Unknown Company

Systems Engineer -Web Application Penetration Tester: Vanguard Group

dallas, tx • Posted 4 days ago
Remote Full Time General

Senior Penetration TesterThis will be HYBRID (3 days week), expected to be in the office on Tuesday/Weds/Thursday and remote the other two days. Duration: 12 monthsNeed DOB (MM/DD) Need SSN (LAST 4 DIGITS) Need DL COPYMust haves:5-8 years experience they need senior hands on pentesterExperience in testing web-based APIs (i.e. REST, SOAP, XML, JSON)Experience in designing and documenting pragmatic remediation guidance for discovered vulnerabilitiesFamiliarity with common web vulnerabilities including: XSS, XXE, SQL Injection, Deserialization Attacks, File Inclusion/Path Traversal Attacks, Server-side Request Forgery, Remote Execution Flaws, Server Configuration Flaws and Authentication FlawsExperience developing actionable intelligence based on open source intelligence (OSINT) gatheringExperience with 1 or more scripting languages such as Bash, Python, Perl, PowerShell, etc.Solid understanding of OWASP testing methodology3+ years of experience using Burp Suite Pro or equivalent application (e.g.

ZAP)Web application development or source code review experienceStrong knowledge of Windows and Linux operating systemsWorking knowledge of containerized applications and container-based security controls and configurationsPossess current professional certification (i.e. GWAPT, OSCP, OSCE, GPEN)

Back to Job Search