Job Description
7 days ago
⭐ Key Responsibilities
Plan, execute, and report Red Team operations , including adversary simulation, attack path mapping, and exploitation.
Perform full‑scope penetration testing (infrastructure, AD, cloud, web/mobile applications).
Develop and execute custom attack scenarios aligned to MITRE ATT&CK frameworks.
Identify vulnerabilities and provide actionable remediation guidance to technology and business stakeholders.
Conduct phishing, social engineering, and lateral movement testing across enterprise environments.
Produce professional reports for cybersecurity leadership and regulatory reviews.
Stay current with emerging exploits, TTPs, and offensive tooling.
Requirements
4 – 8 years of hands‑on experience in offensive security / red teaming / pentesting .
Strong knowledge of exploitation techniques, AD attack paths, privilege escalation, lateral movement, and evasion.
Solid experience with offensive frameworks/tools such as:
Cobalt Strike, Metasploit, Empire, Havoc, Sliver, BloodHound, Impacket, Burp Suite, etc.
Hands‑on experience with Active Directory security , Windows/Linux exploitation, and cloud (Azure/AWS) attack simulation preferred.
Professional certifications are highly advantageous:
OSCP, OSEP, OSWE, OSCE3, CRTP, CRTE, CREST CRT/CPSA , or similar.
Experience in banking, fintech, or regulated environments (HKMA, GL20, C‑RAF) is a plus.
Strong communication skills in English ; Cantonese/Mandarin an advantage.
Full-time
Plan, execute, and report Red Team operations , including adversary simulation, attack path mapping, and exploitation.
Perform full‑scope penetration testing (infrastructure, AD, cloud, web/mobile applications).
Develop and execute custom attack scenarios aligned to MITRE ATT&CK frameworks.
Identify vulnerabilities and provide actionable remediation guidance to technology and business stakeholders.
Conduct phishing, social engineering, and lateral movement testing across enterprise environments.
Produce professional reports for cybersecurity leadership and regulatory reviews.
Stay current with emerging exploits, TTPs, and offensive tooling.
Requirements
4 – 8 years of hands‑on experience in offensive security / red teaming / pentesting .
Strong knowledge of exploitation techniques, AD attack paths, privilege escalation, lateral movement, and evasion.
Solid experience with offensive frameworks/tools such as:
Cobalt Strike, Metasploit, Empire, Havoc, Sliver, BloodHound, Impacket, Burp Suite, etc.
Hands‑on experience with Active Directory security , Windows/Linux exploitation, and cloud (Azure/AWS) attack simulation preferred.
Professional certifications are highly advantageous:
OSCP, OSEP, OSWE, OSCE3, CRTP, CRTE, CREST CRT/CPSA , or similar.
Experience in banking, fintech, or regulated environments (HKMA, GL20, C‑RAF) is a plus.
Strong communication skills in English ; Cantonese/Mandarin an advantage.
Full-time
More jobs from Venturenix Limited

Cybersecurity IAM Specialist (Access Management)
Venturenix Limited
Cybersecurity
Central and Western, Hong Kong, China
7 days ago
Full Time
Onsite
Professional Services

Cloud Engineer / Cloud Architect
Venturenix Limited
Networking & System Administration
Central and Western, Hong Kong, China
7 days ago
Full Time
Onsite
Professional Services

RPA Developer | Leading Financial Institution | 35-50K
Venturenix Limited
Software Engineer
Central and Western, Hong Kong, China
7 days ago
Full Time
Onsite
Professional Services

Technical Specialist, Cybersecurity (PAM)
Venturenix Limited
Cybersecurity
Central and Western, Hong Kong, China
7 days ago
Full Time
Onsite
Professional Services

IT Manager / Head of IT (Team 4) | Salesforce experience preferred | HKD 50K - 70K / mth | Leading NGO
Venturenix Limited
jobBoard.filter.role.option.ERP_CRM
Central and Western, Hong Kong, China
7 days ago
Full Time
Onsite
Professional Services
More jobs like this
Cybersecurity Red Team Consultant & Pen Tester
Evolution Security Consulting Limited
Central and Western, Hong Kong, China
Global MNC- Penetration Tester- Red Teaming (55k+)
Teksystems Hong Kong
Central and Western, Hong Kong, China
Penetration Tester - Application / Mobile / API
Robert Walters (HK) Ltd
Central and Western, Hong Kong, China
🎉 Got an interview?







