What Lead Penetration Tester Jobs are in South Africa?
Showing 118 Lead Penetration Tester jobs in South Africa
Lead Penetration Tester - Application Security Expert
Posted 6 days ago
Job Viewed
Job Description
Our client, a prominent e-commerce enterprise situated in the vibrant city of Cape Town , is actively recruiting a Lead Penetration Tester with deep expertise in application security. This role is crucial for identifying and mitigating vulnerabilities within our web and mobile applications before they can be exploited by malicious actors. As the Lead, you will guide a team of security professionals, design comprehensive testing strategies, and communicate findings to both technical and non-technical stakeholders. You will be at the forefront of ensuring the security posture of our customer-facing platforms, playing an instrumental role in building trust and maintaining operational integrity. The ideal candidate will possess a strong ethical hacking background and a passion for cutting-edge security practices. This is an opportunity to make a significant impact in a fast-paced, innovative environment within Cape Town .
Key Responsibilities- Lead and execute comprehensive penetration tests on web applications, mobile applications, APIs, and network infrastructure.
- Develop and refine penetration testing methodologies and frameworks to identify complex vulnerabilities.
- Conduct manual security testing, code reviews, and vulnerability assessments.
- Analyze test results, document findings in detailed reports, and provide actionable recommendations for remediation.
- Collaborate with development teams to integrate security into the Software Development Life Cycle (SDLC).
- Mentor and guide junior penetration testers, fostering their technical and professional growth.
- Stay updated with the latest vulnerability exploits, attack techniques, and security trends.
- Present security findings and recommendations to senior management and technical teams.
- Develop proof-of-concept exploits to demonstrate the impact of identified vulnerabilities.
- Contribute to the development of security awareness training programs.
- Bachelor’s degree in Cybersecurity, Computer Science, or a related discipline.
- A minimum of 7 years of experience in penetration testing and application security.
- Demonstrated expertise in OWASP Top 10 vulnerabilities, SQL injection, XSS, CSRF, and other common web/mobile exploits.
- Proficiency with penetration testing tools such as Burp Suite, Metasploit, Nmap, and Kali Linux.
- Experience with scripting languages (e.g., Python, JavaScript) for security automation and exploit development.
- Strong understanding of secure coding practices and SDLC.
- Relevant certifications like OSCP, OSCE, CISSP, or CEH are highly preferred.
- Excellent analytical, reporting, and communication skills, with the ability to articulate technical risks effectively.
- Proven leadership experience and the ability to manage a team.
- Must be willing to work full-time in our Cape Town office.
Our client offers an attractive remuneration package including a competitive base salary, annual bonus, and a comprehensive medical aid plan. Professional development is strongly encouraged, with support for further certifications and conference attendance. Employees will enjoy a dynamic work environment in a prime Cape Town location, with ample opportunities for career progression within the security domain. This role provides the chance to work with cutting-edge technologies and contribute to the security of a major online platform.
Is this job a match or a miss?
Remote Lead Penetration Tester
Posted 9 days ago
Job Viewed
Job Description
Our client is seeking a highly skilled and experienced Lead Penetration Tester to join their elite cybersecurity team. This is a fully remote position, allowing you to work from your preferred location. You will be responsible for leading offensive security engagements, identifying critical vulnerabilities in complex systems, and providing expert guidance on remediation. This role demands a deep understanding of attack vectors, exploitation techniques, and security assessment methodologies. The ideal candidate is a seasoned ethical hacker with a passion for breaking systems securely and helping organizations improve their defenses. You will guide junior testers, develop testing methodologies, and contribute to the overall advancement of our client's offensive security capabilities. This position offers the chance to work on challenging projects and make a tangible difference in protecting sensitive information.
Key Responsibilities- Lead and execute comprehensive penetration testing engagements across various environments (web applications, networks, APIs, cloud).
- Identify, exploit, and document vulnerabilities using advanced techniques.
- Develop and refine penetration testing methodologies and playbooks.
- Mentor and guide junior penetration testers, providing technical direction and feedback.
- Conduct security architecture reviews and provide recommendations for hardening systems.
- Perform red teaming exercises to simulate real-world adversary tactics, techniques, and procedures (TTPs).
- Develop proof-of-concept exploits for discovered vulnerabilities.
- Generate detailed, high-quality penetration test reports for technical and executive audiences.
- Stay current with the latest attack methodologies, tools, and exploit techniques.
- Contribute to the development of custom security tools and scripts.
- Bachelor's degree in Computer Science, Cybersecurity, or a related technical field, or equivalent practical experience.
- Minimum of 7 years of experience in penetration testing and offensive security.
