Job Description :
We are looking for a skilled Penetration Tester with 5 - 8 years of experience in application security. The ideal candidate will have hands-on experience in conducting security assessments and penetration testing for web applications, APIs, and mobile applications. The role also involves code reviews, participation in risk assessments, and collaborating with development teams to ensure secure software development practices.
Key Responsibilities :
- Conduct penetration testing for web applications, APIs, and mobile applications.
- Perform source code reviews to identify vulnerabilities.
- Collaborate with development teams to implement security controls and best practices.
- Assist in the development and maintenance of security policies, procedures, and guidelines.
- Monitor security incidents and provide timely responses to security threats.
- Perform threat modeling and risk assessments on applications.
- Stay updated on the latest security trends, vulnerabilities, and regulatory requirements.
- Provide training and awareness programs for development teams on secure coding Skills and Qualifications :
- 5-8 years of experience in application security, penetration testing, or a related field.
- Proficiency in web, API, and mobile penetration testing.
- Strong understanding of OWASP Top 10 vulnerabilities.
- Experience with security testing tools such as Burp Suite, static and dynamic analysis tools.
- Familiarity with programming languages such as Java, C#, Python, or JavaScript.
- Solid understanding of encryption techniques and secure coding practices.
- Experience with security frameworks and standards such as NIST, ISO 27001.
- Strong analytical and problem-solving skills.
- Excellent communication, teamwork, and collaboration Qualifications :
- Certifications such as OSCP, CEH, or equivalent.
(ref : hirist.tech)