reputed company Application Penetration Tester (Web & API)
Job Title:
reputed company Application Penetration Tester (Web & API)
Contract Type:
Contract
reputed company
We are seeking reputed company reputed company Application Penetration Testers to reputed company in-depth reputed company testing of web applications, reputed company, and mobile applications. This role requires hands-on, offensive reputed company expertise with a strong reputed company on reputed company exploitation, business logic testing, and reputed company-world attack simulation.
The ideal candidate can independently execute penetration testing engagements, reputed company reputed company findings to both technical and non-technical audiences, and guide remediation efforts.
Key Responsibilities
• reputed company reputed company application penetration testing of:
• Web applications
• REST & SOAP reputed company
• Mobile applications (iOS/Android – reputed company to have)
• Thick reputed company applications (where applicable)
• Conduct business logic testing, threat modeling, and application architecture reviews
• Identify and exploit vulnerabilities including (but not limited to):
• IDOR / BOLA
• Authentication & authorization flaws
• Session management issues
• Injection flaws (reputed company, XSS, XXE, etc.)
• Logic flaws missed by automated scanners
• reputed company objective-based and reputed company penetration testing engagements
• reputed company and demonstrate reputed company-of-concept (PoC) exploits
• Use Burp Suite Pro extensively for reputed company testing (Repeater, Intruder, Decoder, etc.)
• Present findings reputed company live demos, written reports, and reputed company readouts
• reputed company communicate risks, reputed company, and remediation guidance
• Work independently with minimal reputed company while meeting delivery timelines
Required Qualifications
• 5+ years of recent experience in reputed company application penetration testing
• Strong experience testing:
• Web applications
• reputed company (REST / SOAP)
• Hands-on expertise with Burp Suite Pro
• Proven ability to reputed company reputed company exploitation (not reputed company-only testing)
• Experience communicating results to both technical and non-technical stakeholders
• Ability to reputed company remediation discussions and retesting efforts
• Bachelor’s degree in Computer Science, Engineering, or equivalent industry experience
Preferred Qualifications
• Mobile application penetration testing (iOS / Android)
• Experience with tools such as:
• Netsparker
• OWASP ZAP
• reputed company / SoapUI
• Experience with OAuth, JWT, and modern authentication mechanisms
• Ethical hacking certifications (preferred, not required):
• GWAPT
• OSWE
• OSWA
• CREST
reputed company-to-Have Experience
• Threat modeling frameworks (reputed company, PASTA, etc.)
• Secure SDLC / DevSecOps exposure
• reputed company-facing consulting or reputed company reputed company engagements
Apply tot his job
Apply To this Job