintains and increases motivation within team by regularly checking in onmotivation levels, and making adjustments quickly where needed (e.g. QCI, teammeeting, team engagement activity).
Creates and maintains an equally safe environment for all members of team to 'test and learn', share learning, challenge thinking, team development and explore new ideas.
Sets effective and meaningful goals and timelines for each team member that supports them to achieve beyond what is expected (e.g. align with Peak performance framework).
Provides input to Engineering Manager in making decision of Prioritising and ensuringresources for the right work and making trade-offs between current and futureperformance to balance immediate goals with longer-term growth for the team.
Supports the team to cut through complexity and create clarity by simplifyingpractices and processes.
Be responsible for team engagement & relations.

JOB REQUIREMENT

Must-have
8+ years of experience in IT/Security industry, and at least 3 years as a penetration tester;
Experience testing various technologies and platforms, including but not limited to; Web applications, web APIs, mobile applications (iOS, Android), network and server technologies, cloud services (AWS, Azure), and hardware;
Experience writing and conveying complex security findings through reports;
A comprehensive understanding of Penetration Testing frameworks and methodologies (OWASP, OSSTMM, WAHH);
Methodical, analytical approach with outstanding attention to detail. The ability to construct and execute testing within a controlled environment that complies with methodologies, policies, and best practice;
A clear understanding of both manual and automated penetration testing techniques, including knowledge of common penetration testing tools and the impacts they have on systems;
A good understanding of risk mitigation strategies when working in highly sensitiveenvironment;
Proven ability to work both individually and within a team environment (at times with little guidance), build strong relationships and maintain rapport with internal Our Client's stakeholders and 3rd party service providers;
Strong team working skills are essential;
Excellent verbal and written communication skills;
Ability to attend to the detail on multiple concurrent tasks while meeting variousdeadlines;
Ability to work semi-autonomously and organise/prioritise own work schedule on a short-term basis;
Proven ability to develop scripts and tools to enhance manual processes and existing tooling.
Nice to have:
Experience working with large corporations.
Training on self-development platforms (i.e. HackTheBox, Pentesterlabs, wechall, etc.);
Participation in Bug Bounty programs;
Undergraduate (minimum) in technical degree (Computer Science, Software Engineer, Cyber Security);
Standard Industry certifications such as OSCP, CREST (CRT, CCT) or equivalent.

WHAT'S ON OFFER

Generous compensation and benefit package
Attractive salary and benefits
20-day annual leave and 7-day sick leave, etc.
13th month salary and Annual Performance Bonus
Premium healthcare for yourself and family members
Monthly allowance for team activities
Premium welcome kit and frequent appreciation gifts
Extra benefits for long-term employees
Exciting career and development opportunities
Large scale products with modern technologies in banking domain
Clear roadmap for career advancement in both technical and leadership pathways
Well-structured learning and development programs (technical and soft skills)
Sponsored certificates in both IT and banking/finance
Premium accounts on Udemy
English learning with native teachers
Opportunity for traveling & training in Australia
Professional and engaging working environment
Hybrid working model and excellent work-life balance
Well-equipped & modern Agile office with fully-stocked pantry
Special programs to improve your physical and mental health
Annual company trip and events
A solid talented team behind you - great people who love what they do

CONTACT

PEGASI – IT Recruitment Consultancy | Email: recruit@pegasi.com.vn | Tel: +84 28 3622 8666
We are PEGASI – IT Recruitment Consultancy in Vietnam. If you are looking for new opportunity for your career path, kindly visit our website www.pegasi.com.vn for your reference. Thank you!

