Job Description
Level 2 Resource – Application Penetration Tester (APT)
Experience : 5–6 years
Job Location : Airoli, Mumbai
Contract Duration : 6 Months (Fixed Term)
Budget : ₹60,000 per month
Work Mode : Work From Office (WFO)
Joining : Immediate joiners only
Role Overview
We are seeking a Level 2 Application Penetration Tester (APT) with strong technical and communication skills. The role requires hands-on experience in web, mobile, and API security testing, proficiency with BurpSuite Professional and other application scanning tools, and the ability to clearly present findings to stakeholders.
This position demands both technical expertise in penetration testing and the ability to interact confidently with stakeholders , providing them with structured reports and actionable recommendations.
Key Responsibilities
- Perform application penetration testing across web, mobile, and API platforms .
- Identify, analyze, and validate vulnerabilities using manual and automated methods.
- Utilize BurpSuite Professional and other industry-standard tools to perform security assessments.
- Create detailed penetration testing reports , highlighting vulnerabilities, impact, and remediation steps.
- Conduct stakeholder meetings to present findings and provide clear, actionable recommendations .
- Ensure compliance with OWASP Top 10 , SANS 25 , and other secure coding guidelines.
- Collaborate with development, DevOps, and infrastructure teams to ensure timely remediation of issues.
- Stay current with the latest attack techniques, security tools, and best practices.
Skills & Capabilities
Strong knowledge of application security testing methodologies .Hands-on expertise with BurpSuite Professional and other well-known scanning tools.Familiarity with common programming languages (e.g., Java, C#, Python, JavaScript ) to review and understand vulnerabilities.Excellent communication skills for stakeholder interaction and report presentation.Strong analytical and problem-solving skills with attention to detail.Certifications (Mandatory)
Candidate must hold at least one industry-leading certification in the application security testing domain, such as :
CEH (Certified Ethical Hacker)OSCP (Offensive Security Certified Professional)SANS 25LPT (Licensed Penetration Tester)CEPT (Certified Expert Penetration Tester)Or equivalent recognized certification.Why Apply?
Opportunity to work on high-visibility application security projects .Exposure to web, mobile, and API testing using leading tools and frameworks.Direct stakeholder interaction , enhancing both technical and presentation skills.Fixed-term contract with competitive compensation and a chance to strengthen enterprise security posture .Requirements
Level 2 Resource – Application Penetration Tester (APT)