job description
Join Sysarmy, a leading cybersecurity firm, as our Principal Security Consultant (Penetration Tester) and play a pivotal role in safeguarding our clients' digital assets. Based in the vibrant tech hubs of Bali (Canggu, Ubud, Denpasar, Jimbaran, Nusa Dua, Kuta, or Badung), you'll work remotely to deliver cutting-edge security solutions while enjoying the island's unparalleled work-life balance.
As a Principal Security Consultant, you'll lead penetration testing engagements, identify vulnerabilities, and provide actionable recommendations to enhance security postures. Your expertise will directly impact high-profile clients across industries, from fintech to healthcare, ensuring their systems remain resilient against evolving cyber threats.
This role offers the perfect blend of technical challenge and tropical living. Collaborate with a global team of security experts, participate in red team exercises, and contribute to thought leadership in cybersecurity. Whether you're analyzing complex systems, crafting exploit scenarios, or presenting findings to C-level executives, you'll be at the forefront of cybersecurity innovation.
Sysarmy values continuous learning and professional growth. You'll have access to the latest tools, certifications, and conferences to stay ahead in this dynamic field. If you're passionate about cybersecurity and eager to make a tangible impact while working from paradise, we want to hear from you.
Responsibility
- Lead comprehensive penetration testing engagements for enterprise clients, including network, web application, and mobile security assessments.
- Design and execute red team exercises to simulate real-world cyber attacks and identify security gaps.
- Develop and present detailed technical reports with actionable remediation strategies for stakeholders at all levels.
- Collaborate with clients to implement security best practices and improve their overall security posture.
- Stay abreast of emerging threats, vulnerabilities, and attack techniques to enhance testing methodologies.
- Mentor junior security consultants and contribute to knowledge-sharing initiatives within the team.
- Assist in developing security policies, procedures, and guidelines for clients based on assessment findings.
- Participate in pre-sales activities, including scoping engagements and delivering security awareness presentations.
Qualifications
- 5+ years of experience in penetration testing, vulnerability assessment, or red teaming.
- Proven expertise in manual testing techniques and automated security tools (e.g., Burp Suite, Metasploit, Nmap, Nessus).
- Strong knowledge of common vulnerabilities (OWASP Top 10, CWE/SANS Top 25) and exploitation techniques.
- Experience with scripting languages (Python, Bash, PowerShell) for automation and tool development.
- Relevant certifications such as OSCP, OSCE, GPEN, GWAPT, or CISSP (highly desirable).
- Excellent communication skills with the ability to articulate complex security concepts to non-technical audiences.
- Experience working with clients in diverse industries (finance, healthcare, e-commerce, etc.).
- Self-motivated with a passion for continuous learning and staying updated on cybersecurity trends.