Enable job alerts via email!

Application Penetration Tester (APT)

Suzva Software Technologies

Navi Mumbai

On-site

INR 7,00,000 - 12,00,000

Full time

Today
Be an early applicant

Job summary

A technology firm based in Navi Mumbai is seeking an Application Penetration Tester (APT) to enhance its security posture. The role involves conducting penetration testing for web, mobile, and API applications, utilizing tools like BurpSuite and OWASP ZAP. Candidates should have a strong understanding of security vulnerabilities and compliance with standards like OWASP Top 10. Relevant certifications such as CEH or OSCP are preferred.

Qualifications

  • Strong understanding of penetration testing methodologies.
  • Experience in preparing and maintaining MIS reports.
  • Ability to analyze findings and provide clear mitigation strategies.

Responsibilities

  • Conduct manual and automated penetration testing for applications.
  • Identify, exploit, and document vulnerabilities with clear impact.
  • Collaborate with development teams to provide remediation guidance.

Skills

Web/Mobile/API penetration testing methodologies
BurpSuite
OWASP ZAP
Nmap
Metasploit
Postman

Education

Bachelors degree in Computer Science, Information Technology, Cyber Security

Tools

BurpSuite
OWASP ZAP
Nmap
Metasploit
Postman
Job description
About the Role

We are seeking a skilled Application Penetration Tester (APT) with hands-on experience in Web, Mobile, and API security testing. The ideal candidate will be responsible for identifying vulnerabilities, performing detailed security assessments, and collaborating with development and operations teams to strengthen the overall security posture of the organization.

Key Responsibilities
  • Conduct manual and automated penetration testing for web, mobile, and API-based applications.
  • Utilize tools such as BurpSuite, OWASP ZAP, Postman, and other security frameworks for testing and analysis.
  • Identify, exploit, and document vulnerabilities with clear technical and business impact.
  • Prepare MIS reports, test summaries, and technical documentation for all conducted assessments.
  • Collaborate with development teams to provide remediation guidance and verify fixes.
  • Stay updated on the latest security threats, trends, and best practices in application security.
  • Ensure compliance with OWASP Top 10, SANS25, and other standard security benchmarks.
  • Participate in security audits, code reviews, and red team exercises when required.
Required Skills and Tools
  • Strong understanding of Web/Mobile/API penetration testing methodologies.
  • Proficiency in BurpSuite, and familiarity with tools like OWASP ZAP, Nmap, Metasploit, and Postman.
  • Knowledge of vulnerability assessment frameworks and secure coding practices.
  • Experience in preparing and maintaining MIS reports related to security testing.
  • Solid understanding of OWASP Top 10, SANS25, and CWE vulnerabilities.
  • Ability to analyze findings and provide clear mitigation strategies.
Certifications (Preferred)
  • CEH (Certified Ethical Hacker)
  • OSCP (Offensive Security Certified Professional)
  • LPT (Licensed Penetration Tester)
  • CEPT (Certified Expert Penetration Tester)
  • SANS25 GIAC Certifications
Educational Qualification
  • Bachelors degree in Computer Science, Information Technology, Cyber Security, or a related field.
  • Advanced degrees or certifications in Information Security will be an added advantage.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.