Manual Penetration Consultnat with Web and Mobile (Android/IOS) - Remote

Manual Penetration Consultnat with Web and Mobile (Android/IOS) - Remote

Posted Today by 1761834355

Negotiable
Outside
Remote
USA

Summary: Manual Penetration Tester with extensive experience in both Web and Mobile (Android/iOS) applications is sought for a remote role. The position involves performing manual application penetration testing across various platforms, engaging with both technical and non-technical audiences, and leading remediation discussions. Candidates should have a minimum of five years of relevant experience and be able to demonstrate their testing capabilities effectively. Ethical hacking certifications are preferred but not mandatory.

Key Responsibilities:

  • Perform manual application penetration testing against APIs (REST/SOAP), web applications, mobile applications, and thick client applications.
  • Conduct threat modeling, evaluate application business logic, and perform application architecture reviews.
  • Demonstrate application testing experience in real-time via demos to both internal and external audiences.
  • Engage in objective-based, abstract penetration testing engagements.
  • Develop and exploit proof of concepts (POCs).
  • Act independently in penetration testing engagements with minimal oversight and guidance.
  • Engage with technical and non-technical audiences to articulate testing processes, techniques, and results; guide technical audiences on remediation options and assist clients in weighing those options.

Key Skills:

  • Minimum 5 years of recent experience in application penetration testing of APIs, web applications, and mobile applications.
  • Ability to communicate reporting results with technical and non-technical audiences and lead remediation conversations.
  • Experience with Burp Suite Pro and other application testing tools such as Netsparker.
  • Bachelor's degree from an accredited college/university or equivalent industry experience.
  • One or more major ethical hacking certifications preferred; GWAPT, CREST, OSWE, OSWA.

Salary (Rate): undetermined

City: undetermined

Country: USA

Working Arrangements: remote

IR35 Status: outside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Manual Penetration Tester with the strong experience in both Web and Mobile(Android/IOS) applications background.

Remote from EST

Perform manual Application penetration testing against API s (REST/SOAP), Web Applications, Mobile applications, and thick client applications
Perform threat modeling, evaluate application business logic, and perform application architecture reviews
Ability to demonstrate application testing experience in real time via demos to both internal and external audiences
Ability to perform objective based, abstract penetration testing engagements
Ability to develop and exploit POCs
Act independently in penetration testing engagements, with minimal oversight and guidance
Engage with technical and non-technical audiences to articulate both testing processes, techniques and results; guide technical audiences on remediation options and assist clients in weighing those options

Qualifications:

Minimum 5 years of recent experience in application penetration testing of API s, web applications and mobile applications
Ability to communicate reporting results with technical and non-technical audiences and lead remediation conversations
Experience with burp suite pro, and other app testing tools such as Netsparker
Bachelor's degree from an accredited college/university or equivalent industry experience
One or more major ethical hacking certifications not required but preferred; GWAPT, CREST, OSWE, OSWA