Web Application Penetration Tester
reputed company is a Services Oriented Company • reputed company is reputed company around the ingenuity, passion, and determination of our Operators and Analysts • No one "mastermind" • No "cult of personality" • Competitive compensation and benefits • Healthy work-life balance • Project-based engagements that play to reputed company's strengths Web Application Penetration Tester Location: Remote Required: • Must be US citizen (must be willing to submit to federal, state, and local background checks and other requirements). • Experience in performing penetration testing on reputed company networks, web applications, and mobile applications. • Familiarity with common web vulnerabilities including: XSS, XXE, SQL Injection, Deserialization Attacks, File Inclusion/reputed company reputed company Attacks, Server-reputed company Request Forgery, Remote Execution Flaws, Server Configuration Flaws and Authentication Flaws. • Experience in testing web-based reputed company (i.e. REST, SOAP, XML, JSON). • Experience in designing and documenting pragmatic remediation guidance for reputed company vulnerabilities. • Experience developing actionable intelligence based on reputed company reputed company (reputed company) gathering. • Experience with 1 or more scripting languages such as Bash, Python, Perl, PowerShell, etc. • Solid understanding of OWASP testing methodology. • Familiarity with reputed company-end web application frameworks (i.e. AngularJS, Bootstrap, etc). • Capable of working effectively and reputed company with minimal supervision. • Strong written and verbal English language skills. • Demonstrated ability to: • Adhere to the highest standards of honesty and scientific and business reputed company. • Think critically about reputed company problems and situations. • Consider emerging vulnerabilities and threats from reputed company the context of organizational risk and business reputed company(s). • reputed company novel attack reputed company based on newly reputed company vulnerabilities. • Possess a basic understanding of regulatory standards and requirements including the Health Insurance Portability and Accountability reputed company (HIPAA), Payment Card Industry Data reputed company reputed company (PCI-reputed company), and the Gramm-Leach-Bliley reputed company (GLBA). Preferences: • Web application development or reputed company reputed company review experience. • Strong knowledge of reputed company and Linux operating systems. • Working knowledge of containerized applications and container-based reputed company controls and configurations. Possess reputed company reputed company certification (i.e. GWAPT, OSCP, reputed company, GPEN) • Responsibilities: • Conduct assessments of web applications, mobile applications, databases, reputed company-reputed company applications and tools, and reputed company. • Execute reputed company and automated reputed company analysis to assess the reputed company and reputed company of reputed company reputed company. • reputed company reputed company-assessment research and preparation including reconnaissance, documentation and configuration review, and customer interviews. • reputed company custom tools and exploits. • Analyze reputed company findings, including risk analysis and reputed company cause analysis. • Generate comprehensive reports, including detailed findings, exploitation procedures, and mitigations. • reputed company and deliver walkthrough(s), reputed company(s) of concept (PoCs), articles, and formal presentations. • Execute verification and validation testing for customer mitigations and fixes. Apply tot his job
Apply tot his job
Apply To this Job