- Proven expertise in web application security, network penetration testing, and vulnerability assessment.
- In-depth knowledge of common vulnerabilities (e.g., OWASP Top 10) and exploitation techniques.
- Proficiency with penetration testing tools (e.g., Metasploit, Burp Suite, Nmap, Wireshark).
- Experience with scripting or programming languages (e.g., Python, PowerShell, Bash).
- Strong understanding of operating systems, networking protocols, and security concepts.
- Excellent report writing and communication skills.
- Relevant certifications such as OSCP, OSCE, GWAPT, GPEN are highly regarded.
- Ability to work independently and lead complex engagements in a remote setting.
- Highly competitive compensation package, reflecting expert-level skills.
- Fully remote work opportunity, offering maximum flexibility.
- Opportunity to work on diverse and challenging security projects.
- Access to cutting-edge offensive security tools and resources.
- Direct impact on improving client security postures.
- Professional development support and conference attendance.
- Collaborative environment with top security professionals.
- Performance-based bonuses and recognition.
- Flexible working hours to suit your schedule.
Is this job a match or a miss?
Lead Cybersecurity Engineer - Cloud Security
Posted 6 days ago
Job Viewed
Job Description
Is this job a match or a miss?
Lead Security Architect
Posted 9 days ago
Job Viewed
Job Description
Our client is seeking a visionary Lead Security Architect to spearhead the design, development, and implementation of secure architectural solutions across their enterprise. This pivotal role demands a strategic thinker with extensive experience in designing robust security frameworks, policies, and standards. You will be responsible for translating business requirements into secure technical solutions, ensuring that security is embedded into the fabric of our client's technology landscape. This position is a fully remote role, empowering you to contribute your expertise from anywhere, while being intrinsically linked to the operational hubs, including Richards Bay, KwaZulu-Natal, ZA . You will lead a team of security professionals, driving innovation and excellence in our client's security architecture.
Key Responsibilities- Define and maintain the enterprise security architecture strategy, roadmaps, and standards.
- Design and oversee the implementation of secure infrastructure, applications, and cloud environments.
- Conduct architectural reviews and provide security guidance for new projects and technology initiatives.
- Develop and enforce security policies, standards, and best practices across the organization.
- Evaluate and recommend security technologies and solutions to address evolving threats and business needs.
- Collaborate with development, operations, and business teams to ensure security requirements are met throughout the system lifecycle.
- Lead and mentor a team of security architects and engineers, fostering a culture of continuous improvement.
- Stay abreast of industry trends, emerging threats, and regulatory changes impacting security architecture.
- Master's degree in Computer Science, Information Security, or a related field, or equivalent extensive experience.
- 10+ years of experience in information security, with at least 5 years in a security architecture role.
- Proven experience designing and implementing security architectures for complex, large-scale environments, including on-premises and cloud (AWS, Azure, GCP).
- Deep understanding of security principles, frameworks (NIST, ISO 27001), and compliance requirements.
- Expertise in network security, cryptography, identity and access management, data security, and application security.
- Experience with security assessment tools, threat modeling, and risk management methodologies.
- Strong leadership, communication, and stakeholder management skills.
- Ability to translate complex technical concepts into clear, actionable recommendations.
- CISSP, TOGAF, or similar architecture certifications are highly desirable.
- Exceptional executive-level compensation package.
- Comprehensive benefits including health, retirement, and generous vacation.
- Significant budget for professional development, conferences, and certifications.
- Flexible remote work schedule and opportunities for global collaboration.
- Opportunity to shape the future of security architecture for a leading organization.
- Engage with a forward-thinking team, making a global impact from your chosen location, including support for those near Richards Bay, KwaZulu-Natal, ZA .
- Leadership role with significant influence and strategic impact.
Is this job a match or a miss?
Lead Network Security Engineer
Posted 9 days ago
Job Viewed
Job Description
- Lead the design, deployment, and maintenance of network security solutions, including firewalls, IDS/IPS, VPNs, and WAFs.
- Develop and implement comprehensive network security policies, standards, and procedures.
- Conduct regular vulnerability assessments, penetration testing, and security audits.
- Monitor network traffic for security threats and respond to security incidents effectively.
- Manage and configure security hardware and software, ensuring optimal performance and security.
- Stay abreast of the latest cybersecurity threats, vulnerabilities, and mitigation techniques.
- Provide expert guidance and mentorship to junior security engineers and network teams.
- Collaborate with IT and business units to ensure security requirements are integrated into system designs.
- Develop and deliver security awareness training to employees.
- Participate in on-call rotation for security incident response.
- Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field; Master's degree preferred.
