CybersecurityJobs.io
← Back to all jobs

Job Description

Galent is seeking a skilled Penetration Tester to perform manual application security testing across APIs, Web, Mobile, and thick client applications, conduct threat modeling and architecture reviews, and clearly communicate findings to both technical and non-technical audiences.

Responsibilities

  • Conduct manual penetration testing across APIs (REST and SOAP), Web applications, mobile apps, and thick client software to identify security weaknesses.
  • Perform threat modeling, evaluate application business logic, and carry out architecture reviews to assess security posture.
  • Demonstrate testing capabilities in real time through demos for internal stakeholders and external clients.
  • Execute objective based and abstract penetration testing engagements with clearly defined scope and outcomes.
  • Develop and exploit proof of concepts to validate vulnerabilities and remediation approaches.
  • Operate independently on penetration testing engagements with minimal oversight and guidance.
  • Engage with technical and non-technical audiences to explain testing processes, techniques, and results; guide remediation options and assist clients in weighing these options.

Requirements

  • Minimum 5 years of recent hands-on experience in application penetration testing covering APIs, web applications, and mobile applications.
  • Proven ability to communicate reporting results to technical and non-technical audiences and lead remediation conversations.
  • Experience with Burp Suite Pro and other application testing tools such as Netsparker.
  • Bachelor's degree from an accredited college or university, or equivalent industry experience.
  • One or more major ethical hacking certifications are preferred but not required; examples include GWAPT, CREST, OSWE, OSWA.

Technologies

  • Burp Suite Pro
  • Netsparker

Location

Remote

Similar Jobs