Talent.com
Application Penetration Tester
Application Penetration TesterDunhill Professional Search • Atlanta, GA, US
[error_messages.no_longer_accepting]
Application Penetration Tester

Application Penetration Tester

Dunhill Professional Search • Atlanta, GA, US
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

As an Application Security Penetration Tester, you will be entrusted with the critical responsibility of safeguarding web applications and REST APIs from potential threats. Your role will require a deep understanding of the OWASP Top 10 and SANS 25, as these frameworks will guide your efforts in identifying and mitigating security vulnerabilities.

Your daily tasks will involve performing thorough security assessments of third-party libraries, analyzing dependencies, and conducting both automated and manual code reviews. You will be adept at uncovering a range of security issues, including Cross-Site Request Forgery (CSRF), Cross-Site Scripting (XSS), SQL Injection, and Privilege Escalation, and you will not only identify these vulnerabilities but also provide actionable recommendations for remediation. Mastery of tools like BurpSuite is essential, as it will be your primary instrument in executing dynamic and penetration security testing. Furthermore, you will be expected to write comprehensive reports that detail your findings and suggest enhancements to bolster system security.

In this role, you will also serve as a pivotal bridge between development teams and stakeholders, ensuring that security requirements are clearly communicated and understood. Your ability to define, maintain, and enforce application security best practices will be crucial in maintaining the integrity of the software development lifecycle. You will be involved in software security architecture and design reviews, ensuring that security is integrated from the ground up. Familiarity with Continuous Integration and Continuous Deployment (CI / CD) is necessary, as you will be responsible for integrating and automating security tools within DevOps processes.

Required Skills :

  • Serve as a liaison between development teams and stakeholders to understand and formulate security requirements.
  • Define, maintain, and enforce application security best practices.
  • Deep understanding of OWASP Top 10, SANS 25
  • Perform third-party libraries security assessment and dependency analysis.
  • Conduct vulnerability assessment and manual / automated code review of Java and Scala applications to find security vulnerabilities (CSRF, XSS, SQL Injection, Privilege Escalation, etc.) and recommend remediation.
  • Analyze scan reports from varied tools (SAST, DAST and SCA) to identify the issues, interpretate, and provide recommendation to remediate the vulnerabilities across a variety of applications, programming languages, and platforms
  • Conduct static, dynamic and penetration security testing of Web Applications and REST APIs.
  • Performs software security architecture and design reviews.
  • Write comprehensive reports including assessment-based findings, outcomes, and propositions for further system security enhancement.
  • Identify and demonstrate vulnerabilities to application owners and recommend remediation for security vulnerabilities.
  • Knowledge of scripting language to integrate and automate security tools within DevOps CI / CD processes.

Required Experience :

  • 3 years of experience in Secure Code Review, specifically with languages such as Scala, Java, JavaScript and Spring Framework
  • 3 years of practical experience with Static Analysis Security Testing (SAST) and Dynamic Analysis Security Testing (DAST),
  • 3+ years of hands-on experience with manual penetration testing of Web Applications and REST APIs using BurpSuite Pro and Postman / Bruno
  • Deep understanding of Secure Coding best practices and DevSecOps principles
  • Proficiency of OWASP Top 10 and SANS 25 standards and testing guidelines
  • Knowledge of Continuous Integration and Continuous Deployment (CI / CD), AWS Security principles, Jenkins and GitHub
  • Desired Certification : GPEN, GWAPT, OSCP, or CompTIA PenTest+

    #cjpost

    [job_alerts.create_a_job]

    Penetration Tester • Atlanta, GA, US

    [internal_linking.similar_jobs]
    Paid Product Tester

    Paid Product Tester

    Product Review Jobs • LOVEJOY, GA, United States
    [job_card.full_time]
    Compensation : Varies per assignment.Location : Remote (USA) Company : ProductReviewJobs Thank you for your interest in becoming a Paid Product Tester. This opportunity is for completing market res...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Quality Analyst (Testing)

    Quality Analyst (Testing)

    Apidel Technologies • Atlanta, GA, US
    [job_card.full_time]
    Under general supervision, analyzes user requirements, procedures, and problems to automate business processes.Provides installation, network access, control and troubleshooting for computers.Labor...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Autonomous vehicle Test Operator

    Autonomous vehicle Test Operator

    TSMG • Atlanta, GA, US
    [job_card.full_time]
    Terry Soot Management Group (TSMG) is a field data collection company founded in 2017 in Europe.We collect data where automation is not possible. We count features, take pictures, make videos, recor...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Manual Tester

    Manual Tester

    Zone IT Solutions • Atlanta, GA, US
    [job_card.permanent]
    We are looking for Manual Testers for a California City, CA, United States based project.This is a permanent role with a global IT service leader. Strong experience Application testing in either or ...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Web Application Security & Penetration Testing Associate

