At a Glance
- Tasks: Join us as a Security Tester, planning and executing vital security tests.
- Company: Be part of a forward-thinking agency focused on cybersecurity excellence.
- Benefits: Enjoy flexible work options and a supportive team environment.
- Why this job: Make a real impact by enhancing application security and protecting users.
- Qualifications: Must have CREST certification and 4-7 years of relevant experience.
- Other info: Experience with public sector projects is essential for this role.
The predicted salary is between 48000 - 72000 £ per year.
Job Scope:
- Security Test Planning & Preparation
- Coordinate with development teams for testing schedules and plan testing timelines aligned with release schedules.
- Create security test plans for new applications, major releases and enhancements.
- Define testing scope and approach using Agency Cybersecurity Control templates.
- Define entry and exit criteria for security testing phases.
- Configure security testing tools in the designated environment for (1) SCR and (2) App-VAPT.
- Setup test data and test cases.
- Secure Code Review (SCR)
- Perform source code security analysis for new applications, major release changes and enhancements.
- Use SAST tools to analyze code security and use SCA tools to review any open-source and third-party components included in the applications.
- Document code security findings and verify remediations through retesting.
- Conduct App-VAPT for new applications before production deployment.
- Major releases with significant changes.
- System enhancements affecting security controls.
- Use DAST tools for dynamic security testing.
- Document test results and generate test report using the Agency Cybersecurity Control templates.
- Provide recommendations for security improvements.
- Maintain evidence of security testing performed.
- Track security findings and remediation status.
- Provide System Security Plan (SSP) documentation.
- Report testing progress and coverage.
- Document security testing procedures.
- Share security testing findings with development teams.
- Provide guidance on security fixes implementation.
- Support security testing knowledge sharing sessions.
Requirements:
- Possess CREST certification.
- Experience in conducting SCR, VA & PT.
- 4-7 years of relevant experience.
- Must have done at least 2-3 Public Sector projects (SCR, VA & PT).
Security Tester employer: LINKTRIX SERVICES PTE. LTD.
Contact Detail:
LINKTRIX SERVICES PTE. LTD. Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Security Tester
✨Tip Number 1
Familiarise yourself with the specific security testing tools mentioned in the job description, such as SAST and DAST tools. Having hands-on experience with these tools will not only boost your confidence but also demonstrate your technical proficiency during interviews.
✨Tip Number 2
Network with professionals in the cybersecurity field, especially those who have worked on public sector projects. Engaging in discussions or attending relevant meetups can provide insights into the industry and may even lead to referrals for the position.
✨Tip Number 3
Prepare to discuss your previous experiences with SCR, VA, and PT in detail. Be ready to share specific examples of challenges you faced and how you overcame them, as this will showcase your problem-solving skills and expertise.
✨Tip Number 4
Stay updated on the latest trends and threats in cybersecurity. Being knowledgeable about current issues will not only help you in interviews but also show that you are proactive and genuinely interested in the field.
We think you need these skills to ace Security Tester
Some tips for your application 🫡
Understand the Job Requirements: Carefully read through the job description for the Security Tester position. Make sure you understand the specific skills and experiences required, such as CREST certification and experience with SCR, VA & PT.
Tailor Your CV: Highlight your relevant experience in security testing, particularly any public sector projects you've worked on. Use keywords from the job description to ensure your CV aligns with what the company is looking for.
Craft a Compelling Cover Letter: Write a cover letter that showcases your passion for cybersecurity and your specific experiences related to the role. Mention your familiarity with security testing tools and methodologies, and how you can contribute to the company's goals.
Proofread Your Application: Before submitting, thoroughly proofread your CV and cover letter for any spelling or grammatical errors. A polished application reflects your attention to detail, which is crucial in security testing.
How to prepare for a job interview at LINKTRIX SERVICES PTE. LTD.
✨Know Your Security Testing Tools
Familiarise yourself with the specific security testing tools mentioned in the job description, such as SAST and DAST tools. Be prepared to discuss your experience using these tools and how they have helped you identify vulnerabilities in past projects.
✨Demonstrate Your Planning Skills
Since the role involves test planning and coordination, be ready to explain how you approach creating security test plans. Share examples of how you've successfully aligned testing timelines with development schedules in previous roles.
✨Highlight Your Documentation Experience
Documentation is key in this role. Prepare to talk about your experience in documenting test results, generating reports, and maintaining evidence of security testing. Mention any templates or standards you’ve used, especially those relevant to cybersecurity.
✨Showcase Your Knowledge Transfer Abilities
The job requires sharing findings and providing guidance to development teams. Think of examples where you've effectively communicated security issues and solutions to non-technical stakeholders, demonstrating your ability to bridge the gap between security and development.