Penetration Tester

Manila, Manulife Business Processing Services, Philippines

Manulife

Manulife is a leading financial services group. We provide financial advice, insurance, as well as wealth and asset management solutions for individuals, groups and institutions.

View all jobs at Manulife

Apply now Apply later

Are you looking for a supportive and collaborative workplace with great benefits and clear career development? You’ve come to the right place.

Why choose Manulife?

  • Competitive Salary packages and performance bonuses
  • Day 1 HMO + FREE coverage for your dependents (inclusive of same-sex partners)
  • Retirement savings benefit
  • Rewarding culture that values wellness and well-being
  • Performance Bonus
  • Global network of industry experts
  • Extensive training resources

Working Arrangement: Hybrid

Shift Schedule: Night Shift (8pm to 5am) Philippine Time

Job Description:

Manulife’s Global Cybersecurity Services - Application Security is building up a penetration testing Centre of Excellence (COE) to deliver penetration test related capabilities for all segments in Manulife. As an Intermediate Penetration Tester, you will be working closely with our business team and second line of defense, to assess scope and level of effort based on identified areas of risk and execute assigned engagements in alignment to common penetration testing industry frameworks.

Have the skills and knowledge for the job? Learn more about the opening below!

Key Responsibilities:

  • Evaluates the security posture of the organization, assessing potential threats and vulnerabilities in any of the following:
    • Web Applications and/or Network Security
    • Microservices
    • Mobile Applications (either iOS or Android)
  • Perform Mobile VAPT either for IOS or Android.
  • Handles “medium to complex” penetration testing deliverables.
  • Develops and communicates the understanding of the potential impacts of a cyber-attack to all relevant stakeholders.
  • Evaluates different security solutions and provides advice on how to best protect the organization from cyber threats.
  • Ensures alignment with corporate and regulatory requirements for the management of information security program.
  • Performs security assessments to identify possible security vulnerabilities within the organization and develops security controls, policies and procedures to address any issues that may exist.
  • Conducts comprehensive network scans and manual network assessments, including penetration testing and vulnerability scans.
  • Write reports including technical details, risk analysis and providing remediation recommendations for identified issues.
  • Propose, examine and assist in the acquisition and development of suitable penetration testing tools to ensure the delivery of quality services to our business.
  • Maintain an ongoing awareness of trends in penetration testing technology, as well as target environment technologies and regulatory requirements.
  • Assist Sr. Pentester in documenting the process and changes in the methodologies.
  • Apply creative problem solving throughout a secure software development life cycle to continuously improve the effectiveness of the end-to-end process.
  • Provides guidance and peer reviews to associate pentesters for any support.

Qualifications:

  • Bachelor’s degree holder in Computer Science, Information Technology, Cybersecurity, Information Systems, or any related discipline.
  • Holds relevant Information Security or any related certification/training such as OSCP, OSCE, CEH, GWAPT, GPEN, eWPT is preferred.
  • 3 to 5 years of IT experience with demonstrated application security expertise, including a minimum of 2 years performing hands-on penetration tests on external and internal networks, operating systems, web applications, mobile platforms, and more.
  • Demonstrated technical knowledge of current vulnerabilities, exploits and tools.
  • Capable in developing advanced attacking capabilities and methods.
  • Advocate of security industry best practices and procedures.
  • Exposure with various security assessment frameworks and procedures, including following industry best practice methodologies for penetration testing and the ability to perform both manual and automated testing.
  • Experience in researching evolving exploits, techniques, and tools in support of penetration testing efforts.
  • Experience in developing security tools, using scripts and utilities to automate assessment and analysis activities.
  • Good verbal and written communication skills including the ability to write clear and concise assessment reports.
  • Good stakeholder management and interpersonal skills.
  • Ability to communicate with executives, peers and employees at all levels.
  • Good time management and organizational skills.
  • Experience working in an international environment with people from multiple cultures.

**People Leader Role: No

Learn more about opportunities with us at jobs.manulife.com  

Join our global network of industry experts! Apply today.

** This job description does not represent a comprehensive listing of job duties that are required of the employee performing this role. We reserve the right to change duties or assign additional duties at any time with or without notice.

Manulife is an Equal Opportunity Employer

At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention, advancement and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, colour, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy-related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law. 


It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process. All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and Manulife/John Hancock policies. To request a reasonable accommodation in the application process, contact MBPS_Talent_Attraction_Team@MANULIFE.COM


Who is MBPS?


Manulife Business Processing Services (MBPS) is a global shared service center providing administrative, finance, investments, contact center, information technology, underwriting, actuarial, and marketing services to Manulife and John Hancock companies around the world.

About Manulife and John Hancock

Manulife Financial Corporation is a leading international financial services provider, helping people make their decisions easier and lives better. To learn more about us, visit https://www.manulife.com/en/about/our-story.html.

Manulife is an Equal Opportunity Employer

At Manulife/John Hancock, we embrace our diversity. We strive to attract, develop and retain a workforce that is as diverse as the customers we serve and to foster an inclusive work environment that embraces the strength of cultures and individuals. We are committed to fair recruitment, retention, advancement and compensation, and we administer all of our practices and programs without discrimination on the basis of race, ancestry, place of origin, colour, ethnic origin, citizenship, religion or religious beliefs, creed, sex (including pregnancy and pregnancy-related conditions), sexual orientation, genetic characteristics, veteran status, gender identity, gender expression, age, marital status, family status, disability, or any other ground protected by applicable law.

It is our priority to remove barriers to provide equal access to employment. A Human Resources representative will work with applicants who request a reasonable accommodation during the application process. All information shared during the accommodation request process will be stored and used in a manner that is consistent with applicable laws and Manulife/John Hancock policies. To request a reasonable accommodation in the application process, contact recruitment@manulife.com.

Working Arrangement

Hybrid
Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  3  0  0
Category: PenTesting Jobs

Tags: Android Application security CEH Computer Science eWPT Exploits Finance GPEN GWAPT iOS Microservices Network security OSCE OSCP Pentesting Risk analysis SDLC Security assessment SSDLC Vulnerabilities Vulnerability scans

Perks/benefits: Career development Competitive pay Gear Salary bonus Team events Wellness

Region: Asia/Pacific
Country: Philippines

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.