Title: Offensive Security Engineer (Vulnerability Management)

Company Overview
KASIKORN Business-Technology Group (KBTG) is a tech arm of KBank. At KBTG, we never cease to develop financial technologies and wide-ranging digital banking services. We are the driving force behind KBank's success, as well as the pioneer of world-class innovations. Utilizing our expertise in fintech, combined with the new generation's outside-the-box thinking, KBTG strives to become the best tech organization of Southeast Asia by 2025.
Learn more about KBTG: http://www.kbtg.tech
Position: [KASIKORN TECHNOLOGY GROUP SECRETARIAT - Cyber Security] Offensive Security Engineer (Longterm Mobility)
Work Where Wow Happens Every Day.
Why You’ll Love Being Part of Our Team:
Join KBTG – where innovation drives impact! With a purposeful mission, collaborative spirit, and a positive attitude, we create fintech solutions that empower. Be part of the future!
How You’ll Make an Impact:
We are seeking an Offensive Security Engineer to proactively identify, validate, and prioritize security vulnerabilities across applications, infrastructure, and cloud environments. The role combines hands-on penetration testing, vulnerability management, and threat-informed analysis, with the use of modern automation and AI-assisted security techniques to enhance detection and remediation outcomes.
- Strong hands-on expertise in red teaming, penetration testing, and vulnerability assessment across web, API, network, cloud, mobile, and LLM environments.
- Proficient with security tools such as Burp Suite, Nmap, Metasploit, Nessus/Qualys, cloud security tools, and manual exploitation techniques beyond automated scanning.
- Solid knowledge of OWASP Top 10, MITRE ATT&CK, modern application architectures, common attack techniques, and vulnerability exploitation/chaining.
- Strong ability to assess and prioritize security risks based on technical severity and business impact, and communicate findings effectively to both engineering teams and executives.
- Experience leveraging AI/LLM tools, automation, Python, and Bash to accelerate vulnerability analysis, exploit development, security validation, and reporting.
- Ability to develop internal security tools and processes using open-source technologies to improve organizational security capability, efficiency, and productivity.
What Will Set You Up for Success:
- Experience in banking, fintech, or regulated environments, with hands-on exposure to penetration testing, red teaming, adversary simulation, and attack scenario validation.
- Strong knowledge of Windows/Linux, Active Directory attacks, privilege escalation, cloud security testing (AWS/Azure/GCP), and advanced techniques such as fuzzing, reverse engineering, and basic-to-intermediate binary exploitation.
- Familiarity with DevSecOps and security testing integration, including SAST/DAST, pipeline security, and code-level findings validation, is an advantage.
- Relevant certifications such as OSCP or equivalent are highly preferred; OSEP, OSWE, PNPT, CRTP, CRTO, Pentest+, CEH, CISSP, or CISM are advantageous.
- Bachelor’s Degree in Computer Science, Computer Engineering, IT, or a related field, with 2–3 years of experience in penetration testing or offensive security.
- Strong practical portfolio, such as CTF participation, security labs, GitHub projects, or offensive security research; fresh graduates with strong hands-on skills are also encouraged to apply.
Embracing IDEA (Inclusion, Diversity, Equity, and Accessibility):
At KBTG, diversity fuels innovation. We embrace different perspectives, foster an inclusive culture, and create opportunities for growth. Be yourself, make an impact, and grow with us. Join us.
Rewards That Go Beyond the Paycheck:
- Competitive Provident Fund – Secure your future with high contributions.
- Financial Wellness – Expert support and tools for managing finances, including home loans.
- Comprehensive Health Coverage – Enjoy peace of mind with top-tier health insurance and annual health check-ups for you, your spouse, and your children.
- Flexible Benefits – Customize your perks with generous policies, including support for work-from-home equipment, wellness, and more.
- Wellness & Comfort – Recharge in our Nap Room, enjoy occasional massages, and access mental wellness support via Occa.
- Business Travel & Commuting Support – Enjoy Grab for Business rides and other travel perks for professional journey with ease and convenience.
- Continuous Learning – Access Udemy, Coursera, and top training programs.
- K Point Reward – Earn points and enjoy exciting rewards as you grow with us.
#LI-AC1