Penetration Tester - W2 Contract

Saicon

Pleasanton (CA)

On-site

USD 100,000 - 130,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

A technology solutions firm is seeking a Web Application Penetration Tester to perform manual penetration testing on critical web applications. The role involves identifying vulnerabilities, collaborating with the development team for remediation, and mentoring in secure coding practices. Key expertise includes OWASP knowledge and proficiency in Java, Spring, and Oracle. This position requires strong problem-solving skills and the ability to document processes effectively while ensuring application security before deployment.

Responsibilities

  • Conduct penetration tests on web pages to find security vulnerabilities.
  • Document findings and suggest remediation techniques.
  • Collaborate with the development team on remediation efforts.
  • Plan and manage all aspects of penetration testing.
  • Mentor development team on secure web application practices.

Skills

Advanced knowledge web application penetration testing
In-depth knowledge of OWASP Top 10
Experience in a fast-paced environment
Development experience in enterprise-class systems
Proficient knowledge of Java
Proficient knowledge of Spring
Proficient knowledge of Oracle
Working knowledge of Linux
Working knowledge of Windows
Project management practices

Job description

The Web Application Penetration Tester will perform the manual penetration testing of mission critical web application to discover vulnerabilities and propose remediations to the development team.

  • Conduct penetration tests on web pages to identify and exploit security vulnerabilities.
  • Document the findings and provide techniques and solutions to remediate vulnerabilities.
  • Work closely with the development team to implement remediations/solution and verify fixes.
  • Plan and manage all aspects of the penetration testing function.
  • Mentor the development team in building and securing web applications using OWASP and other mainstream frameworks.

Provide primary development for CARE modules:

  • Conduct details penetration tests using common frameworks such as OWASP to discover vulnerabilities.
  • Work closely with the development team to remediate vulnerabilities.
  • Develop automation scripts to re-run security tests and ensure that new vulnerabilities are caught before they are deployed to higher environments.
  • Assist the development team in ensuring that applications are securely designed and developed.
  • Promote high quality, scalability, and timely completion of projects.
  • Ensure that all project documentation is produced in the standard format, that it follows internal documentation.
  • Serve as subject matter expert for all matters related to web application security.
  • Create, test, and implement code changes and integrate them with existing programs as needed.
  • Coordinate meetings/communications with the Claims User Community, as needed.
  • Ensure that all I.T. requirements (documentation, sign-off, and approvals) are completed as per State Fund’s System Engineering Handbook.
  • Provide timely and effective reporting on status of projects.

Provide primary support for CARE modules:

  • Perform peer code reviews and provide feedback.
  • Work with cross functional teams, including Business, QA, and Operations.
  • Work closely with Business Users to scope and draft functional requirements.
  • Help Users to create test cases, use cases and help with functional testing.
  • Debug the system for certain behavior of the feature(s) and explain it to the Users.

Technical Knowledge and Skills:

  • Advanced knowledge web application penetration testing.
  • In-depth knowledge of OWASP Top 10 and other frameworks.
  • Experience and willingness to work in a fast-paced environment.
  • Development experience in an enterprise-class system with multi-tier architecture
  • Proficient knowledge of Java, Spring, and Oracle.
  • Working knowledge of Linux and Windows
  • Extensive knowledge of and proven experience with penetration testing of web applications, and methods and frameworks for identifying and remediating vulnerabilities.
  • Strong knowledge in project management practices and ability to document processes and procedures as needed.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Penetration Tester
Penetration Tester

BrothersTech • United States

On-site
USD 95,000 - 150,000
Penetration Tester
Penetration Tester

Akaasa Technologies • Falls Church (VA)

On-site
USD 120,000 - 180,000
Remote Penetration Tester
Remote Penetration Tester

Philadelphia Comapny • Atlanta (GA)

Remote
USD 80,000 - 120,000
Penetration Tester
Penetration Tester

NikSoft Systems Corporation • United States

On-site
USD 120,000 - 170,000
Penetration Tester
Penetration Tester

ITBrainiac Inc • Town of Newark (WI)

Hybrid
USD 90,000 - 150,000
Penetration Tester
Penetration Tester

Amatriot Group, LLC • Hampton Park (NY)

On-site
USD 90,000 - 105,000
Senior Penetration Tester – Application Security
Senior Penetration Tester – Application Security

ITR Group • Minneapolis (MN)

On-site
USD 110,000 - 124,000
Penetration Tester
Penetration Tester

Amatriot Group, LLC • City of Rensselaer (NY)

On-site
USD 90,000 - 105,000
Penetration Tester
Penetration Tester

Cybersecurity Jobs • San Antonio (TX)

On-site
USD 90,000 - 140,000
Pen test platform
Pen test platform

NEPSE Trading • Northern (KY)

On-site
USD 120,000 - 210,000