ESSENTIAL ROLE AND RESPONSIBILITIES :
1. Perform Application, API and Microservices Pentest
2. Perform Network Pentest (Internal and External)
3. Perform Mobile App Pentest, Mobile Assessments,
4. Threat Modelling, Legal Reviews,
5. Reporting and the PoCs of the vulnerabilities, and Documentation,
6. Coordinate with various stakeholders,
7. Perform R&Ds
8. Other Security Analysis
Mandatory Requirements :
1. Relevant Experience in Security Domain : 3+ Years.
2. Proven expertise & track record in Web Application Penetration testing (Web, Mobile.)
3. API / Web Services on JAVA & .Net through DAST Manual approach.
4. Proven expertise & track record in Mobile Application Penetration testing (Web, Mobile. API / Web Services on JAVA & .Net) through DAST Manual approach.
5. Hands-on experience in DAST tools, API (SOAPUI, PostMan).
6. Experience in DAST Manual Assessments, Threat Model and Penetration Testing.
7. Good Network Pentest skills-sets for external and internal networks.
8. Excellent written and verbal communication skills.
Preferred Skill sets :
1. Hands-on experience of DevSecOps.
2. Good Knowledge of Java, .NET, SQL queries (Oracle, PostgreSQL etc).
3. Experience in Automating Security tasks using Python or Java Frameworks and System / Network Exploitation is a bonus.
4. Experience in Red Teaming.
5. Hands-on experience, knowledge and understanding of Security Frameworks.
6. Hands-on experience on MS Tools.
(ref : hirist.tech)
Web Application Engineer • Bangalore