ESSENTIAL DUTIES AND RESPONSIBILITIES:
1. Perform Application, API and Microservices Pentest
2. Perform Network Pentest (Internal and External)
3. Perform Mobile App Pentest, Mobile Assessments,
4. Threat Modelling, Legal Reviews,
5. Reporting and the PoCs of the vulnerabilities, and Documentation,
6. Coordinate with various stakeholders,
7. Perform R&Ds
8. Other Security Analysis
Mandatory Requirements:
1. Relevant Experience in Security Domain: 3+ Years.
2. Proven expertise & track record in Web Application Penetration testing (Web, Mobile.
3. API/Web Services on JAVA & .Net) through DAST Manual approach.
4. Proven expertise & track record in Mobile Application Penetration testing (Web, Mobile. API/Web Services on JAVA & .Net) through DAST Manual approach.
5. Hands-on experience in DAST tools, API (SOAPUI, PostMan).
6. Experience in DAST Manual Assessments, Threat Model and Penetration Testing.
7. Good Network Pentest skills-sets for external and internal networks.
8. Excellent written and verbal communication skills.
Preferred Skillsets:
1. Hands-on experience of DevSecOps.
2. Good Knowledge of Java, .NET, SQL queries (Oracle, PostgreSQL etc).
3. Experience in Automating Security tasks using Python or Java Frameworks and System/Network Exploitation is a bonus.
4. Experience in Red Teaming.
5. Handson experience, knowledge and understanding of Security Frameworks.
6. Handson experience on MS Tools.