Match Score
Against your primary resumeLogin to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Protocol Intelligence
Data-driven signals on your job's competitivenessLog in to see why each signal reads the way it does.
Job Description
Structured overview of role & requirementsAbout This Role
Design, implement, and maintain a penetration-testing framework including methodologies, tools, and automation for regular security assessments across web applications, APIs, cloud and infrastructure.
Perform manual and automated penetration tests on diverse environments such as web apps, APIs, VMs, cloud platforms, OS, networks, and provide prioritized remediation recommendations.
Collaborate cross-functionally with engineering, DevOps, and security teams to communicate findings, support remediation efforts, integrate security testing into CI/CD pipelines, and ensure ongoing security coverage.
Minimum Requirements
8+ years of hands-on experience in penetration testing, application security, offensive security, red teaming, or similar roles.
Proven skills testing web applications, APIs, cloud infrastructure (AWS, Azure, or GCP), VMs, operating systems, and network services.
Strong knowledge of OWASP Top 10, OWASP API Security Top 10, cloud security threats, identity and access management, and common cloud misconfigurations.
Proficiency with security tools (e.g., Burp Suite, Nmap, Metasploit), scripting/programming (e.g., Python, Bash), and delivering technical security reports.
Ideal Candidate Profile
Experienced security professional comfortable building and owning penetration-testing processes and frameworks at scale across multiple environments.
Has a deep understanding of modern attack techniques and cloud security, with demonstrated ability to design attack scenarios and validate defenses.
Able to operate independently and collaborate effectively with diverse technical and business stakeholders including engineering, DevOps, and security teams.
