Job Overview
Perform penetration tests using techniques that mimic real-world attacks to exploit vulnerabilities on web and mobile applications. Part of an information governance and security function that balances protection of information assets with business freedom.
Key Responsibilities
Work with stakeholders to determine penetration testing requirements. Plan and create penetration methods, scripts and tests. Carry out penetration testing to expose security weaknesses. Simulate security breaches to test relative system security. Create reports and recommendations covering issues uncovered and risk levels. Advise on methods to fix or lower security risks. Present findings, risks and conclusions to stakeholders. Consider business and user impact of attacks; understand how flaws could affect the business if unfixed. Remain abreast of the latest attack methodologies and tactics.
Required Qualifications
Relevant degree in Computer Science or Computer Engineering advantageous. Security certifications such as CEH, GPEN, OSCP or CREST. 3-5 years' penetration testing experience including web, mobile and cloud applications. 2 years' red team engagement and threat analysis experience. Mastery of Linux/Mac/Windows including Bash, PowerShell and Python. Network and wireless penetration testing; ability to understand and modify diverse codebases. Proficiency in cryptographic protocols; thorough understanding of network protocols and covert channels. Source code review experience; familiarity with penetration testing methodology and standards.
Similar Jobs
Learning and Capability Building Lead
Meridian Talent Partners
Strategic HRBP: Client Facing Clusters
Meridian Talent Partners
Senior Manager: Credit Models and Innovation
Meridian Talent Partners
Head of Legal, Governance & Executive Affairs
Meridian Talent Partners
Data Scientist (Intermediate)
Meridian Talent Partners
HR Manager
Meridian Talent Partners
