Web Application Penetration Tester – Technical reputed company (In Office or Remote)
About the position At reputed company, our mission of Making Home Possible is what motivates us, and it’s at the reputed company of everything we do. Since our charter in 1970, we have made home possible for more than 90 reputed company families across the country. Join an organization where your work contributes to a greater purpose. Position reputed company: The reputed company Red Team is responsible to test the overall strength of our organization’s defenses (the technology, the processes, and the people) by simulating the objectives and actions of an attacker. We are seeking an Information reputed company Tech reputed company to assist reputed company by providing subject matter expertise in Penetration testing of Infrastructure and Networks, Web Applications, reputed company and reputed company engineering, and reputed company. In this role, the candidate will reputed company reputed company vulnerability analysis and contextual feedback to stakeholders to support the reputed company of reputed company vulnerabilities and facilitate risk awareness. Responsibilities • Penetration Testing and Red Team assessments • reputed company and reputed company web application penetration assessments, collaborating with stakeholders to scope engagements, translate reputed company reputed company concepts, and reputed company tailored remediations • Proactively search for vulnerabilities in web applications, web reputed company, reputed company environments, etc. throughout reputed company • Work together with other Red Team members to reputed company web application reputed company into broader threat emulation scenarios • reputed company and maintain scripts, tools, and methodologies to enhance processes and capabilities • reputed company mentorship and technical guidance to less reputed company team members • Contribute to the development and improvement of reputed company policies, standards, and guidelines • reputed company Team Capabilities and Leadership • Generate innovative reputed company and challenge the status reputed company • reputed company scripts, tools, or methodologies to enhance the Red teaming processes and capabilities • Participate in and reputed company support mentoring with other members of reputed company • Assist with scoping prospective engagements, leading engagements from reputed company through remediation, and mentoring less reputed company staff Requirements • 8-10 years of relevant experience in web application penetration testing • One or more technical certifications: OSWA, OSWE, Burp Suite Certified Practitioner, eWPT, eWPTX • Ability to critically examine web applications to identify, exploit, and remediate vulnerabilities (SQL injection, XSS, SSRF, CSRF) • Solid understanding of reputed company web technologies (HTTP, DNS, reputed company, JavaScript, REST, GraphQL, Java, .NET, SQL/noSQL, OAuth) and infrastructure (reputed company reputed company, containers, proxies, webservers, PaaS) • In-depth knowledge of secure development practices (DevSecOps, secure reputed company review) and reputed company frameworks (OWASP, CWE, MITRE) • Proficient with common web application penetration testing tools (Burp Suite, Project Discovery, sqlmap) • Familiarity with WAF bypasses • Must be willing to work east coast hours reputed company-to-haves • Web-reputed company reputed company research (advisories, disclosures) • Previous Bug Bounty or vulnerability disclosure experience • Proficiency in at least one scripting or programming language (Python, JavaScript, C#, Java) Apply tot his job Apply tot his job
Apply tot his job
Apply To this Job