- 8+ years of experience in network security engineering, with at least 3 years in a lead or senior role.
- In-depth knowledge of network security principles, protocols, and best practices.
- Hands-on experience with security technologies such as Cisco ASA/Firepower, Palo Alto Networks, Fortinet, Check Point, Splunk, and similar solutions.
- Proficiency in security hardening techniques for network devices and systems.
- Experience with threat intelligence platforms and incident response frameworks.
- Strong understanding of cloud security (AWS, Azure, GCP) is a plus.
- Excellent analytical, problem-solving, and decision-making skills.
- Strong leadership, communication, and interpersonal abilities for effective remote collaboration.
- Relevant security certifications such as CISSP, CCSP, CEH, or GIAC are highly desirable.
Is this job a match or a miss?
Lead Threat Intelligence Analyst
Posted 9 days ago
Job Viewed
Job Description
Our client, a prominent player in the maritime and logistics industry, is seeking an experienced Lead Threat Intelligence Analyst to bolster their cybersecurity capabilities. This pivotal role involves leading the analysis of cyber threats, identifying potential risks, and providing actionable intelligence to protect the organization's operational and data integrity. The ideal candidate will have a proven track record in threat hunting, malware analysis, and understanding adversary tactics, techniques, and procedures (TTPs). This position offers a hybrid work arrangement, blending essential in-office collaboration in Richards Bay, KwaZulu-Natal, ZA , with remote flexibility. You will be responsible for guiding the threat intelligence function, mentoring junior analysts, and developing strategic approaches to cybersecurity defense.
Key Responsibilities- Lead the collection, analysis, and dissemination of threat intelligence relevant to the organization.
- Develop and refine threat models based on adversary TTPs and the evolving threat landscape.
- Conduct deep-dive analysis of malware, phishing campaigns, and other cyber threats.
- Manage and leverage threat intelligence platforms and data sources.
- Produce timely and actionable intelligence reports for various stakeholders, including executive leadership and technical teams.
- Mentor and guide junior threat intelligence analysts.
- Collaborate with incident response and security operations teams to provide context and support during security events.
- Stay current with geopolitical events and their impact on the cyber threat landscape.
- Bachelor's degree in Computer Science, Cybersecurity, Intelligence Studies, or a related discipline.
- Minimum of 6 years of experience in cybersecurity, with a strong focus on threat intelligence analysis.
- Demonstrated expertise in malware analysis, reverse engineering, and forensic techniques.
- Proficiency in using threat intelligence platforms (TIPs), open-source intelligence (OSINT) tools, and data analysis techniques.
- In-depth knowledge of various threat actor groups, their motivations, and TTPs.
- Excellent written and verbal communication skills, with the ability to present complex findings clearly.
- Leadership experience or proven ability to mentor junior team members.
- Experience working in a hybrid environment within Richards Bay, KwaZulu-Natal, ZA is a plus.
Our client provides a competitive remuneration package, including a strong base salary, performance bonuses, and comprehensive medical and retirement benefits. We support continuous professional development through access to advanced training, industry conferences, and relevant certifications. The hybrid work model promotes a healthy work-life balance, offering flexibility while ensuring team cohesion. You will work with a dedicated and professional team, contributing to the security of a significant organization in the Richards Bay, KwaZulu-Natal, ZA area. Opportunities for career advancement within the cybersecurity domain are abundant.
Is this job a match or a miss?
Lead Cybersecurity Engineer
Posted 9 days ago
Job Viewed
Job Description
Join a pioneering technology firm in the vibrant city of Cape Town as a Lead Cybersecurity Engineer. Our client is at the forefront of innovation, developing cutting-edge solutions that require the highest level of security. This senior role is pivotal in architecting, implementing, and overseeing the company's cybersecurity infrastructure and strategies. You will lead a team of skilled security professionals, ensuring the integrity, confidentiality, and availability of critical systems and data. This is an exciting opportunity for a visionary leader to make a significant impact in a fast-paced, growth-oriented environment located in the beautiful Western Cape .
Key Responsibilities- Lead the design, development, and implementation of robust cybersecurity architectures and solutions.
- Manage and mentor a team of cybersecurity engineers and analysts, fostering a culture of excellence and continuous improvement.
- Oversee the deployment and management of security technologies including firewalls, IDS/IPS, SIEM, endpoint security, and encryption tools.
- Develop and execute comprehensive incident response plans, conducting post-incident analysis and implementing preventative measures.
- Conduct threat modeling, risk assessments, and security architecture reviews for new and existing systems.
- Ensure compliance with relevant regulations and industry best practices.
- Collaborate with cross-functional teams (development, operations, product management) to embed security throughout the product lifecycle.
