● Vulnerability assessment and penetration testing on web applications and web services on your own.
● Complete manual-focused web application vulnerability assessments
● Report all detected vulnerabilities in Spara’s report template based on OWASP WSTG.
● Seek opportunities to develop more complex scripts to automate checks and create custom tools.
Requirements
● Strong knowledge of web application security evaluation and penetration test standards such as ASVS.
● Strong knowledge of mobile application security evaluation and penetration test standards such as MASVS.
● Good knowledge of network penetration tests and vulnerability management.
● Experience in configuring and fine-tuning network security devices or services such as firewalls, IDS/IPS, PAM, etc.
● Experience in secure coding and code review.
● 3 years of experience in related job positions.
● Familiar with Linux OS.
● Familiar with network basics.
● Familiar with information security basics.
● Familiar with programming languages.
● Good written and verbal skills.