Security Consultant II (Web Application Penetration Tester)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Consultant II (Web Application Penetration Tester): Conducting thorough security assessments and penetration testing on web applications and APIs with an accent on identifying vulnerabilities and providing expert remediation recommendations. Focus on developing innovative testing techniques, collaborating on security reports, and maintaining high standards of client security posture.
Location: Must be based in the US
Company
is a leader in proactive security and Penetration Testing as a Service (PTaaS), combining world-class experts with AI and automation to secure Fortune 500 companies and top financial institutions.
What you will do
- Execute penetration testing engagements on web applications and underlying APIs.
- Create and deliver actionable security reports for diverse client environments.
- Research and develop innovative testing methodologies and tools.
- Collaborate with team members to improve security best practices and product processes.
- Perform administrative tasks to ensure smooth engagement operations.
Requirements
- Must be based in the US
- Bachelor’s degree in Computer Science, Engineering, Math, or IT, or equivalent experience.
- Minimum of 2-3 years of professional experience in application penetration testing.
- Extensive understanding of OWASP Top 10 and security frameworks.
- Proficiency with offensive tools like Kali Linux, Burp Suite, Metasploit, and Nessus.
- Working knowledge of Windows, Linux, and MacOS internals.
- Willingness to travel up to 5-10%.
Nice to have
- Offensive cybersecurity certifications such as GXPN, GPEN, OSCP, or GWAPT.
- Experience in programming or scripting languages like Python, Ruby, C, C++, Java, or C#.
- Experience mentoring team members or sharing knowledge through blogs and webinars.
Culture & Benefits
- Opportunity to work with a leading, award-winning security team.
- Focus on innovation and disruption in the proactive security market.
- Collaborative and customer-first work environment.
- Commitment to professional growth and knowledge sharing.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →