Manulife

Financial Services

PenetrationTester

Quezon City, Philippines FULL TIME Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Entry candidates.

The Brief

“Penetration Tester at Manulife. Skills: Penetration testing, Vulnerability assessment, Security risk assessment. Evaluates the security posture of the organization, assessing potential threats and vulnerabilities in Web Applications and/or Network Security, Microservices, Mobile Applications.. Develops and communicates the understanding of the potential impacts of a cyber attack to all relevant stakeholders.”

Industry & Context.

Financial Services
Problems you'll solve

Assessing potential threats and vulnerabilities; Developing security controls, policies, and procedures; Providing remediation recommendations

Eligibility Requirements

Willing to work on mid-shift and night-shift schedule.

What They're Looking For.

Must Have

At least 2 years of IT experience with a demonstrated passion for performing hands-on penetration tests on external and internal networks, operating systems, web applications, etc., Technical knowledge of current vulnerabilities, exploits and tools (VAPT, DAST, SAST, and other similar tools)., Bachelor’s degree holder in Computer Science, Information Technology, Cybersecurity, Information Systems, or any related discipline., Willing to work on mid-shift and night-shift schedule on a hybrid setup in Quezon City, Philippines.

Nice to Have

Information Security certification or is at least currently undergoing security certification/training such as OSCP, OSCE, CEH, GWAPT, GPEN, or eWPT is preferred., Technical knowledge of current vulnerabilities, exploits and tools., Understand the concepts of different VAPT capabilities and methods., Ability to adopt the security industry best practices and immerse in procedures., Exposure with various security assessment frameworks and procedures, and the ability to perform both manual and automated testing., Interest in researching evolving exploits, techniques, and tools in support of penetration testing efforts., Good verbal and written communication skills including the ability to write clear and concise assessment reports., Good stakeholder management and interpersonal skills., Ability to communicate with team, peers and employees., Good time management and organizational skills., Experience working in an international environment with people from multiple cultures is preferred., Beginner / Fundamental Knowledge in the following: Vulnerability Assessment, Penetration Testing, Security Risk Assessment, Risk Management, Security Testing, Cyber Threat Intelligence., Fresh graduates of relevant courses are encouraged to apply.

What You'll Do.

Evaluates the security posture of the organization

assessing potential threats and vulnerabilities in Web Applications and/or Network Security

Develops and communicates the understanding of the potential impacts of a cyber attack to all relevant stakeholders.

Evaluates different security solutions and provides advice on how to best protect the organization from cyber threats.

Ensures alignment with corporate and regulatory requirements for the management of information security program.

Performs security assessments to identify possible security vulnerabilities within the organization and develops security controls

and procedures to address any issues that may exist.

Conducts comprehensive network scans and manual network assessments

including penetration testing and vulnerability scans.

Write reports including technical details

and providing remediation recommendations for identified issues.

How You'll Work.

Team & Collaboration

Working closely with business teams and the second line of defense.; Communicates potential impacts of cyber attacks to relevant stakeholders.; Ability to communicate with team, peers and employees.

Communication Scope

Good verbal and written communication skills; Ability to write clear and concise assessment reports; Ability to communicate with team, peers and employees

Full Job Description

Manulife’s Global Cybersecurity Services - Application Security is building up a penetration testing Centre of Excellence (COE) to deliver penetration test-related capabilities for all segments in Manulife. As a **Penetration Tester** , you will be working closely with our business team and the second line of defense to assess the scope and level of effort based on identified areas of risk and execute assigned engagements in alignment with common penetration testing industry frameworks. Have the skills and experience for the job? Learn more about it below! **_Note: Designation will be finalized after completion of the recruitment processes._** **Position Responsibilities:** * Evaluates the security posture of the organization, assessing potential threats and vulnerabilities in any of the following: * Web Applications and/or Network Security * Microservices * Mobile Applications * Develops and communicates the understanding of the potential impacts of a cyber attack to all relevant stakeholders. * Evaluates different security solutions and provides advice on how to best protect the organization from cyber threats. * Ensures alignment with corporate and regulatory requirements for the management of information security program. * Performs security assessments to identify possible security vulnerabilities within the organization and develops security controls, policies, and procedures to address any issues that may exist. * Conducts comprehensive network scans and manual network assessments, including penetration testing and vulnerability scans. * Write reports including technical details, risk analysis, and providing remediation recommendations for identified issues. **Required Qualifications:** * At least 2 years of IT experience with a demonstrated passion for performing hands-on penetration tests on external and internal networks, operating systems, web applications, etc. * Has technical knowledge of current vulnerabilities, exploits and tools (VAPT, DAST, SAST, an

Free ATS check

Applying for this Penetration Tester role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about Manulife?

Real rants from real employees. Read before you apply.

Read Company Rants →