Negotiable
Outside
Remote
USA
Summary: The role of Manual Penetration Tester focuses on conducting manual penetration testing for web and mobile applications, as well as APIs. Candidates should possess strong experience in application security testing and be able to communicate findings effectively to both technical and non-technical audiences. The position requires independent work with minimal oversight and the ability to engage in threat modeling and application architecture reviews. This is a remote position with two openings available.
Key Responsibilities:
- Perform manual Application penetration testing against APIs (REST/SOAP), Web Applications, Mobile applications, and thick client applications
- Perform threat modeling, evaluate application business logic, and perform application architecture reviews
- Ability to demonstrate application testing experience in real time via demos to both internal and external audiences
- Ability to perform objective based, abstract penetration testing engagements
- Ability to develop and exploit POCs
- Act independently in penetration testing engagements, with minimal oversight and guidance
- Engage with technical and non-technical audiences to articulate both testing processes, techniques and results; guide technical audiences on remediation options and assist clients in weighing those options
Key Skills:
- Minimum 5 years of recent experience in application penetration testing of APIs, web applications and mobile applications
- Ability to communicate reporting results with technical and non-technical audiences and lead remediation conversations
- Experience with burp suite pro, and other app testing tools such as Netsparker
- Bachelor's degree from an accredited college/university or equivalent industry experience
- One or more major ethical hacking certifications not required but preferred; GWAPT, CREST, OSWE, OS
Salary (Rate): undetermined
City: undetermined
Country: USA
Working Arrangements: remote
IR35 Status: outside IR35
Seniority Level: undetermined
Industry: IT
Key Areas:-
Manual Penetration Testing
Web Applications
Mobile Applications
API s
Please look for Manual Penetration Testers with the strong experience in both Web and Mobile(Android/IOS) applications background.
No. of positions open 2
Rate:- $45/hr on c2c (Not negotiable)
Loc: Remote
Responsibilities:
Perform manual Application penetration testing against API s (REST/SOAP), Web Applications, Mobile applications, and thick client applications
Perform threat modeling, evaluate application business logic, and perform application architecture reviews
Ability to demonstrate application testing experience in real time via demos to both internal and external audiences
Ability to perform objective based, abstract penetration testing engagements
Ability to develop and exploit POCs
Act independently in penetration testing engagements, with minimal oversight and guidance
Engage with technical and non-technical audiences to articulate both testing processes, techniques and results; guide technical audiences on remediation options and assist clients in weighing those options
Qualifications:
Minimum 5 years of recent experience in application penetration testing of API s, web applications and mobile applications
Ability to communicate reporting results with technical and non-technical audiences and lead remediation conversations
Experience with burp suite pro, and other app testing tools such as Netsparker
Bachelor's degree from an accredited college/university or equivalent industry experience
One or more major ethical hacking certifications not required but preferred; GWAPT, CREST, OSWE, OS