Cyber Security Specialist (Penetration Testing)
Hong Kong (SAR)
Mox Bank
With Mox, every day counts as weâre here to help you grow your money, your world, your possibilities. Join Generation Mox now to experience a new way of smarter banking, saving and spending.
Cyber Security Specialist (Penetration Testing)
Mox is built by and for the ones who aspire to live life to the fullest â we call them Generation Mox! The name Mox reflects the endless opportunities we can create, - Mobile eXperience; Money eXperience; Money X (multiplier), eXponential growth, eXploration⊠itâs all up for us to define together.
Why Mox
Everything at Mox â from our products, features, to rewards â is designed based on customer research, tailor made for your needs. We care about what customers care about, especially in data security and privacy. Data ethics is core to everyone here at Mox. Mox rewards you with an array of banking and lifestyle benefits. Who says banking canât be fun?
What we are looking for?
We are looking for a cyber security specialist (Penetration testing to join our team!
Application Deadline: 14 July 2025
Department: Technology-CDSIO
Employment Type: Permanent - Full Time
Location: Hong Kong (SAR)
Description
About MoxMox is built by and for the ones who aspire to live life to the fullest â we call them Generation Mox! The name Mox reflects the endless opportunities we can create, - Mobile eXperience; Money eXperience; Money X (multiplier), eXponential growth, eXploration⊠itâs all up for us to define together.
Why Mox
Everything at Mox â from our products, features, to rewards â is designed based on customer research, tailor made for your needs. We care about what customers care about, especially in data security and privacy. Data ethics is core to everyone here at Mox. Mox rewards you with an array of banking and lifestyle benefits. Who says banking canât be fun?
What we are looking for?
We are looking for a cyber security specialist (Penetration testing to join our team!
Responsibilities
- Provide security expertise to ensure the ongoing confidentiality, integrity, and availability of systems and information effectively and efficiently.Â
- Â Scope and perform hands-on penetration testing and security assessments of web applications, APIs, infrastructure, cloud environments and mobile (iOS/Android) apps to assess and validate their security posture
- Write high quality reports on identified vulnerabilities, including recommendations to remediate, and deliver report to stakeholders
- Manage security assessments conducted by vendors and consultants
- Manage the penetration testing pipeline to ensure on-time completion and delivery
- Work closely with key development and operations stakeholders to ensure timely remediation Â
- Conduct security code reviews and make recommendations to developers
- ·Drive security awareness of secure coding practices and techniques
- Work collaboratively with key development and operations stakeholders to support the secure CI/CD pipeline
- Conduct offensive research to evaluate emerging cyber security threats and trends
- Work closely with the security operations team to proactively identify potential weaknesses, threats or vulnerabilities and address them
- Maintain up-to-date knowledge of the latest attacks, vulnerabilities, mitigation strategies, industry best practices and regulations
- Provide subject matter expertise, security consulting, and advisory services to business entities and project teams
- Build strong working relationships across the business and technology teams
Requirements
- 5+ Yearsâ experience in IT security related positions with a key focus on penetration testing and application security
- You should be able to demonstrate:
- Passion for offensive security and assurance
- Risk mindset and knowledge of risk management guidelines and frameworks
- Good understanding of penetration testing methodologies / techniques and software security principles
- Ability to communicate and articulate technical findings with stakeholders at all levels of the businessÂ
- Hands-on threat, vulnerability, and remediation management experience
- Experience working in a cloud and container-based environment is highly desired
- Critical thinker with strong problem-solving and analytical skills
- Strong time management and ability to manage multiple projects under strict timelines.
- Development and automation experience in one or more programming languages are highly desired
- Strong collaborative nature and ability to contribute to a team environment
- Previous experience working within the finance/banking or advisory services industry beneficialÂ
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index đ°
Job stats:
10
1
0
Category:
PenTesting Jobs
Tags: Android APIs Application security Automation Banking CI/CD Cloud Finance iOS Offensive security Pentesting Privacy Risk management Security assessment Security Assessment Report Vulnerabilities
Region:
Asia/Pacific
Country:
Hong Kong
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information System Security Officer jobsIT Security Analyst jobsSecurity Operations Engineer jobsSenior Cybersecurity Engineer jobsSenior Cloud Security Engineer jobsSenior Security Analyst jobsSenior Information Security Analyst jobsCyber Security Specialist jobsInformation Security Manager jobsSenior Product Security Engineer jobsSenior Network Security Engineer jobsSecurity Consultant jobsSenior Information Security Engineer jobsInformation System Security Officer (ISSO) jobsChief Information Security Officer jobsInformation Systems Security Engineer jobsSecurity Specialist jobsSenior Cyber Security Engineer jobsIT Security Engineer jobsCyber Threat Intelligence Analyst jobsSecurity Operations Analyst jobsSenior Software Engineer jobsSenior IT Auditor jobsCybersecurity Specialist jobsNetwork Engineer jobs
Bash jobsCEH jobsTS/SCI jobsEncryption jobsEDR jobsSDLC jobsSplunk jobsThreat detection jobsMalware jobsRMF jobsTerraform jobsFinance jobsIDS jobsSQL jobsTop Secret jobsCompTIA jobsForensics jobsITIL jobsIPS jobsSOC 2 jobsOWASP jobsActive Directory jobsDocker jobsClearance Required jobsGIAC jobs
CRISC jobsIntrusion detection jobsTCP/IP jobsOSCP jobsAnsible jobsHIPAA jobsVPN jobsMITRE ATT&CK jobsDoDD 8570 jobsZero Trust jobsData Analytics jobsJavaScript jobsSOAR jobsCCSP jobsSOX jobsBanking jobsIT infrastructure jobsJira jobsUNIX jobsDNS jobsIndustrial jobsNIST 800-53 jobsKPIs jobsCISO jobsMachine Learning jobs