Hiring Now : : Penetration Tester : : Hybrid (TX) at Remote, Remote, USA |
Email: [email protected] |
From: Surya kanta pradhan, Vyze inc. [email protected] Reply to: [email protected] Position: Penetration Tester Location: Hybrid (TX,PA) Duration: 6+ Months Visa: No H1B / CPT MOI: Skype MUST HAVE: Linkedin and DL Is Must Must haves: * 5-8 years experience * Experience in testing web-based APIs (i.e. REST, SOAP, XML, JSON). * Experience in designing and documenting pragmatic remediation guidance for discovered vulnerabilities. * Familiarity with common web vulnerabilities including: XSS, XXE, SQL Injection, Deserialization Attacks, File Inclusion/Path Traversal Attacks, Server-side Request Forgery, Remote Execution Flaws, Server Configuration Flaws and Authentication Flaws. * Experience developing actionable intelligence based on open source intelligence (OSINT) gathering. * Experience with 1 or more scripting languages such as Bash, Python, Perl, PowerShell, etc. * Solid understanding of OWASP testing methodology. * 3+ years of experience using Burp Suite Pro or equivalent application (e.g. ZAP). * Web application development or source code review experience. * Strong knowledge of Windows and Linux operating systems. * Working knowledge of containerized applications and container-based security controls and configurations. * Possess current professional certification (i.e. GWAPT, OSCP, OSCE, GPEN) Day to day: * Conduct assessments of web applications, mobile applications, databases, client-side applications and tools, and APIs. * Execute manual and automated code analysis to assess the quality and security of source code. * Perform pre-assessment research and preparation including reconnaissance, documentation and configuration review, and customer interviews. * Develop custom tools and exploits. * Analyze security findings, including risk analysis and root cause analysis. * Generate comprehensive reports, including detailed findings, exploitation procedures, and mitigations. * Develop and deliver walkthrough(s), proof(s) of concept (PoCs), articles, and formal presentations. * Execute verification and validation testing for customer mitigations and fixes Keywords: Pennsylvania Texas |
[email protected] View all |
Fri Jan 26 10:40:00 UTC 2024 |