Application Security Engineer / Penetration tester

Added
2 days ago
Type
Full time
Salary
Salary not provided

Related skills

security penetration testing sast sca owasp top 10

πŸ“‹ Description

  • Triage security findings from SAST, SCA, and secret scanning tools; prioritize and track
  • Perform manual and tool-based code reviews for security flaws before production.
  • Conduct hands-on penetration testing of web apps, microservices, and APIs.
  • Audit REST and GraphQL APIs and web apps focusing on auth, authZ, and business logic.

🎯 Requirements

  • 3 years in Application Security, Product Security, or Penetration Testing.
  • Experience triaging findings from Semgrep/OpenGrep, Gitleaks, Trivy, OSV-Scanner.
  • Bonuses with Burp Suite Pro, Nuclei, Subfinder, SQLmap, Metasploit, NetExec.
  • Deep OWASP Top 10 knowledge; injections, SSRF, XSS, CSRF, IDOR/BOLA, misconfigurations, crypto
  • OWASP API Security Top 10 for REST/GraphQL.
  • Identity protocols: OAuth 2.0, OIDC, JWT, SAML; RBAC/ABAC.

🎁 Benefits

  • Growe culture focusing on teamwork and delivering results.
  • Emphasis on adaptability and continuous improvement.
  • Opportunity to work across security domains with cross-functional teams.
Share job

Meet JobCopilot: Your Personal AI Job Hunter

Automatically Apply to Engineering Jobs. Just set your preferences and Job Copilot will do the rest β€” finding, filtering, and applying while you focus on what matters.

Related Engineering Jobs

See more Engineering jobs β†’