Mobile Application Penetration Tester ( Pentest )

Shashwath Solution

Pune District

On-site

INR 350,000 - 550,000

Full time

9 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Shashwath Solution is seeking a Senior Penetration Tester with deep expertise in mobile security for Android and iOS. You will perform in-depth security assessments of mobile apps, networks, APIs, and cloud environments, including reverse engineering, malware analysis, and incident forensics.

You will collaborate with Red Teams and leadership to develop security roadmaps and deliver expert recommendations for risk mitigation and secure design practices.

Qualifications

  • 12+ years in penetration testing and security assessments.
  • Experience in mobile app pentesting for Android and iOS.
  • Proficient with red team exercises and advanced exploitation techniques.
  • Experience in malware analysis and reverse engineering.
  • Knowledge of cryptography, secure coding, and architecture design.
  • Skilled in developing custom scripts to automate testing.
  • Strong understanding of testing methodologies for networks and apps.

Responsibilities

  • Mobile Application Penetration Testing for Android and iOS; identify vulnerabilities and remediation.
  • Participate in Red Team exercises to simulate attacks and assess controls.
  • Penetration testing on apps, networks, mobile platforms, APIs and cloud environments.
  • Develop custom exploits and demonstrations for stakeholders.
  • Reverse engineering and malware analysis with detailed reports.
  • Collaborate with leadership to plan security roadmaps and initiatives.
  • Provide guidance on secure coding practices and cryptography principles.
  • Develop tools to automate testing and enhance assessment coverage.
  • Lead incident forensics to determine root causes and improvements.

Skills

Mobile pentesting
Red teaming
Malware analysis
Reverse engineering
Cryptography
Secure coding
Scripting & tooling
Security assessments

Tools

Metasploit
Burp Suite
Nessus
NMAP
Custom tools

Job description

We are seeking an experienced and highly skilled Penetration Tester with expertise in mobile application security, specifically for both Android and iOS platforms. As a Senior Penetration Tester, you will be responsible for identifying and exploiting vulnerabilities in mobile applications, networks, APIs, and other critical systems. Your primary responsibility will be performing thorough security assessments, including reverse engineering, malware analysis, and incident forensics, to ensure the security and resilience of mobile applications and systems.
The ideal candidate should have hands-on experience with penetration testing tools, mobile application testing, and advanced exploitation techniques. You will also be expected to collaborate with various teams, including Red Teams, to develop strategic security initiatives and offer expert-level recommendations for security improvements.

Key Responsibilities
  • Mobile Application Penetration Testing: Conduct in-depth security assessments of mobile applications for both Android and iOS platforms, identifying vulnerabilities and recommending remediation strategies.
  • Red Team Activities: Participate in Red Team exercises to simulate real-world attacks, uncover hidden threats, and assess the effectiveness of security controls.
  • Security Assessments: Perform penetration testing on applications, networks, mobile platforms, APIs, cloud environments, and critical systems to identify advanced threats and vulnerabilities.
  • Custom Exploit Development: Develop custom exploit code and scripts to demonstrate potential security risks to stakeholders and stakeholders, providing hands-on demonstrations of vulnerabilities.
  • Reverse Engineering & Malware Analysis: Use reverse engineering techniques and tools to analyze complex threats, malware, and incidents, providing detailed reports on findings.
  • Collaboration with Leadership: Collaborate with executive leadership and senior management to develop and execute strategic security initiatives and roadmaps to mitigate security risks.
  • Security Architecture Guidance: Provide expert-level guidance on secure coding practices, cryptography, architecture design principles, and implementation to mitigate risks effectively.
  • Tool Development & Automation: Develop custom penetration testing tools and scripts to automate testing processes and enhance capabilities for thorough assessments.
  • Incident Forensics: Lead efforts to analyze and investigate security incidents, determining the root causes and recommending improvements for better prevention.
Required Skills and Qualifications
  • Mobile Pen Testing Expertise: Strong experience in mobile application penetration testing for both Android and iOS platforms.
  • Penetration Testing Tools: Expertise in tools and frameworks such as Metasploit, Burp Suite, Nessus, NMAP, and custom/open-source tools.
  • Red Teaming & Advanced Exploitation: Advanced proficiency in red teaming, black box testing, and using advanced exploitation techniques to identify vulnerabilities.
  • Malware Analysis & Reverse Engineering: Experience in malware analysis and reverse engineering to assess complex threats and incidents.
  • Cryptography & Secure Coding: In-depth knowledge of cryptography, secure coding practices, and secure architecture design principles.
  • Custom Tools & Scripting: Hands-on experience in developing custom scripts and tools to automate testing processes and enhance the effectiveness of assessments.
  • Penetration Testing Methodologies: Expertise in applying penetration testing methodologies, including both network and application-level security assessments.
Certifications (Preferred)
  • o OSCP (Offensive Security Certified Professional)
  • o CRTP (Certified Red Team Professional)
  • o eLearn Security Certified Professional Penetration Tester V2.0
  • o Any other relevant certifications are a plus.
Required Experience
  • Overall Experience: 12+ years in penetration testing, security assessments, and threat analysis.
  • Relevant Experience: 10 years of hands-on experience specifically in penetration testing for mobile applications (Android & iOS), network security, cloud environments, and APIs.
  • Experience working in Red Team environments is a plus.
Mandatory Key Skills

android,design principles,black box testing,cryptography,mobile application security,security assessment,mobile penetration testing,ios framework,red,secure coding,testing methodologies,burp suite*,penetration testing*,nmap*,nessus*,metasploit*

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Mobile Application Penetration Tester ( Pentest )
Mobile Application Penetration Tester ( Pentest )

Shashwath Solution • Dadri

On-site
INR 4,500,000 - 6,500,000
Application Penetration Tester
Application Penetration Tester

Cortex Consultants LLC • Chennai District

On-site
INR 500,000 - 700,000
Application Penetration Tester
Application Penetration Tester

ControlCase, LLC • Mumbai

On-site
INR 800,000 - 2,000,000
Mobile Application Security Lead (AppSec)
Mobile Application Security Lead (AppSec)

ESP Engineered • Mumbai

On-site
INR 1,500,000 - 2,500,000
Software Engineer
Software Engineer

Cloudxtreme • Bengaluru, Hyderabad

Hybrid
INR 900,000 - 1,500,000
Application Security Consultant
Application Security Consultant

Securityboat • Mumbai

On-site
INR 1,200,000 - 2,000,000
Flexible engagements
Competitive compensation
Collaborative cybersecurity team
+1
Principal Mobile SME (Penetration Testing )
Principal Mobile SME (Penetration Testing )

Purview Services • Hyderabad

On-site
INR 900,000 - 1,350,000
Application Security
Application Security

Sisainfosec • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Penetration Tester_2 To 5 exp
Penetration Tester_2 To 5 exp

Kiya.ai • Chennai District

Hybrid
INR 900,000 - 1,500,000
Senior Penetration Tester
Senior Penetration Tester

NTT DATA BUSINESS SOLUTIONS • Hyderabad

Hybrid
INR 2,500,000 - 4,000,000
Hybrid Working