5+ years of experience in penetration testing or vulnerability assessment., Deep knowledge of security testing methodologies and frameworks like OWASP and NIST., Proficiency with advanced penetration testing tools such as Metasploit and Burp Suite., Strong scripting skills in languages like Python and Bash..
Key responsibilities:
Lead and conduct comprehensive penetration tests on networks and applications.
Document and report security findings with actionable insights for clients.
Collaborate with cross-functional teams to resolve security vulnerabilities.
Research emerging security threats and participate in incident response activities.
Report This Job
Help us maintain the quality of our job listings. If you find any issues with this job post, please let us know.
Select the reason you're reporting this job:
Momentum Group Limited (Momentum Group), previously Momentum Metropolitan Holdings Limited, is a significant player in South Africa's life insurance and integrated financial services sectors. We are a proud Level 1 B-BBEE South African-based group dedicated to building and protecting our clients' financial dreams. Our client-facing retail and specialist brands, including renowned names such as Momentum, Metropolitan, Guardrisk, and Eris Properties, play a pivotal role in fulfilling this purpose.
Our federated model emphasises empowerment, accountability, and continuous engagement with all our stakeholders. Designed in close consultation with leaders across the group, this operating model aims to unleash each business unit's inherent energy and commercial drive through our collaborative federated approach.
We are distinguished by our ethos as a business with heart, ensuring genuine care and integrity in every interaction with clients, stakeholders, and communities stakeholders, and communities.
Through our client-facing brands Metropolitan and Momentum, with Multiply (wellness and rewards program), and our other specialist brands, including Guardrisk and Eris Property Group, the group enables business and people from all walks of life to achieve their financial goals and life aspirations.We help people grow their savings, protect what matters to them and invest for the future. We help companies and organization’s care for and reward their employees and members. Through our own network of advisers or via independent brokers and utilising new platforms Momentum Metropolitan provides practical financial solutions for people, communities, and businesses. Visit us at www.momentumgroupltd.co.za
Disclaimer As an applicant, please verify the legitimacy of this job advert on our company career page.
Role Purpose
This position is responsible for performing various tasks. This role is also required to conduct ongoing research in the IT security arena and regularly assist in the sales process.The ideal candidate will be responsible for conducting comprehensive penetration tests, identifying vulnerabilities, and providing recommendations to improve security posture. The ideal candidate must have experience in all forms of complex technical security assessments of clients’ information technology systems (including the Internet, Intranet, applications, hosts, firewalls, mobile applications, etc.) and related policies and procedures. They must be highly motivated and have a good command of industry best practices.
Requirements
5+ years of experience in penetration testing, vulnerability assessment, or a related field.
Deep knowledge of security testing methodologies and frameworks (OWASP, NIST, etc.).
Proficiency with advanced penetration testing tools such as Metasploit, Burp Suite, Nessus, Nmap, etc.
In-depth understanding of network protocols, operating systems, web technologies, and cloud environments.
CISSP and CEH certification preferred.
OSCP, OSEP, CCSP, CRTE, CRTP, or CRTO certification or equivalent is an advantage.
Duties & Responsibilities
Lead and conduct comprehensive penetration tests on networks, applications, and systems to identify security weaknesses.
Develop and implement advanced security test plans, scenarios, and scripts.
Perform in-depth vulnerability assessments and security analysis using both automated tools and manual techniques.
Document and report security findings, providing actionable insights to clients and detailed recommendations for remediation.
Collaborate with cross-functional teams to prioritize and resolve security vulnerabilities.
Research and stay current with emerging security threats, vulnerabilities, and technology trends.
Participate in security incident response activities when required.
Assist in the development and refinement of security policies, procedures, and standards.
Provide training, guidance, and mentorship to junior penetration testers and other security staff.
Perform security assessments, including application scans (using tools such as Nessus, Burp Suite) and code reviews, to ensure compliance with Momentum Group’s SDLC policies.
Participate in a variety of other internal security projects and information security activities as required.
Competencies
Strong knowledge of OWASP Top 10 vulnerabilities and how to exploit/mitigate them.
Excellent technical writing skills for creating detailed assessment reports.
Self-driven, motivated, independent yet communicative and collaborative.
Ability to work unsupervised in a remote capacity and deliver results.
Good organizational skills and time management; ability to resolve conflicts, prioritize tasks, and follow quality benchmarks.
Strong verbal communication skills for presenting findings to technical and non-technical stakeholders.
Demonstrate a strong ability to engage with various stakeholders, have a team-based approach, and work towards shared goals and outcomes.
Ability to think outside the box and a passion to improve your skills and drive innovation.
Required profile
Experience
Spoken language(s):
English
Check out the description to know which languages are mandatory.