Ethical Hacker (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Ethical Hacker (Cybersecurity): Performing comprehensive penetration testing on web, mobile, and thick client applications with an accent on identifying complex vulnerabilities and proving their impact. Focus on conducting whitebox testing, source code reviews, and reverse engineering to deliver high-quality security assessments for enterprise clients.
Location: Must be based in Texas, USA
Company
is a specialized cybersecurity firm providing expert-level penetration testing services to ensure digital security and privacy.
What you will do
- Perform penetration testing on web applications, mobile apps, thick clients, and APIs.
- Conduct source code reviews and whitebox testing to demonstrate the impact of security flaws.
- Execute reverse engineering of mobile and thick client applications.
- Perform SAST and DAST on enterprise, SaaS, and custom applications.
- Develop detailed technical and executive-level reports on findings and remediation strategies.
- Validate scanner results and eliminate false positives to ensure high-accuracy reporting.
Requirements
- Must be based in Texas
- Mandatory: OSCP certification or Burp Suite expertise
- Solid programming knowledge in C, C#, Python, Objective-C, Java, SQL, and AngularJS.
- Extensive experience with attack proxies like Burp Suite.
- Strong understanding of OWASP standards for Web, API, Mobile, and AI/LLM.
- Minimum two years of experience in information security-related tasks.
Nice to have
- 3-5 years of experience in penetration testing and consulting.
- Additional certifications such as OSWE or BSCP.
- Post-secondary college or university degree.
Culture & Benefits
- Collaborative and passionate team environment.
- Competitive compensation with pay-for-performance incentives.
- Commitment to employee growth and professional development.
- Fully remote work arrangement within Texas.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →