Application Security Engineer (Penetration Tester) || Remote || 10+ Years at Remote, Remote, USA |
Email: pradeep@shrivetechnologies.com |
From: Pradeep, Shrive Technologies pradeep@shrivetechnologies.com Reply to: pradeep@shrivetechnologies.com Job Title: Application Security Engineer (Penetration Tester) Location: Remote Experience Level: Mid to Senior-Level Industry: Cybersecurity, IT Security No.of Positions: 3 Job Summary: We are seeking a skilled Application Security Engineer (Penetration Tester) to join our cybersecurity team. The ideal candidate will have hands-on experience in performing manual security code reviews, application penetration testing, and vulnerability assessments across various environments. This role requires expertise in Java/.NET, security testing methodologies (SAST, DAST), and familiarity with ethical hacking techniques. If you are passionate about cybersecurity and enjoy breaking and securing applications, we encourage you to apply. Key Responsibilities: Mandatory Duties: Perform manual security code reviews in Java and .NET applications to identify vulnerabilities. Conduct automated security testing using Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) tools. Perform manual penetration testing on web applications, APIs, internal and external networks, and mobile applications to identify and exploit vulnerabilities. Develop and execute customized security testing methodologies to uncover security flaws. Collaborate with development and security teams to remediate vulnerabilities and enhance security best practices. Maintain up-to-date knowledge of emerging security threats, attack techniques, and defense mechanisms. Hands-on programming experience in Java/C# (minimum 6 months). Preferred Qualifications & Skills: Certifications in ethical hacking (e.g., GWAPT, CREST, OSCP, OSWE, OSWA) are a plus. Provide technical leadership on penetration testing engagements. Effectively communicate test processes, results, and mitigation strategies to technical and non-technical audiences. Work closely with Cybersecurity teams to develop new security testing techniques and automate security assessments. Mentor junior and offshore team members on penetration testing tools and methodologies. Experience with security testing tools such as: SAST & DAST tools: AppScan, NetSparker, Acunetix, Checkmarx, Veracode Penetration Testing Tools: Burp Suite, OWASP ZAP, Kali Linux, or equivalent Qualifications: Bachelors degree in Computer Science, Cybersecurity, or a related field (or equivalent experience). Minimum 6 years of experience in security testing, application security, or penetration testing. Strong understanding of secure coding principles, OWASP Top 10, and common attack vectors. Ability to think like an attacker and identify potential security weaknesses. Thanks & Best Regards, Pradeep Technical Recruiter|| Shrive Technologies 1300 West Walnut Hill Lane 155-H, | | Irving, Texas 75038, United States E: pradeep@shrivetechnologies.com www.shrivetechnologies.com | LinkedIn: Pradeep Kalyan Karna Keywords: csharp information technology Application Security Engineer (Penetration Tester) || Remote || 10+ Years pradeep@shrivetechnologies.com https://jobs.nvoids.com/job_details.jsp?id=2143587 |
pradeep@shrivetechnologies.com View All |
12:31 AM 05-Feb-25 |