- Champion security best practices and provide technical leadership to the organization.
- Evaluate and recommend new security technologies and solutions.
- Master's degree in Computer Science, Engineering, Cybersecurity, or a related discipline.
- 10+ years of progressive experience in cybersecurity engineering and architecture.
- Proven experience in leading and managing technical teams.
- Deep expertise in network security, application security, cloud security (AWS/Azure), and data protection.
- Hands-on experience with security monitoring, incident detection, and response.
- Strong understanding of cryptography, secure coding practices, and common vulnerabilities.
- Experience with security automation and orchestration tools.
- Excellent leadership, communication, and stakeholder management skills.
- Industry certifications such as CISSP, CISM, CEH, or cloud-specific security certifications are highly desirable.
- Experience in the financial services or technology sector is a plus.
Our client offers a highly competitive salary and bonus structure. A comprehensive benefits package includes private health insurance, retirement savings plans with generous employer contributions, and life insurance. The company invests heavily in employee development, offering access to industry conferences, training programs, and support for further certifications. Enjoy a dynamic and collaborative work environment in a prime Cape Town location, with modern office facilities and team-building activities. Additional benefits include performance-based incentives and opportunities for career advancement within a rapidly expanding organization.
Is this job a match or a miss?
Lead Data Protection Officer
Posted 9 days ago
Job Viewed
Job Description
- Develop, implement, and maintain the company's data protection strategy and policies in accordance with POPIA and international standards.
- Act as the primary point of contact for data protection authorities and data subjects.
- Conduct Data Protection Impact Assessments (DPIAs) and Privacy by Design initiatives.
- Provide expert advice and training to employees on data protection obligations and best practices.
- Monitor and audit compliance with data protection policies and procedures.
- Manage and investigate data breaches, ensuring timely notification and remediation.
- Stay abreast of evolving data privacy laws and regulatory guidance, advising the business on necessary changes.
- Oversee the management of data subject access requests (DSARs).
- Lead and mentor the data privacy team, fostering a collaborative and high-performing environment.
- Collaborate with legal, cybersecurity, and compliance teams to ensure a holistic approach to data governance.
- A relevant degree in Law, Information Security, or a related field.
- Professional certification in data protection (e.g., CIPP/E, CIPM, CIPT) is highly desirable.
- A minimum of 8 years of progressive experience in data privacy and protection, with at least 3 years in a leadership role.
- Comprehensive understanding of POPIA, GDPR, and other relevant international data protection regulations.
- Proven experience in conducting DPIAs and implementing privacy management frameworks.
- Excellent knowledge of data security principles and technologies.
- Strong project management and analytical skills.
- Exceptional communication, presentation, and interpersonal skills, with the ability to influence stakeholders at all levels.
- Demonstrated ability to lead and develop a team in a remote setting.
- Experience in the technology sector is a significant advantage.
Is this job a match or a miss?
Lead Cloud Security Architect
Posted 9 days ago
Job Viewed
Job Description
- Architecting and implementing comprehensive cloud security solutions and strategies across multi-cloud environments (AWS, Azure, GCP).
- Developing and enforcing cloud security policies, standards, and best practices.
- Leading the design and deployment of security controls, including identity and access management (IAM), network security, data encryption, and threat detection in the cloud.
- Conducting security reviews and assessments of cloud architectures and services.
- Collaborating with engineering and operations teams to ensure secure deployment and operation of cloud-native applications.
- Developing and managing incident response plans specifically for cloud environments.
- Evaluating and recommending new cloud security technologies and tools.
- Mentoring junior security engineers and architects.
- Ensuring compliance with relevant regulations and standards within cloud deployments.
- Automating security processes and controls within the cloud infrastructure.
- A Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent work experience.
- Extensive experience (7+ years) in information security, with a strong focus on cloud security architecture and design.
- Proven expertise in securing major cloud platforms such as AWS, Azure, and Google Cloud Platform.
- Deep understanding of cloud security concepts like micro-segmentation, container security, serverless security, and DevSecOps.
- Hands-on experience with cloud security tools (e.g., CloudFormation, Terraform, Security Hub, Azure Security Center).
- Familiarity with cybersecurity frameworks (NIST, ISO 27001, CIS benchmarks).
- Excellent communication and leadership skills, with the ability to influence stakeholders at all levels.
- Strong analytical and problem-solving capabilities in complex cloud environments.
- Relevant cloud security certifications (e.g., AWS Certified Security - Specialty, Azure Security Engineer Associate) are highly desirable.
- Experience with scripting languages (e.g., Python, Bash) for cloud automation.
Is this job a match or a miss?
Discover exciting lead