Job Description
Title: Pen Tester ( mobile )
Duration: Full Time
Location: Remote
Job description
1. Conduct thorough and comprehensive penetration testing on all web applications within the organization.
2. Identify and document potential vulnerabilities and weaknesses in web applications.
3. Provide detailed and actionable recommendations for remediation of identified vulnerabilities.
4. Collaborate with cross-functional teams to prioritize and implement remediation efforts.
5. Stay up to date on the latest web application security threats and mitigation techniques.
6. Develop and maintain standard operating procedures and best practices for web application security testing.
7. Communicate security risks and issues to management and stakeholders in a clear and concise manner.
8. Work closely with developers to ensure secure coding practices are being followed.
9. Participate in the design and implementation of security controls and measures for web applications.
10. Conduct research and testing of new web application security tools and technologies.
11. Communicate with external vendors and partners to ensure their web applications meet security standards.
12. Train and mentor junior team members on web application security best practices.
13. Monitor and analyze web application security logs and reports.
14. Continuously improve and enhance the organization's web application security posture.
15. Adhere to all company policies and procedures regarding web application security.
Qualifications:
· Extensive Experience in Web Application Security Testing Techniques and Tools Such as OWASP Top 10, Burp Suite, And Kali Linux.
· Knowledge Of Industry Regulations and Compliance Standards Such as PCI DSS, HIPAA, And Iso 27001.
· Proven Track Record of Identifying and Exploiting Vulnerabilities in Complex Web Applications, Including Cross-Site Scripting (XSS), SQL Injection, And Session Hijacking.
· Strong Understanding of Web Development Languages and Frameworks Such as Html, CSS, JavaScript, And AngularJS.
· Ability To Effectively Communicate Technical Findings and Recommendations to Non-Technical Stakeholders, Including Management and Development Teams
͏
| Areas of responsibility | |
| Monitoring and Incident Detection | Analyse attack trends and correlate logs across systems to identify advance threats. Enhance monitoring processes and implement improvements for faster detection, to ensure compliance with security frameworks and regulatory standards. |
| Incident Handling and Analysis | Perform root cause analysis, create incident response plans and implement disaster recovery measures to minimize business disruption |
͏
| Threat Assessment and Analytics | Undertake forensic analysis using advanced analytics tools and implement mitigation measures to align with compliance requirements. |
| Stakeholder Coordination and Audit Assistance | Liaise with cross functional teams, external vendors and auditors to ensure compliance with security frameworks. Maintain audit documentation and ensure its accuracy while implementing processes that support audit readiness and continuous compliance. |
| Training and Awareness | Assist in creating and delivering cybersecurity awareness sessions, including guidance on phishing and malicious emails. |
͏
͏
Experience: 5-8 Years .
The expected compensation for this role ranges from $60,000 to $135,000 .
Final compensation will depend on various factors, including your geographical location, minimum wage obligations, skills, and relevant experience. Based on the position, the role is also eligible for Wipro's standard benefits including a full range of medical and dental benefits options, disability insurance, paid time off (inclusive of sick leave), other paid and unpaid leave options.
Applicants are advised that employment in some roles may be conditioned on successful completion of a post-offer drug screening, subject to applicable state law.
Wipro provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws. Applications from veterans and people with disabilities are explicitly welcome.
Reinvent your world. We are building a modern Wipro. We are an end-to-end digital transformation partner with the boldest ambitions. To realize them, we need people inspired by reinvention. Of yourself, your career, and your skills. We want to see the constant evolution of our business and our industry. It has always been in our DNA - as the world around us changes, so do we. Join a business powered by purpose and a place that empowers you to design your own reinvention.