Sr. Penetration Testing - Remote

Sr. Penetration Testing - Remote

Posted 1 week ago by 1760084577

Negotiable
Outside
Remote
USA

Summary: The role of Sr. Penetration Tester involves conducting comprehensive penetration testing and vulnerability assessments for various applications, including web, mobile, and APIs. The position requires both manual and automated testing skills, with a strong emphasis on identifying false positives. Candidates must possess hands-on experience with a variety of security tools and frameworks, as well as a solid understanding of application security principles. This is a remote position based in the USA, classified as outside IR35.

Key Responsibilities:

  • Experience in Cyber Security Penetration Testing (Manual PT, VAPT, DAST, SAST, MAST, API).
  • Experience in Vulnerability Assessment and Penetration testing of web applications, mobile applications, API network and thick client applications.
  • Manual Penetration Testing skills and techniques are required besides automated tools and frameworks also required to have hands on experience in identifying False positive from the automated tools results.
  • Hands-on knowledge on Tools: Burp Suite Professional, Qualys, Nmap, Kali Linux, Metasploit, Nessus, wireshark, sqlmap, Checkmarx etc.
  • Good understanding of OWASP top 10 for Web Application Security, Mobile Application Security.
  • Strong knowledge of tools for mobile application security, including but not limited to Appuse, MOBSF, Geny Motion, Kali Linux, BURP, PostMan, Appie, Mobisec, NowSecure, HP Fortify on Demand, etc.
  • Perform mobile Vulnerability Assessment & Penetration Testing.
  • Technical Skills: Hands-on experience of security assessment of Android & ios applications.

Key Skills:

  • Experience in Cyber Security Penetration Testing.
  • Vulnerability Assessment and Penetration testing skills.
  • Manual and automated penetration testing techniques.
  • Hands-on experience with security tools (Burp Suite, Qualys, Nmap, etc.).
  • Understanding of OWASP top 10.
  • Mobile application security tools knowledge.
  • Technical skills in Android & iOS application security assessment.

Salary (Rate): undetermined

City: undetermined

Country: USA

Working Arrangements: remote

IR35 Status: outside IR35

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:
  • Experience in Cyber Security Penetration Testing (Manual PT, VAPT, DAST, SAST, MAST, API).
  • Experience in Vulnerability Assessment and Penetration testing of web applications, mobile applications, API network and thick client applications.
  • Manual Penetration Testing skills and techniques are required besides automated tools and frameworks also required to have hands on experience in identifying False positive from the automated tools results.
  • Hands-on knowledge on Tools: Burp Suite Professional, Qualys, Nmap, Kali Linux, Metasploit, Nessus, wireshark, sqlmap, Checkmarx etc.
  • Good understanding of OWASP top 10 for Web Application Security, Mobile Application Security.
  • Strong knowledge of tools for mobile application security, including but not limited to Appuse, MOBSF, Geny Motion, Kali Linux, BURP, PostMan, Appie, Mobisec, NowSecure, HP Fortify on Demand, etc.
  • Perform mobile Vulnerability Assessment & Penetration Testing.
  • Technical Skills: Hands-on experience of security assessment of Android & ios applications.