Jobiglo

Sin resultados.

Senior Security Engineer – Compliance & Penetration Testing

TEKHQS · Lahore

Nuevo
Hybrid Mid 🇬🇧 English
Burp Suite Nmap Nessus Wireshark SQLMap Metasploit Nikto API security Network security Linux Windows Authentication Authorization Session management AWS Azure GCP Python Bash PowerShell OWASP Top 10

Descripcion del puesto

About the role

We are seeking a proactive Senior Security Engineer specializing in compliance and penetration testing to join our Cyber Security & Compliance team in Lahore. The role blends offensive security testing with governance responsibilities, ensuring our systems meet industry standards while identifying and mitigating vulnerabilities.

Key responsibilities

  • Perform web, API, network, and infrastructure penetration testing engagements.
  • Conduct vulnerability assessments using manual and automated techniques.
  • Identify, validate, and document security findings with remediation recommendations.
  • Support compliance initiatives for ISO 27001, SOC 2, GDPR, HIPAA, PCI‑DSS and assist in internal audits.
  • Evaluate applications against the OWASP Top 10 and security best practices.
  • Collaborate with development, DevOps, and infrastructure teams to improve security posture.
  • Participate in secure SDLC activities and provide security guidance throughout the development lifecycle.
  • Produce detailed technical reports including risk ratings, proofs‑of‑concept and mitigation plans.
  • Monitor emerging threats, assist with incident investigations and maintain security policies.

Required profile

  • 3–4 years of hands‑on experience in cybersecurity, penetration testing or security compliance.
  • Strong understanding of OWASP Top 10 vulnerabilities and remediation techniques.
  • Experience supporting ISO 27001, SOC 2, GDPR, HIPAA or PCI‑DSS compliance efforts.
  • Basic scripting or automation knowledge (Python, Bash or PowerShell) is a plus.
  • Preferred certifications: CEH, eJPT/eCPPT, Security+, ISO 27001 Lead Implementer/Auditor, OSCP.

Required skills

  • Burp Suite, Nmap, Nessus, Wireshark, SQLMap, Metasploit, Nikto.
  • Web application and API security, network security concepts and protocols.
  • Linux and Windows operating systems.
  • Authentication, authorization and session management.
  • Cloud security concepts (AWS, Azure, GCP).

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec TEKHQS.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Por que reporta esta oferta?

Gracias por su reporte. Revisaremos esta oferta.

Postula en 30 segundos

Ingresa tu email para postular. Se creara una cuenta automaticamente.

Al continuar, aceptas nuestras condiciones de uso.

Ya tienes cuenta? Iniciar sesion

Publicado hace 5 horas

Expira en 1 mes

8 vistas · 0 candidaturas

Aumenta tus posibilidades

Sube tu CV: te propondremos las ofertas que coinciden con tu perfil.

Analizando tu CV...

TEKHQS

Lahore