Web Application Penetration Tester

Please login or register as jobseeker to apply for this job.

TYPE OF WORK

Any

WAGE / SALARY

Depends on experience

HOURS PER WEEK

TBD

DATE UPDATED

Oct 8, 2022

JOB OVERVIEW

We are an IT security consulting company that only conducts penetration testing. We are looking for a skilled web and mobile app pen tester to join our growing team.

We are looking for professional penetration testers – your resume should reflect years of professional experience in a professional penetration testing role. This means that you have been paid to conduct client-facing engagements. You should be able to rattle off a list of your favorite tools and techniques.

You will be asked to demonstrate your skills via a practical interview where you share your screen and we watch you pwn. You will be thoroughly interviewed and screened to test your expertise, so please don’t waste our time – we smell BS a mile away.

Job Title — Senior or Principal Security Engineer

Must have:

– 3+ years experience conducting web app penetration testing for clients – not in your home lab – not vulnerability identification for your own apps – not practice apps.

– 2+ years experience conducting mobile application testing on IOS and android platforms.

– excellent social skills

– strong written and verbal communications skills – this is AS important as your tech skills

– the ability to pass a background check

– the ability to pass a verbal technical interview

– the ability to pass a practical (hands-on) test

– passion for technology and Information Security

– the ability to conduct a webapp pen test without the use of a vulnerability scanner or exploit framework – please read this sentence again.

Job Description:

Conduct web application penetration tests of our customers applications – web, mobile, and other. Clearly communicate vulnerability details and risk to customers, both verbally and in writing.

Required Skills:

– Strong technical skills and understanding of web, mobile, and other applications

– Highly motivated individual with the ability to work independently and to think outside the box — “hacker” mentality.

– Proficiency with common security tools; nmap, Nessus, Metasploit, Burp, Zap, CAIN, Linux Kali, etc.

– A methodology for conducting a thorough application assessment

– Degrees and certifications are a bonus but not required provided you can demonstrate a high degree of technical skills

– Punctuality

– Humility

VIEW OTHER JOB POSTS FROM:
SHARE THIS POST
facebook linkedin