Your career compass awaits
Create a free account to unlock
- ✓ See how you match this role
- ✓ AI resume tailored to this specific job
- ✓ Inside Track Companion — find your insider contact
- ✓ Skills gap analysis and upskill plan
- ✓ Interview prep kit for this role
- ✓ Relocation concierge — salary, tax, cost of living
Free — no credit card required
DRSC Global Technology, Analyst - Penetration Testing
ICT
Company shared salary
NA
Market rate
RM12,000–RM18,000/mo (RM144,000–RM216,000/yr)
Based on similar roles (title + domain + location).
About the Company
At Deloitte, our purpose is to make an impact that matters for our clients, our people, and the communities we serve. We believe we have a responsibility to be a force for good, and WorldImpact is our portfolio of initiatives focused on making a tangible impact on society's biggest challenges and creating a better future. We strive to advise clients on how to deliver purpose-led growth and embed more equitable, inclusive as well as sustainable business practices. Hence, we seek talented individuals driven to excel and innovate, working together to achieve our shared goals. We are committed to creating positive work experiences that foster a culture of respect and inclusion, where diverse perspectives are celebrated, and everyone is recognised for their contributions. Ready to unleash your potential with us Join the winning team now As the Penetration Testing Analyst, you will be responsible for providing penetration testing services through a combination of technology and manual ingenuity as part of the Global cyber services organization for member firms. Responsibilities of this role include: At Deloitte, we believe in the importance of empowering our people to be leaders at all levels. We connect our purpose and shared values to identify issues as well as to make an impact that matters to our clients, people and the communities. Additionally, Analysts across our Firm are expected to:
Requirements
- ● Demonstrated min 3 years' experience of operating in a penetration testing role.
- ● Experience using common testing tools like Burp, OWASP ZAP, Metasploit, Postman, Swagger, NMAP, Qualys, SQLMap, others
- ● Experienced with Kali Linux or other dedicated Penetration Testing OS Platform
- ● Advance mobile penetration testing, Application Penetration Testing and architectural security principles
- ● Familiarity with software security weakness and vulnerabilities
- ● Working knowledge of one scripting language and familiarity with at least one software programming language and framework
- ● Demonstrated experience working with diverse stakeholders, preferably on a global multi-national basis
- ● Ability to manage concurrent initiatives and use effective judgment in prioritization and time management
- ● Strong written and verbal communication skills
- ● Certified Ethical Hacker (CEH) Certification
- ● Offensive Certified Security Professional (OSCP) Certification
- ● Any GIAC Certification (GSEC, GWAB, GPEN, GMOB, GCPN)
- ● OWASP Application Security Top 10
- ● OWASP API Security Top 10
- ● OWASP Thick Client Top 10
- ● OWASP LLM Top 10
- ● MITRE ATT&CK Framework
- ● Cloud Service testing
- ● Reverse Engineering
- ● Static Application Software Testing (SAST)
- ● Dynamic Application Testing (DAST)
- ● Experience of Agentic development and its application to support penetration testing.
⚡ Full Resume Sandbox Canvas