Job Summary

Company Type:

Product

Technical Skills:

Security

Location:

Ho Chi Minh - Viet Nam

Working Policy:

Salary:

Negotiation

Job ID:

J01402

Status:

Close

Related Job:

Vietnam Lead Solution Architect

Ho Chi Minh - Viet Nam


Outsource

  • Java
  • Architect
  • Microservices
  • AWS
  • Presale

Define the overall technology strategy and solution architecture for the program. Translate business capabilities into scalable technical architecture across applications, data, integrations, and infrastructure. Ensure consistency in architecture across different domains, squads, and solution streams. Verify technical decisions and implementation approaches to ensure long-term sustainability. Ensure architecture aligns with enterprise standards, regulatory expectations, and client technology roadmaps. Provide leadership and guidance to architecture, engineering, and delivery teams throughout the software lifecycle. Act as the final technical escalation point for critical delivery issues, scope changes, risks, and dependencies. Ensure delivery quality through strong technical governance, design reviews, and architecture compliance. Oversee the technical RAID process (Risks, Assumptions, Issues, Dependencies) and its mitigation planning. Ensure all non-functional requirements such as security, performance, scalability, reliability, observability, and availability are addressed. Serve as the primary technical counterpart to client senior stakeholders, including enterprise architects and technology leadership. Lead technical workshops, architecture reviews, design sessions, and executive alignment discussions. Present complex technical concepts clearly to both technical teams and senior non-technical leadership. Build credibility and trust with stakeholders at all levels, from engineers to executives. Validate and map business requirements into clear technical solution concepts and designs. Provide consultative guidance on technology choices and implementation approaches. Review business processes and align them with technical design, ensuring end-to-end feasibility. Produce and maintain high-quality technical documentation and solution design artifacts. Act as a bridge across product owners, engineering managers, solution architects, platform teams, security teams, and vendors. Ensure alignment between multiple delivery streams such as core banking, cards, payments, digital channels, integration, and data. Coordinate architecture and delivery consistency across distributed and offshore teams. Drive collaboration between internal and client teams to remove blockers and expedite execution. Promote modern engineering practices including microservices and distributed architecture, event-driven systems (Kafka), cloud-native development, CI/CD, DevOps, and automation-first engineering. Advocate for security-by-design and compliance-by-design principles across delivery. Promote AI-assisted engineering practices across the SDLC (code generation, test automation, refactoring, documentation), while ensuring correctness, governance, and security.

Negotiation

View details

Presales Consultant

Ho Chi Minh - Viet Nam


Outsource

  • Presale
  • Network
  • Security
  • System

Support Sales & Product Managers: Deliver presales technical consultancy and solution design. Lead Customer Engagements: Conduct technical presentations, product demos, and Proof of Concepts (PoCs). Develop Technical Documents: Analyze customer requirements and prepare solution proposals, architecture designs, and BOMs. Assist with RFP/RFI Responses: Support partner enablement, opportunity qualification, and tender compliance. Conduct Training Workshops: Provide training for partners/resellers and internal teams. Maintain Technical Certifications: Obtain and maintain certifications for relevant vendor technologies. Build Product Expertise: Develop deep knowledge of company solutions to support sales and marketing initiatives. Provide Post-Sales Support: Ensure smooth handover and contribute to customer satisfaction. Offer Market Insights: Support solution positioning and provide content recommendations. Support Business Growth: Perform other duties as required.

Negotiation

View details

Marketing Lead/ Lead UA

Ha Noi - Viet Nam


Product

  • Marketing

Taking ownership of the marketing P&L for the game portfolio (IAA & IAP) Developing tailored UA strategies for each monetization model Identifying market opportunities, target audiences, and scaling roadmaps Planning, executing, and optimizing UA campaigns across various platforms Managing UA budgets and ensuring optimal ROI Optimizing key metrics and ensuring strong UA performance Planning and leading creative strategy Collaborating with production teams to build efficient creative pipelines Optimizing store listings through A/B testing and scaling creative production Demonstrating proficiency in campaign tracking tools, analyzing data, and making timely optimizations to improve CPI, ROAS, and LTV Advising stakeholders on data-driven decision making Collaborating with Product teams to optimize ad frequency, ad placement, pricing, offers, and in-game economy Ensuring alignment between UA and monetization to maximize LTV Analyzing markets, trends, competitors, and industry benchmarks Conducting market research reports Allocating resources, establishing KPIs, and managing team performance Training, mentoring, and developing the team Building a culture that is data-driven, testing-first, and ownership-focused

Negotiation

View details