Job description
Job Description:
- Perform penetration testing of web applications, mobile applications, thick clients, and APIs
- Conduct source code reviews and whitebox penetration testing to prove the impact of application flaws
- Reverse engineer mobile and thick client applications
- Chain application flaws into cloud and on-premises Active Directory infrastructure where applicable
- Develop detailed reports on findings and remediations for impactful findings
- Debrief findings at technical and executive levels
- Perform SAST and DAST on enterprise, SaaS, and custom in-house applications
- Use scanners and validate and eliminate false positives
Requirements:
- Solid working knowledge of C, C#, Python, Objective-C, Java, JavaScript, SQL, and frameworks such as AngularJS
- Familiarity with web services and data exchange formats including XML, JSON, SOAP, REST, and AJAX
- Understanding of AI/LLM weaknesses and application flaws
- Extensive expertise using an attack proxy such as Burp Suite
- 3–5 years of penetration testing and consulting experience preferred
- Graduate of a post-secondary college or university degree program
- At least two years of experience handling information security-related tasks
- Professional qualification(s), one or more of OSCP, OSWE, or BSCP
- OSCP or Burp is mandatory for the organization
- Must be located in Texas
- Strong understanding of OWASP for Web, API, Mobile, and AI/LLM
- Customer-first mentality, strong communication, rapid responses, dependability, and willingness to continuously learn
Benefits:
- Competitive compensation and pay for performance
- Employee growth and development
- Fully remote (in Texas)
first seen 2026-08-07 04:48:01 · last verified 2026-08-07 04:48:01
pentestcareers.com // breach the job market