HamburgerMenu
hirist

DevSecOps Engineer - Web Application Penetration Testing

ResourceTree Global Services Pvt Ltd
Bangalore
3 - 6 Years

Posted on: 21/08/2025

Job Description

ESSENTIAL ROLE AND RESPONSIBILITIES :

1. Perform Application, API and Microservices Pentest

2. Perform Network Pentest (Internal and External)

3. Perform Mobile App Pentest, Mobile Assessments,

4. Threat Modelling, Legal Reviews,

5. Reporting and the PoCs of the vulnerabilities, and Documentation,

6. Coordinate with various stakeholders,

7. Perform R&Ds

8. Other Security Analysis

Mandatory Requirements :

1. Relevant Experience in Security Domain : 3+ Years.

2. Proven expertise & track record in Web Application Penetration testing (Web, Mobile.)

3. API/Web Services on JAVA & .Net through DAST Manual approach.

4. Proven expertise & track record in Mobile Application Penetration testing (Web, Mobile. API/Web Services on JAVA & .Net) through DAST Manual approach.

5. Hands-on experience in DAST tools, API (SOAPUI, PostMan).

6. Experience in DAST Manual Assessments, Threat Model and Penetration Testing.

7. Good Network Pentest skills-sets for external and internal networks.

8. Excellent written and verbal communication skills.

Preferred Skill sets :

1. Hands-on experience of DevSecOps.

2. Good Knowledge of Java, .NET, SQL queries (Oracle, PostgreSQL etc).

3. Experience in Automating Security tasks using Python or Java Frameworks and System/Network Exploitation is a bonus.

4. Experience in Red Teaming.

5. Hands-on experience, knowledge and understanding of Security Frameworks.

6. Hands-on experience on MS Tools.

info-icon

Did you find something suspicious?