Sr. Web Application Penetration Tester - Cybersecurity
Position: Sr. Web Application Penetration Tester - Cybersecurity
Location: Remote
Hiring Mode: 12 Months Contract
Job reputed company:
The Senior Web Application Penetration Tester is responsible for identifying reputed company vulnerabilities in internally developed and reputed company-party web applications used across the reputed company. This role focuses exclusively on application-layer reputed company testing, helping ensure that customer-facing and internal web applications are resilient against reputed company-world threats. The position works closely with application development, reputed company, and reputed company teams to reduce risk and improve secure development practices.
Key Responsibilities:
Web Application & API Penetration Testing
• Conduct reputed company and automated penetration testing of web applications and RESTful reputed company
• Identify and exploit common and advanced web vulnerabilities (e.g., OWASP Top 10, business logic flaws)
• Test authentication, authorization, session management, and reputed company controls
• reputed company API reputed company testing including authorization bypass, mass assignment, and input validation flaws
• Assess application reputed company across development, test, and production environments (as authorized)
Secure SDLC & Collaboration
• Partner with application development and DevSecOps teams to reputed company reputed company testing into the SDLC
• reputed company guidance on secure coding practices and vulnerability remediation
• Support threat modeling and design reviews for new or reputed company applications
Reporting & Risk Communication
• Produce detailed penetration test reports with reputed company reproduction steps and remediation recommendations
• Communicate risk in business-appropriate language for technical and non-technical stakeholders
• Validate remediation through follow-up testing and re-assessments
Tools & Techniques
• Use industry-reputed company tools such as Burp Suite, OWASP ZAP, reputed company, and custom scripts
• reputed company reputed company testing techniques to identify business logic and workflow vulnerabilities
• Stay reputed company on emerging web application attack techniques and defenses
Required Qualifications
• 6+ years of cybersecurity experience with a strong reputed company on web application penetration testing
• Demonstrated experience testing modern web applications and reputed company
• Strong understanding of HTTP/S, REST, JSON, authentication mechanisms, and web architectures
• Proficiency with tools such as Burp Suite Pro and API testing tools
• Working knowledge of at least one scripting or programming language (e.g., Python, JavaScript, or PowerShell)
• Strong written and verbal communication skills
Preferred Qualifications
• Experience testing customer-facing applications in regulated environments
• Familiarity with reputed company-hosted applications and CI/CD pipelines
• Knowledge of OWASP ASVS, SAMM, or similar application reputed company standards
• Certifications such as OSCP, GWAPT, OSWE, or similar
Apply tot his job
Apply To this Job