Epicareer Might not Working Properly
Learn More

Application Security Engineer

  • Full Time, onsite
  • Happiest Minds Technologies Limited
  • Remote, United States of America
Salary undisclosed

Checking job availability...

Original
Simplified

Seeking candidates with solid expertise in Manual web application penetration testing and Manual secure code review. Not looking for only tool-based(SAST and DAST) resources

Mandatory

  • Perform manual security code review against common programming languages (Java, .NET)
  • Perform automated testing of running applications and static code (SAST, DAST)
  • Perform manual application penetration tests on one or more of the following to discover and exploit vulnerabilities: web applications, internal applications, APIs, internal and external networks, and mobile applications
  • Formal programming experience is a must in Java/c# at least 6 months
  • Create new testing methods to identify vulnerabilities and entry points that attackers may use to exploit applications, networks, and systems

Good to Have:

  • One or more major ethical hacking certifications not required but preferred; GWAPT, CREST, OSCP, OSWE, OSWA
  • Provide technical leadership and advice to team members on penetration test engagements
  • Converse with technical and non-technical audiences to articulate both testing processes, techniques and results
  • Partner with the Cyber teams to develop new testing techniques, automation for testing and marketing collateral to support the practice and mentor junior and offshore team members on tools and techniques in performing tests
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
Report this job

Seeking candidates with solid expertise in Manual web application penetration testing and Manual secure code review. Not looking for only tool-based(SAST and DAST) resources

Mandatory

  • Perform manual security code review against common programming languages (Java, .NET)
  • Perform automated testing of running applications and static code (SAST, DAST)
  • Perform manual application penetration tests on one or more of the following to discover and exploit vulnerabilities: web applications, internal applications, APIs, internal and external networks, and mobile applications
  • Formal programming experience is a must in Java/c# at least 6 months
  • Create new testing methods to identify vulnerabilities and entry points that attackers may use to exploit applications, networks, and systems

Good to Have:

  • One or more major ethical hacking certifications not required but preferred; GWAPT, CREST, OSCP, OSWE, OSWA
  • Provide technical leadership and advice to team members on penetration test engagements
  • Converse with technical and non-technical audiences to articulate both testing processes, techniques and results
  • Partner with the Cyber teams to develop new testing techniques, automation for testing and marketing collateral to support the practice and mentor junior and offshore team members on tools and techniques in performing tests
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
Report this job