Responsible for design, development, modification, debug, and/or maintenance of software systems focusing on Web application Security VAPT, security tools like Kali, Burp Suite, Zap proxy, and more, OWASP Top 10, SANS top 25, application penetration testing, SAST, and mobile application penetration testing on Android and IOS.
Job description
In one sentence
Responsible for design, development, modification, debug and/or maintenance of software systems
All you need is...
- Possesses hands-on knowledge of Web application Security VAPT.
- Possesses strong hands-on knowledge on security tools like Kali, Burp Suite, Zap proxy, OpenVAS, Nessus etc.
- Strong knowledge of the OWASP Top 10, SANS top 25, WASC security standards, OSSTMM, PTES, NIST standards and detailed knowledge of common web application attack vectors such as SQL injection, CSRF, XSS, Session Management issues, Insecure Direct Object reference, Click jacking, buffer overflows, etc.
- Thorough understanding of common web technologies like .NET, PHP, Java, XML, SAML, SOA, SOAP, web services etc. and protocols including HTTP(S), DNS, FTP, SSH etc.
- Experience in manual application penetration testing of web-based applications, thick-client applications, mobile applications, web services, API’s etc.
- A hands-on experience and understanding of SAST and Code Review.
- Should have exposure to mobile application penetration testing on platforms like Android, IOS, etc. – both client and server-side applications.
Why you will love this job:
• You will be challenged to design and develop new software applications.
• You will have the opportunity to work in a growing organization, with ever growing opportunities for personal growth.