Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Web Penetration Tester Consultant @ Forbes Global

Home > IT Security

 Web Penetration Tester Consultant

Job Description

Job Title: WebPT P1 - Consultant

Location: Bangalore & Pune (Hybrid Role)
Contract Duration: 6 Months

Roles & Responsibilities:

  • Perform automated testing of running applications and static code (SAST, DAST).
  • Conduct manual application penetration tests on one or more of the following to discover and exploit vulnerabilities:
    • Web applications
    • Internal applications
    • APIs
    • Internal and external networks
    • Mobile applications
  • Experience in one or more of the following is a plus:
    • Mobile application testing
    • Web application pen testing
    • Application architecture
    • Business logic analysis
  • Work on application tools to perform security tests, including:
    • AppScan
    • NetsSparker
    • Acunetix
    • Checkmarx
    • Veracode
    • BurpSuite
    • OWASP ZAP
    • Kali Linux
  • Able to explain vulnerabilities such as:
    • IDOR (Insecure Direct Object References)
    • Second Order SQL Injection
    • CSRF (Cross-Site Request Forgery)
  • Provide root cause analysis and remediation guidance for identified vulnerabilities.

Mandatory Technical & Functional Skills:

  • Minimum three (3) years of recent experience working with application tools to perform security tests:
    • AppScan
    • NetsSparker
    • Acunetix
    • Checkmarx
    • Veracode
    • BurpSuite
    • OWASP ZAP
    • Kali Linux (or equivalent)
  • Minimum three (3) years of performing manual penetration testing and code review against:
    • Web applications
    • Mobile apps
    • APIs
  • Minimum three (3) years of experience working with both technical and non-technical audiences in reporting results and leading remediation conversations.
  • Preferred: One year of experience in the development of web applications and/or APIs.
  • Ability to identify and work with new tools/technologies to plug and play on client projects as needed to solve the problem at hand.

Certifications (Preferred but not required):

  • GWAPT (GIAC Web Application Penetration Tester)
  • CREST (Certified Testing Professional)
  • OSCP (Offensive Security Certified Professional)
  • OSWE (Offensive Security Web Expert)
  • OSWA (Offensive Security Web Application)

This is a 6-month contract role with hybrid work arrangements in Bangalore and Pune.

Job Classification

Industry: Law Enforcement / Security Services
Functional Area / Department: IT & Information Security
Role Category: IT Security
Role: Cyber Security
Employement Type: Contract

Contact Details:

Company: Forbes Global
Location(s): Pune

+ View Contactajax loader


Keyskills:   Appscan Owasp Zap NetsSparker Checkmarx Kali Linux CREST GWAPT OSWA WebInspect Security Testing Oscp OSWE IDOR Dast Acunetix Veracode Sqlmap Csrf Sast Vulnerability Netsparker Burp Suite Penetration Testing OWASP API Network Penetration Testing Manual Penetration Testing

 Fraud Alert to job seekers!

₹ 22.5-25 Lacs P.A

Similar positions

Security Consultant

  • VProtect
  • 2 - 7 years
  • Mumbai
  • 7 days ago
₹ 50,000-70,000 P.A.

Security Consultant

  • Sunbrilo Technology
  • 3 - 7 years
  • Pune
  • 7 days ago
₹ Not Disclosed

SAP Security Advanced Consultant

  • Ltimindtree
  • 6 - 11 years
  • Hyderabad
  • 10 days ago
₹ Not Disclosed

SAP Security Advanced Consultant

  • Ltimindtree
  • 6 - 11 years
  • Hyderabad
  • 10 days ago
₹ Not Disclosed

Forbes Global

AltezzaSys INC is a global technology services , staffing and outsourcing provider that is committed to helping customers align technology innovation with business strategy. With reach across six continents, Altezzasys is global professional services company provides a range of services and solution...