Senior Penetration Tester defending fintech platform from payment fraud and cyber threats. Leading offensive security assessments to enhance fraud defenses and ensure customer trust.
Responsibilities
Lead penetration testing engagements focused on payment abuse, transaction manipulation, and business logic exploitation.
Design and execute automated attack simulations to test our defenses against: Carding and BIN attacks
Credential stuffing and account takeovers
Checkout and payment flow abuse
API-level enumeration and fraud
Build custom tooling and frameworks to mimic the behavior of real-world fraudsters and cybercriminals.
Partner with fraud engineering, product security, and risk teams to identify weak points in our controls, detection systems, and architecture.
Conduct threat modeling and red teaming exercises related to payments, authentication, and user account abuse.
Document findings in technical reports with clear risk impact, exploitability, and remediation guidance.
Mentor junior testers and contribute to a culture of security innovation and continuous improvement.
Requirements
7+ years of experience in offensive security, penetration testing, or red teaming.
Strong background in payment systems, financial fraud tactics, and transaction-level attack surfaces.
Fluency in scripting and automation (e.g., Python, JavaScript, Go, Bash) to simulate attacker workflows at scale.
Familiarity with tools like Burp Suite Pro, Selenium, Scapy, ffuf, SQLMap, Metasploit, and bot automation frameworks.
Microsoft Success Manager helping partners grow secure, scalable Microsoft practices across ANZ. Championing Microsoft security solutions and supporting partner success strategies in the region.
Assistant AVP overseeing a 5 - member team for Access Management services in Pune and Mumbai, ensuring high standards of service delivery and compliance.
Own global security systems infrastructure for QVC, managing access control and networked security systems across multiple regions. Collaborate with IT to ensure security and technology initiatives meet organizational needs.
Sales Account Manager growing ADAPTIT Cybersecurity business in Greece and Cyprus. Responsible for client relations, sales pipeline, and collaboration with the cybersecurity team.
Information Security Engineer focusing on Identity & Access Management and SSO at Westfield. Design, operate, and mature enterprise authentication and federation capabilities.
Cyber Security Engineer responsible for operational support and development activities with Ping Identity. Collaborate with global teams to strengthen cybersecurity and improve customer satisfaction.
Application Security Specialist focusing on security in software development lifecycle at Insight Investment in Manchester, driving DevSecOps practices across teams.
Cyber Security Engineer supporting mission - critical DoD contract at CACI. Involves reviewing infrastructure changes and implementing security measures in a cloud - based environment.
Security Incident Management Analyst coordinating information security incidents. Overseeing cyber incident response and providing guidance to senior management within a leading industrial software company.
Customer Security Engineer managing end - to - end pentesting services at Aikido Security. Ensuring customer value and addressing vulnerabilities for a developer - first security product.