Security Test Engineer (Mobile Banking Application)
Kris Infotech : Technology & Talent - Synced
Singapore · Full Time
Be the first to apply
- Experience
- Any
- Salary
- —
- Openings
- 1
- Posted
- 6 days ago
- Work mode
- In office
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
Role Overview
This position entails full responsibility for executing both application-layer and infrastructure-layer security testing, including scheduled as well as surprise assessments, prior to the client's independent penetration testing.
Key Duties
- Perform comprehensive application security tests aligned with the OWASP MASVS framework.
- Conduct infrastructure and platform security evaluations across all technical stack components.
- Carry out PCI DSS compliance verification specifically for cardholder data management within the Cards module.
- Plan and execute unannounced security testing campaigns without prior notification to the delivery teams.
- Manage vulnerability tracking, review cloud security postures, and oversee identity and access controls.
- Liaise and communicate findings effectively with the client's independent security team during handoffs.
Essential Qualifications and Experience
- Demonstrable expertise in mobile application security testing, preferably within digital banking or fintech environments.
- Proficient understanding and experience with the OWASP MASVS standard.
- Adept at conducting adversarial or red-team style testing under surprise conditions.
- The proposal must include a specifically named individual with a verified CV, as this serves as a binding resource commitment.
- Familiarity and experience with cloud security posture reviews involving Kubernetes, Docker, and Kafka, alongside vulnerability management and red-team techniques.
Tools & software
Docker
required
Kubernetes
required
Apache Kafka
required
How they work
Attention to Detail
Organisation
Integrity