HamburgerMenu
hirist

Job Description

Role : Senior Security Penetration Tester

Location : Hyderabad / Pune (Hybrid)

Shift : 4:30 PM IST - 1:30 AM IST (Supporting US & LatAm Stakeholders)

Key Responsibilities :

Conduct manual security penetration testing for :

- Web Applications & APIs hosted on-premise

- Cloud-hosted applications leveraging AWS services (S3, EC2, Lambda, API Gateway, SNS, etc.)

- Thick Client/Desktop applications using reverse engineering techniques and tools such as Echo Mirage, IDAPro, CFF Explorer, DnSpy, Sysinternals, Wireshark, DotPeek, Ghidra

- Perform triaging and technical validation of :

1. Vulnerability Disclosure Program (VDP) reports

2. Bug Bounty submissions

- Risk assessment and severity validation using CVSS scoring

- Identify vulnerabilities using innovative attack techniques and create impactful Proof of Concepts (POCs)

- Work closely with development teams by :

1. Explaining exploitation scenarios

2. Providing remediation guidance

- Supporting secure development practices

- Mentor junior team members and contribute to continuous learning within the security team

Must-Have Skills :

9- 10 years of hands-on experience in :

- Web App Security Testing

- API Security Testing

- Thick Client/Desktop App Testing

- AWS Security Testing

- Mobile App Security (preferred)

Strong experience with :

- Burp Suite

- Postman

- OWASP ZAP

- Kali Linux toolsets

Deep understanding of :

- OWASP Top 10

- SANS Top 25

- Secure coding vulnerabilities and remediation

- Strong communication & technical documentation skills

Preferred / Good to Have :

- Experience testing AI-based applications

- Experience with serverless & microservices architecture on AWS

- AWS Cloud Practitioner or other Cloud Certifications

- Security certifications such as CEH, CPent, etc

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...