Penetration Tester, Web/Mobile Apps and Cloud Services
Core
Perform penetration testing, threat modeling, and security assessments for cloud services, web applications, and APIs to identify vulnerabilities and support incident response.
Role type
Junior to Mid-level Penetration Tester (Cloud/Web)
Builds
Secure cloud service components, web applications, and APIs
Domain
Cybersecurity, Cloud Security, Web Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Penetration testing, Threat modeling, Vulnerability management, Cloud security configuration, Security tool development, CI/CD security integration, SAST analysis, Programming (Python/JavaScript/Bash/PowerShell), Cloud platforms (AWS/Azure/GCP)
Preferred skills
Security certifications (CEH, OSWP), Published CVEs
Technologies
Burp Suite, OWASP ZAP, Nmap, Kali, Nessus, Metasploit, Python, JavaScript, Bash, PowerShell, AWS, Azure, GCP
Responsibilities
Perform penetration testing on cloud services, web applications, and APIs; Conduct threat modeling and security assessments for cloud components; Support incident response, investigation, and post-incident analysis; Analyze cloud security configurations for misconfigurations; Develop security tools and automated testing platforms; Participate in CI/CD security process improvement; Interpret cloud security standards and regulatory requirements
Seniority
Junior to Mid-level, hands-on IC
