Application Security Tester (Penetration Tester)
Brak informacji o wynagrodzeniu
MidFull-time
#359377·Dodano 20 dni temu·15
Źródło: nofluffjobs.comTech Stack / Keywords
RJavaPythonC++JavaScriptAPIREST APISOAPGraphQLAndroidBurp SuiteOWASPNessusCAJiraConfluence
Firma i stanowisko
Edge One Solutions Sp. z o.o. is part of the Euvic Group with over 5500 experts. The company supports individual skill development and adapts projects to employee competencies. The client is a public sector organization responsible for developing and maintaining modern digital solutions supporting administrative services, focusing on secure and accessible IT systems used by millions. The project involves a team combining software development, system architecture, cybersecurity, data analysis, and digital product management.
Wymagania
- Minimum 2–4 years of experience in IT security, especially in application and infrastructure security testing
- Knowledge of security standards and best practices, including OWASP
- Experience conducting penetration tests of web and mobile applications
- Ability to perform basic source code analysis to identify vulnerabilities (Java, Python, C++, JavaScript or related technologies)
- Experience assessing security of APIs (REST, SOAP, GraphQL) and mobile applications (Android/iOS)
- Practical knowledge of tools: Burp Suite, OWASP ZAP, Nessus, Metasploit, Checkmarx, SonarQube
- Ability to verify effectiveness of implemented security fixes
- Experience preparing security test reports with remediation recommendations
- Knowledge of tools for analyzing security configuration of operating systems
- Ability to collaborate with development, operations teams, and security architects
- Possession of at least one certification: eJPT, CEH, CompTIA PenTest+, OSCP
- Developed analytical, interpersonal, and communication skills
- English language proficiency enabling technical communication
- Experience working with JIRA and Confluence
Obowiązki
- Conduct penetration tests of web applications and mobile application security tests
- Test security of backend systems, databases, and API interfaces
- Verify effectiveness of implemented security updates and patches
- Analyze source code and collaborate with development teams to identify vulnerabilities
- Participate in creating security documentation
- Collaborate with other organizational units and security teams
- Support production and maintenance processes in the security area
- Participate in change management and assess impact of changes on system security
- Report detected vulnerabilities with assessment of their impact on the organization
Benefity
- Individual support from a Service Delivery Manager for career planning and project satisfaction
- Training, certifications, and conferences with full or partial funding
- Project change opportunities aligned with preferences (#SmartChange)
- Work-life balance support including integration events, sports activities, and inspiring webinars (#edge1talks)
- Support for physical activity including sports initiatives and training room rentals
- Health package including private healthcare, sports card, insurance, and psychological support (HearMe)
- Flexible benefits system allowing personal choice of benefits
- English language lessons tailored to individual levels for international work environment
Karta sportowa
Dofinansowanie szkoleń
Opieka zdrowotna
Edge One Solutions
221 aktywnych ofert