Free cookie consent management tool by TermsFeed Senior Security Consultant (Thick Application Penetration Testing) | Antal Tech Jobs
Back to Jobs
3 Weeks ago

Senior Security Consultant (Thick Application Penetration Testing)

decor
Ahmedabad, Gujarat, India
Information Technology
Full-Time
NetSPI

Overview

Senior Security Consultant (Thick Application Penetration Tester)


NetSPI is the proactive security solution used to discover, prioritize, and remediate security vulnerabilities of the highest importance, so businesses can protect what matters most. NetSPI secures the most trusted brands on Earth through Penetration Testing as a Service (PTaaS), External Attack Surface Management (EASM), Cyber Asset Attack Surface Management (CAASM), and Breach and Attack Simulation (BAS). Leveraging a unique combination of dedicated security experts, intelligent process, and advanced technology, NetSPI brings a proactive approach to cybersecurity with more clarity, speed, and scale than ever before.


NetSPI is on an exciting growth journey as we disrupt and improve the proactive security market. We are looking for individuals with a collaborative, innovative, and customer-first mindset to join our team. Learn more about our award-winning workplace culture and get to know our A-Team at www.netspi.com/careers.


Join the mission as a Senior Security Consultant. We are seeking a skilled expert and detail-oriented Penetration Tester to conduct thorough security assessments, identify vulnerabilities, and provide expert recommendations to strengthen our clients' security posture. As a Penetration Tester supporting Thick Applications, you will be responsible for performing Thick and Web Application Testing, while working closely with clients to deliver clear, actionable reports and contribute to the development of security best practices.


Responsibilities:

  • Conduct engagements independently and provide technical oversight on:
    • Thick Application Penetration Testing
    • Includes Web Application Penetration (WaPen) testing.
    • Occasionally includes Mobile (MaPen) and IOT/embedded penetration testing.
  • Review reports for accuracy in technical oversight, perform weekly QA oversight, and provide mentoring support to others
  • Create, deliver, and collaborate on penetration testing reports in diverse client environments, maintaining client-specific processes, reporting standards, and access protocols to help improve their security posture
  • Research and develop innovative techniques, tools, and methodologies for penetration testing services, alongside commitment to improvement and execution on NetSPI specific products and processes
  • Participate in development, implementation, and oversight of testing, delivery, and management strategies for key client accounts
  • Research and develop innovative techniques, tools, and methodologies for penetration testing services.
  • Perform administrative tasks related to day-to-day consulting activities to ensure smooth business and engagement operations.

Minimum Qualifications:

  • Bachelor’s degree or higher, with a focus on IT, Computer Science, Engineering or Math or equivalent experience
  • Minimum of 5+ years of work experience in Thick Application Penetration Testing for applications written in “managed” (e.g. Java, C#, etc.) and “unmanaged” (e.g. C, C++, Swift, Rust, etc.) code
    • Includes experience with offensive toolkits used in web application penetration testing.
  • Experience with disassemblers and debuggers
    • Examples include WinDbg, IDA, Ghidra, gdb and lldb.
  • Experience with dynamic instrumentation toolkits
    • Examples include Frida.
  • Familiarity with offensive tools, based on applicable skillset (e.g., Kali Linux, Burp Suite, Metasploit, Nessus)
  • Familiarity with offensive and defensive IT concepts and protocols
  • Extensive understanding of the OWASP Top 10, MITRE ATT&CK framework, and various security frameworks.
  • Working knowledge of Windows, Linux and MacOS operating systems internals
  • Experience mentoring or coaching to growing team members, while sharing knowledge externally through blogs, hosting webinars, or presenting at conferences
  • Ability to work independently and as part of a team
  • Proficient communication skills, both written and verbal
  • This position requires an 8-hour workday, with occasional evenings or weekends necessary to meet project deadlines or critical needs

Preferred Qualifications:

  • Ability to provide technical and QA oversight on Thick Application service line.
  • Experience in one or more of the following programming or scripting languages (e.g., Ruby, Python, Perl, C, C++, Java, and C#)
  • Experience performing fuzz testing.
  • The ability to reverse engineer proprietary application layer protocols.
  • Experience with IOT/embedded penetration testing.
  • Offensive Security Certifications (e.g., GXPN, GPEN, OSCP, GWAPT)

We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law.

Share job
Similar Jobs
View All
1 Day ago
Sr. Business Analyst - Salesforce Job
Information Technology
  • Bangalore, Karnataka, India
We use cookies to offer you the best possible website experience. Your cookie preferences will be stored in your browser’s local storage. This includes cookies necessary for the website's operation. Additionally, you can freely decide and change any...
decor
1 Day ago
Predigle - AI Engineer - Machine Learning/Python
Information Technology
  • Bangalore, Karnataka, India
Job Description : AI Engineer GenAI & Applied MLLocation : Chennai / Remote-friendlyExperience Level : 13 YearsJob Type : Full-TimeAbout The RoleWe are seeking a highly motivated AI Engineer with a strong background in Generative AI, Large Langua...
decor
1 Day ago
Revalsys Technologies - Data Engineer - Big Data/Python
Information Technology
  • Bangalore, Karnataka, India
Key Responsibilities Design, develop, and optimize big data pipelines using Azure Databricks, PySpark, and Delta Lake. Collaborate with Azure services like Data Lake, Synapse, SQL Database, and Data Factory to implement robust data solutions. Dev...
decor
1 Day ago
MERN Stack Web Developer Internship in Jaipur
Information Technology
  • Bangalore, Karnataka, India
Selected Intern's Day-to-day Responsibilities Include Collaborate with our team to design and develop live web applications that make a real impact Dive into the MERN stack and turn design concepts into fully functional features Ensure that appli...
decor
1 Day ago
Atlas Systems - UI Developer - React.js Framework
Information Technology
  • Bangalore, Karnataka, India
About UsAtlas Systems Inc. is a Software Solutions company headquartered in East Brunswick, NJ.Incorporated in 2003, Atlas provides comprehensive range of solutions in the area of GRC, Technology, Procurement, Healthcare Provider and Oracle to custo...
decor
1 Day ago
Morningstar - L1 Security Analyst
Information Technology
  • Bangalore, Karnataka, India
Role : Security Analyst L1The Information Security Team is a central function governing corporate and product security globally. We have built a strong team of high performing security experts and are creating a new team within Information Security ...
decor
1 Day ago
iOS Developer Internship in Noida
Information Technology
  • Bangalore, Karnataka, India
Selected Intern's Day-to-day Responsibilities Include Assist in developing and maintaining iOS applications using Swift. Collaborate with design and backend teams to implement new features. Write clean, maintainable, and scalable code. Debug and...
decor
1 Day ago
BeBetta - Game Developer - Unity3D/C#
Information Technology
  • Bangalore, Karnataka, India
Job : Game Developer (Unity)Experience : 2 -4 : Bangalore (On-site)Work Days : 6 Days a WeekAbout BeBettaBeBetta is a gamified reward platform for Gamers and Entertainers. We're on a mission to merge play, performance, and purpose by rewarding engag...
decor

Talk to us

Feel free to call, email, or hit us up on our social media accounts.
Social media