job description
Are you a seasoned Cybersecurity Penetration Testing Manager looking to lead a dynamic team in one of the world’s most vibrant tech hubs? The Talent Network Private Limited is expanding its cybersecurity operations in Bali, Indonesia, and we’re seeking a strategic leader to oversee our penetration testing initiatives. This is a unique opportunity to shape the security posture of high-profile clients while enjoying the unparalleled work-life balance Bali offers.
In this role, you’ll manage a team of ethical hackers, conduct advanced security assessments, and develop robust defense strategies. With a competitive salary of IDR 25M–30M/month + performance bonuses, this position is perfect for professionals who thrive in both technical and leadership capacities. Join us and be at the forefront of cybersecurity innovation in Southeast Asia!
Responsibility
- Lead and mentor a team of penetration testers, ensuring high-quality security assessments and vulnerability reporting.
- Design and execute comprehensive penetration testing strategies for web applications, networks, and cloud infrastructures.
- Collaborate with cross-functional teams to remediate identified vulnerabilities and enhance security protocols.
- Develop and maintain security testing methodologies, tools, and frameworks aligned with industry standards (OWASP, NIST, MITRE ATT&CK).
- Conduct red team exercises and social engineering assessments to simulate real-world attack scenarios.
- Prepare detailed technical and executive-level reports on security findings and risk mitigation strategies.
- Stay ahead of emerging cyber threats and integrate proactive measures into testing frameworks.
- Represent the company at industry conferences and client meetings as a cybersecurity subject-matter expert.
Qualifications
- Bachelor’s or Master’s degree in Cybersecurity, Computer Science, or a related field.
- Minimum 5 years of experience in penetration testing, with at least 2 years in a leadership or managerial role.
- Certifications such as OSCP, CISSP, CEH, or CRTO are highly preferred.
- Proven expertise in tools like Burp Suite, Metasploit, Nmap, and Cobalt Strike.
- Strong understanding of secure coding practices, cryptography, and network protocols.
- Excellent communication skills to articulate complex security concepts to technical and non-technical stakeholders.
- Experience with compliance frameworks (ISO 27001, PCI DSS, GDPR) is a plus.
- Ability to work in a hybrid/remote setting with occasional travel to client sites.