L3- Jr. Application Penetration Testing
- Full-time
Company Description
Sutherland global services is seeking a Vulnerability Assessment/Penetration Testing person to augment our existing team in expanding our vulnerability assessment capabilities globally. This person(s) should be experience in application penetration testing & Tenable SC VA tool as we move toward full automation of the scanning process in place now to mature our internal remediation cadence. Good process-oriented organization is a must, as well as the ability to prioritize, and follow through on tasks.
Job Description
- Experience in conducting Internal/External network penetration testing.
- Experience in conducting application penetration testing.
- Experience in Vulnerability Management of infrastructure
- Experience in conducting Segmentation penetration testing.
- Ability to handle and prioritize task load to meet customer requirements.
- Organize assets, groups of assets, scanning parameters, and to perform vulnerability assessment and prepare reports via the various VA tools onsite.
- Validation of VA report findings against the actual environment
- Experience with some or more of the security assessment tools such as Proxy tools, IBM Appscan, WebInspect, NMap, Nessus, Maltego, Tenable SC, and Kali Linux Tool.
- Understanding of security issues, exploitation techniques and remediation measures and ability to implement new attack approaches/vectors
- In-depth knowledge of Networks and Operating Systems, including; Kali Linux, Ubuntu, Mac OS, Windows
- Ability to undertake and complete tasks independently, meet schedules & delivery timelines, and to move swiftly from concepts and theory to action.
- Familiarity with software attack and exploitation techniques.
- VAPT certifications can be an advantage.
- Ability to quickly learn new technologies and understand the security implications of these technologies.
- Monitoring security access and analyzing security breaches to identify the root cause.
Qualifications
- Bachelor’s degree, BE/Btech.
Additional Information
- CEH, ECSA, CRTP, OSCP, and other certifications