You will conduct advanced penetration tests across web applications, APIs, networks, and infrastructure systems.
Responsibilities
- Perform vulnerability scanning, assessment, and exploitation using industry-standard tools.
- Conduct in-depth security assessments to identify weaknesses in applications and infrastructure.
- Prepare detailed technical reports and executive-level summaries.
- Collaborate with development, IT, and infrastructure teams to remediate identified issues.
- Design and maintain test cases, scripts, and security toolsets.
Required Skills
- 5+ years of experience in Application Security & Infrastructure Security.
- Strong knowledge of Web, Mobile & AI Application Security (OWASP Top 10), Secure Code Review, API Security, Cloud Security (AWS, Azure, GCP), and Infrastructure Security.
- Experience with security tools such as Burp Suite, SonarQube, Fortify, Metasploit, Nessus, Qualys, Nmap, Acunetix, ZA P, and Kali Linux.
- Scripting experience in Python or Bash.
- Understanding of data protection regulations (UAE- IA, ISO 27001, NIST, PCI-DSS, etc.).
- Bachelor’s degree or above in Computer Science, Information Security, or a related field.
- Familiarity with OSCP, CEH, CISSP, CISA, GWAPT.