About company
About Sentrabyte Digital Solusi
Sentrabyte Digital Solusi is a cybersecurity-focused company specializing in offensive security, penetration testing, and Red Team operations. We help organizations identify, understand, and remediate real-world security risks by simulating advanced adversarial attacks across modern enterprise environments.
Our approach goes beyond automated scanning and checklist-based assessments. We focus on realistic attack scenarios, combining technical expertise with an attackers mindset to uncover critical vulnerabilities that could impact business operations.
We work across a wide range of environments, including:
- Web and API applications
- Internal enterprise networks
- Cloud infrastructure
- Identity systems such as Active Directory
At Sentrabyte, we value hands-on expertise, continuous learning, and practical problem-solving. Our team is composed of security professionals who are passionate about offensive security and committed to staying ahead of evolving threats.
Why Join Us
- Work on real-world Red Team and offensive security engagements
- Fully remote and flexible work environmentOpportunity to grow into advanced attack simulation and enterprise security testingCollaborative and technically driven culture
Job description
Roles and Responsibilities
- Conduct penetration testing and vulnerability assessments across web, API, and internal networks
- Identify and exploit vulnerabilities, including:
- Initial access
- Privilege escalation
- Basic lateral movement
- Perform security testing using tools such as:
- Nessus
- Metasploit
- OWASP ZAP
- Document findings clearly, including risk impact and remediation recommendations
- Collaborate with developers and stakeholders to improve security posture
- Participate in Red Team exercises simulating real-world attack scenarios
Desired Candidate Profile
- 25 years of experience in penetration testing / offensive security
- Strong understanding of:
- Linux systems
- Networking fundamentals
- Common vulnerabilities (OWASP Top 10)
- Basic scripting skills (Python, Bash, or Ruby)
- Understanding of attacker techniques and real-world exploitation
Nice to Have
- Exposure to Active Directory attacks
- Experience with bug bounty or real-world engagements
Certifications (Optional)
- OSCP (preferred)
- CISSP / CISM / CEH
Role: System Security EngineerIndustry
Type: IT Services & Consulting
Department: IT & Information Security
Employment Type: Full Time, Permanent
Role Category: IT
SecurityEducationUG: Graduation Not RequiredKey SkillsSkills highlighted with ‘‘ are preferred keyskills"