Ethical Hacker / Penetration Tester
Core
Identify, exploit, and remediate vulnerabilities in Java-based enterprise applications and supporting infrastructure.
Role type
Senior IC ethical hacker / penetration tester
Builds
Secure enterprise application environments
Domain
Cybersecurity, Application Security, Java
Required skills
Java development, penetration testing, secure coding, DevSecOps, vulnerability assessment, API security, OWASP Top 10, cryptography, SSL/TLS, SAST/DAST tools, exploit development
Preferred skills
OSCP, GWAPT, GXPN, GPEN, LPT, CEH, CISSP, Python, Bash, cloud security testing, mobile app penetration testing, HIPAA compliance
Technologies
Burp Suite, Metasploit, Fortify on Demand (SAST/DAST), Web Proxy Tools, Vulnerability Assessment Platforms
Responsibilities
Conduct penetration testing and vulnerability assessments of Java applications and APIs; Develop and execute custom exploits to simulate attacker techniques; Analyze application architecture and code to identify security risks; Collaborate with development teams to integrate security early in the SDLC; Review source code and provide secure coding guidance; Create detailed reports outlining findings and remediation recommendations; Present security findings to technical and non-technical stakeholders.
Seniority
Senior, hands-on IC