    Web Application Security & Penetration Testing Associate

    Acestack • Atlanta, Georgia, USA
    [job_card.full_time]
    Job Title : Web Application Security & Penetration Testing Associate.We are seeking a skilled and detail-oriented Web Application Security and Penetration Testing Associate.This role involves ident...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Quality Assurance Manual Tester

    Quality Assurance Manual Tester

    Hancock Claims Consultants Technicians • Alpharetta, GA, US
    [job_card.full_time]
    [filters_job_card.quick_apply]
    Strong collaboration skills, including the ability to work effectively with cross-functional teams to understand requirements, provide status updates, and ensure alignment on testing prio...[show_more]
    [last_updated.last_updated_variable_days]
    Information Technology IoT Software and Hardware System Tester

    Information Technology IoT Software and Hardware System Tester

    Cube hub • Roswell, Georgia, USA
    [job_card.full_time]
    Job Title : IoT Software and Hardware System Tester.QA Automation Engineer Robotics & IoT Devices.Programming companion robots for dispenser automation testing involves creating and implementing...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Travel CT Tech in Fayetteville, GA

    Travel CT Tech in Fayetteville, GA

    Titan Medical Group • Fayetteville, GA, US
    [job_card.full_time]
    Competitive weekly pay (inquire for details) .Fayetteville, GA, United States.BCLS / BLS - American Heart Association / ARRT(CT). Titan Medical is looking for travelers to fill a Travel CT Technologist ...[show_more]
    [last_updated.last_updated_variable_hours] • [promoted] • [new]
    Test External App

    Test External App

    Kimberly Herrmann - Training Company • Atlanta, Georgia, United States, 30328
    [job_card.full_time]
    [show_more]
    [last_updated.last_updated_variable_days]
    Open Application

    Open Application

    Falcomm • Atlanta, GA, US
    [job_card.full_time] +1
    We’re building next-generation RF power amplifiers, and we’re looking for bold, daring people to help us make it happen.Whether you're early in your career (internships / co-ops) or l...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Latent Print Examiner

    Latent Print Examiner

    Chimera Enterprises International • Atlanta, GA, US
    [job_card.full_time]
    [filters_job_card.quick_apply]
    Gillem, GA with opportunities for worldwide temporary deployments!.Excellent pay and benefits while at Ft.Gillem with substantial pay increases depending on deployment locations.SECRET Responsibili...[show_more]
    [last_updated.last_updated_30]
    Real-World Use Case Tester

    Real-World Use Case Tester

    Scale AI • Atlanta, Georgia, United States
    [job_card.full_time]
    Join a global community of talented professionals to shape the future of AI.Earn up to $15 USD / hr and additional rewards based on quality of submission. Outlier is committed to improving the intelli...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Remote FinTech Product Analyst - AI Trainer ($50-$60 / hour)

    Remote FinTech Product Analyst - AI Trainer ($50-$60 / hour)

    Data Annotation • Dunwoody, Georgia
    [filters.remote]
    [job_card.full_time] +1
    We are looking for a finance professional to join our team to train AI models.You will measure the progress of these AI chatbots, evaluate their logic, and solve problems to improve the quality of ...[show_more]
    [last_updated.last_updated_30] • [promoted]
    ADA Tester

    ADA Tester

    Sunrise Systems • Atlanta, Georgia, United States
    [job_card.full_time]
    [filters_job_card.quick_apply]
    Location : Atlanta, GA (Hybrid).Duration : 03 months of Contract.The Client, Office of Information Technology (Client) is seeking a qualified candidate for the Sr. Quality Analyst / Accessibility tester...[show_more]
    [last_updated.last_updated_30]
    Quality Assurance Tech

    Quality Assurance Tech

    Fresh Express • Morrow, GA, USA
    [job_card.full_time]
    [filters_job_card.quick_apply]
    The QA Technician serves as an important supporting member of the Production Team.Responsible for routine sampling and testing of Fresh Express product and materials at various stages of production...[show_more]
    [last_updated.last_updated_30]
    Application Developer - Now Hiring!

    Application Developer - Now Hiring!

    ADP • Alpharetta, GA, United States
    [job_card.full_time]
    Application Developers in our Alpharetta, GA location.Are you empathetic to client needs and inspired by transformation and impacting the lives of millions of people every day?.Are you looking to j...[show_more]
    [last_updated.last_updated_30]
    Application Development Professional (Alpharetta)

    Application Development Professional (Alpharetta)

    The Judge Group • Alpharetta, GA, United States
    [job_card.full_time]
    Application Development Professional.Omaha, NE | Indianapolis, IN | Frisco, TX | Houston, TX | Wilmington, DE | Alpharetta, GA. Application Development Professional.You will design workflows, develo...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    GAARC Lead Penetration Tester

    GAARC Lead Penetration Tester

    vTech Solution • Atlanta, Georgia, USA
    [job_card.full_time]
    The Lead Penetration Tester role involves conducting comprehensive security assessments of internal and external networks as well as applications. The individual will be responsible for identifying ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]