About this role
The team is seeking an experienced Application Security / Penetration Testing Engineer to join their team. The ideal candidate will have strong hands-on experience in web application and API security testing. This role involves supporting security testing for approximately 150 applications annually, utilizing both manual testing and automated application security testing tools.
Key Responsibilities:
- Conduct comprehensive security assessments of web applications and APIs.
- Perform manual penetration testing and utilize automated security testing tools.
- Support the bug bounty program by validating, reproducing, and documenting vulnerabilities reported by external security researchers.
- Collaborate with development teams to ensure security best practices are integrated into the software development lifecycle.
- Stay updated on the latest security threats, vulnerabilities, and industry trends.
Required Skills & Qualifications:
- Proven experience in application security and penetration testing.
- Proficiency with security testing tools such as OWASP ZAP, Burp Suite, or similar.
- Strong understanding of web technologies and common security vulnerabilities (e.g., OWASP Top Ten).
- Experience with scripting or programming languages (e.g., Python, Java, JavaScript).
- Excellent problem-solving skills and attention to detail.
Experience: 5-8 years in application security or related field.
What we offer:
- Opportunity to work with a dynamic team in a fast-paced environment.
- Professional development and growth opportunities.
- A collaborative culture that values innovation and security.
Applications are read by our talent team, usually within two working days.
If you look like a fit we will call you, and you will hear from us either way.