Performing Penetration / Security testing of Web, Windows and Mobile applications
Assessment of scanner results and intelligently identifying false positives from the scan results.
Use your skills to move the world forward!
Bachelor''s degree in BE/BTech/MCA/MSC or any equivalent.
7 - 8 years of relevant experience in Security testing / Penetration testing.
Penetration testing experience on Thick Client (including IEDs), Cloud, Containers, Web and Mobile native Platforms apps (iOS, Android and Windows)
Hands-on-experience in using BurpSuite, ZAP scanner, etc.
Hands-on-experience of scripting languages like Python, PowerShell, Bash, etc.
Knowledge and experience of MySQL, MSSql and similar type of RDBMS.
Security testing methodologies, tools and techniques - understanding of common application security vulnerabilities, penetration testing, and controls.
Expert knowledge of application security best practices and design principles e.g. OWASP, and Secure SDLC.
Experience with assurance techniques and tools such as SAST, DAST, IAST.
Desirable Requirements
Knowledge of Mobile and Web Application architecture and software development life cycle.
Good Understanding of security vulnerabilities.
Having experience in automation testing
Possess one or more of the following credentials: OSCP, OSWE.
Proficient communication skills and ability to identify and communicate risk.