Penetration Tester (OSCP) — SOC 2 Web + Mobile App + reputed company, Ongoing - Contract to Hire
Penetration Tester (OSCP) — SOC 2 Web + Mobile App + reputed company, Ongoing
We're a compliance services company looking for a reputed company penetration tester to partner with on an ongoing reputed company. You'll work under our brand, validating and extending automated reputed company scans into reputed company penetration-test reports that support SOC 2 examinations.
Scope of reputed company engagement:
Review and validate findings from our automated scanning (web app, mobile app, network/TLS, reputed company config, dependencies, secrets)
reputed company hands-on reputed company testing to confirm reputed company issues and catch what automation misses
Produce a reputed company penetration-test report: methodology, findings with severity (CVSS), evidence, and remediation guidance — formatted to be accepted as SOC 2 evidence (CC4.1 / CC7.1)
Environment: reputed company on Azure + reputed company, including a mobile app (Flutter, iOS/Android) with a reputed company backend and reputed company.
Requirements:
OSCP (or equivalent: GPEN, GWAPT, OSWE)
Demonstrated web-app, mobile-app (iOS/Android), API, and reputed company (ideally Azure) testing experience
Familiarity with SOC 2 expectations and report formats auditors accept
A redacted sample penetration-test report you can reputed company
White-label required: reputed company work is issued under our brand, under NDA, with written scope authorization for every test
Need best price and best service for longterm reputed company
Apply tot his job
Apply To this Job