job description
Join Indoprima Group as a Senior Red Team Penetration Tester and play a pivotal role in securing our digital infrastructure across Bali. This is a unique opportunity to work with a leading conglomerate, assessing and fortifying our network and system defenses against advanced cyber threats.
As part of our elite cybersecurity team, you will conduct authorized simulated attacks to identify vulnerabilities, recommend robust security solutions, and ensure compliance with industry standards. Your expertise will directly contribute to safeguarding critical assets in a dynamic, high-impact environment.
Based in the vibrant and strategic locations of Canggu, Ubud, Denpasar, Jimbaran, Nusa Dua, Kuta, or Badung, you’ll collaborate with cross-functional teams while enjoying Bali’s unparalleled work-life balance. If you’re passionate about ethical hacking, threat modeling, and cutting-edge security practices, this role is your chance to make a tangible difference.
Responsibility
- Design and execute advanced penetration tests on networks, systems, and applications to identify security weaknesses.
- Perform red team exercises, including social engineering, phishing simulations, and physical security assessments.
- Develop and present detailed reports on findings, risks, and remediation strategies for stakeholders.
- Collaborate with IT and development teams to implement security patches and hardening measures.
- Stay ahead of emerging cyber threats, tools, and techniques through continuous research and training.
- Conduct vulnerability assessments and recommend proactive security improvements.
- Ensure compliance with industry standards (e.g., ISO 27001, NIST, OWASP) and regulatory requirements.
- Mentor junior team members and share knowledge through workshops and documentation.
Qualifications
- Bachelor’s degree in Computer Science, Cybersecurity, or a related field (or equivalent experience).
- Minimum 5 years of experience in penetration testing, red teaming, or offensive security roles.
- Certifications such as OSCP, CEH, CISSP, or GIAC (highly preferred).
- Proficiency in tools like Metasploit, Burp Suite, Wireshark, Nessus, and Cobalt Strike.
- Strong understanding of network protocols, firewalls, IDS/IPS, and encryption technologies.
- Experience with scripting (Python, Bash, PowerShell) for automation and exploit development.
- Excellent analytical, problem-solving, and communication skills.
- Ability to work independently and in a team, with a proactive and detail-oriented mindset.