Great Openings for Security Test Engineer (Security & Pen Testing)-(C2H-6MONTHS)@Hyderabad
Position: Technical Lead
Job Location : Hyderabad
Experience: 6 Yrs To 15 Yrs
Job Type : Contract for 6 Months
Job Description :
Minimum 6 years of Security & Pen Testing Experience
Strong knowledge on performing VAPT for Thick clients, web application, Network and mobile security testing (Android, IOS, Windows)
Responsible for the Security testing initiative
Lead the team in delivering and implementing consistent test disciplines and processes using associated best practices.
Be the key escalation point for all security related support program issues across multiple projects and manage them effectively to the desired effect
Hands on Experience in tools such as Burpsuite, ZAP, Metasploit, Qualys, Nessus, HP Fortify, Veracode, Checkmarx, IBM Appscan.
Undertake the initial installation and configuration of any security penetrationtesting tools and monitors
Likelihood determination, impact analysis and risk determination
Showcase prioritization of risks including solution recommendation and documentation
Identify and infer the business risk posed by the weaknesses identified during the assessments
Provide necessary Technical expertise and Prepare test strategy, planning and execution
Perform Architectural risk analysis and threat modeling, secure design and source code review
Ensure methodical test reporting Status, metrics, financials
Hands on knowledge on OWASP top 10, SANS Top 20.
Experienced with programming languages commonly used in application development, with the ability to review code for script languages (HTML, JavaScript, PHP, Perl) and compiled languages (Java, C/C++ etc.).
Work closely with the client to ensure successful, efficient and optimal testing life cycle
Knowledge of secure coding concepts, OWASP and current and emerging threats
Advanced knowledge of network protocols and network monitoring aka "sniffing" (e.g. Wireshark, tcpdump)
Experience working in heavily regulated environments, preferably in the financial services sector
Expertise in application penetration testing
Proficiency in manual and automated techniques for penetration testing and executing vulnerability assessments (injection, privilege escalation, fuzzing, buffer overflows, etc.)
Security certifications such as OSCP, CEH, CISSP etc.
Knowledge of risk assessment methodologies and frameworks and how to apply them to diverse applications
Knowledge of different standards such as PCI DSS, HIPAA, ISO, etc.
Client Facing and have excellent communication skills
Ready to work under minimal guidance for the allotted work to be accomplished
Experience in preparing testing schedule and related testing activities while identifying and resolving all potential risks and issues
If you are interested in above opportunity, share your updated CV and below information to
sravya.nuthikattu@orbitinc.com.
Regards,
Sravya
ORBIT SOFTWARE SOLUTIONS