Skip to content

Information Security (Vulnerability and Penetration )

Unison Group · Kuala Lumpur

Posted 8/27/2026 · last confirmed live 8/27/2026

Apply on Unison Group’s site
Requirements • Minimum 7 years of relevant security experience. • Extensive experience in information security and/or IT risk management. • Proven experience owning and running a vulnerability management and/or penetration testing program, process, and governance forum. • Demonstrated leadership, project, and team-building skills, including the ability to lead teams and drive projects and initiatives across multiple departments. • Ability to identify risks associated with business processes, operations, information security programs, and technology projects. • Ability to communicate with diverse audiences, both technical and non-technical, to build consensus on risk-based vulnerability management and penetration testing. • Experience with process optimization. • Experience with process automation and workflow using ITSM tools. • Hands-on experience with vulnerability management, penetration testing, and security engineering. • Experience with industry-known vulnerability management, penetration testing, and CSPM solutions. Vulnerability Management • Strong knowledge of risk-based vulnerability management, including triage of vulnerabilities to determine "True Risk" exposure to Singlife. • Experience in log configuration, formats, and feeding logs into SIEM platforms. Penetration Testing • Strong hands-on penetration testing background across multiple domains (network, web, mobile, API, and cloud), including managing external PT vendors and triaging and validating penetration test findings. • Working knowledge of recognized penetration testing methodologies and frameworks (OWASP Testing Guide, PTES, NIST SP 800-115, MITRE ATT&CK) and common offensive tooling (e.g., Burp Suite, Nmap, Metasploit, Kali Linux, Cobalt Strike). • Working knowledge of one or more programming/scripting languages such as Python, C++, Java, Ruby, Node, Go, and/or PowerShell. Education • Academic: Bachelor's degree in Computer Science or Information Technology (preferred). • Professional Certification(s): One or more of CISSP, CISM, CISA, or SANS/GIAC certifications, together with a recognized penetration testing certification such as OSCP, GPEN, GWAPT, CREST (CRT/CCT), or CEH (preferred, or willing to become certified within one year).

How your resume reads against this

What this posting states — years, degree, arrangement, pay, the skills it names — beside what your resume says. No match percentage: there is not an honest one to give.

This reads the resume you have in the editor, and this browser has none yet.

Open the editor and upload yours

Free, no account. It stays in this browser and is never stored on our side.

This role is published by Unison Group on workable. SwiftFit is not the employer and does not accept applications.