Penetration Tester

Department Icon IT / Software Development & Related
102+ Applicants
Posted: 2 months ago
4-12 years
Hyderabad / Secunderabad, Telangana, Telangana
work from office

Posted: 2 months ago
|
Applicants: 102+
Job Description
About Company
Similar Jobs
Please verify your account first! Send OTP

Please click on the Apply to verify the status of jobs posted more than 15 days ago, as they may have expired. Similar Jobs

Job Description

We are currently hiring for a Penetration Tester role with Bank of America (BA Continuum India Pvt. Ltd.), a leading global financial institution known for innovation, security excellence, and world-class technology infrastructure.

  • Position: Penetration Tester
  • Organization: Bank of America (BA Continuum India Pvt. Ltd.)
  • Experience: 4 to 10+ Years
  • Education: B.E / B.Tech / M.E / M.Tech
  • Work Timings: 11:00 AM 8:00 PM
  • Location : Hyderabad/Mumbai/Chennai

Process Overview

Global Information Security (GIS) is responsible for protecting bank information systems, confidential and proprietary data, and customer information. GIS develops the banks Information Security strategy and policy, manages the Information Security program, identifies and addresses vulnerabilities and operates global security operations center that monitor, detects and responds to cybersecurity incidents. Within GIS, the Cloud Security organization is responsible for leading a team of deeply technical cyber security engineers and architects to design and implement best in class cyber security capabilities for internal and external cloud instances in partnership with infrastructure and application technology teams. In addition, lead efforts across other Global Information Security functions to enable cyber security technology and operations in cloud environments.

This role is for GIS Penetration testing team to conduct penetration tests and source code reviews of our internal/external web, mobile, web, and web API service applications, leveraging both manual techniques as well as automated tools to uncover and report security vulnerabilities that exist.

You must be knowledgeable with business risks associated to common security vulnerabilities and to be able to effectively communicate complex technical concepts such as security vulnerabilities to application developers and/or senior managers who may have little to no experience with application security.

You must have the ability to work independently in a very large scale, enterprise setting and collaborate with peer team members. Previous experience as an application security professional with a large Financial Institution a plus.

Requirements

Education: B.E. / B. Tech/M.E. /M. Tech

Certifications, If Any: GWAPT, CEH, OSCP, SANS, CEH

Experience Range: 4 to 10+ years

Foundational Skills:

  • Strong hands-on experience in conducting comprehensive manual penetration tests and source code reviews against web, API, mobile applications, services, platforms, systems, and networks to identify security vulnerabilities.
  • Solid experience in using various security tools such as Invicti, SoapUI, Burp Suite Pro, Checkmarx, Kali Linux, Metasploit, etc.
  • Very Good Communication & Interpersonal skills.
  • Knowledge of network and Web related protocols/technologies.
  • Experience with latest penetration testing techniques (e.g., web application proxies, packet capture analysis software, browser extensions, advanced penetration testing tools (full stack), Linux distributions, Windows OS, etc.).
  • Experience of penetration testing on mobile platforms such as iOS, Android, and mobile device simulators.
  • Solid programming/debugging skills with proficiency in one or more of the following: Java, JavaScript, HTML, XML, PHP, ASP.NET, AJAX, JSON, Python, Perl, Shell script, Objective-C, and SOAP/REST web APIs.

  • Expert-level experience and knowledge in the following areas:

    Looking to get Placed? Try our Placement Guarantee Plan

  1. Authentication and security protocols.
  2. Application session management.
  3. Applied cryptography.
  4. Common communication protocols.
  5. Mobile frameworks.
  6. Single sign-on technologies.
  7. Development frameworks (Angular, React, etc.).
  8. Exploit automation platforms.
  • Knowledge of a Structured Query Language.
  • Developer experience or coding background (nice-to-have).

Desired Skills:

  • Experience of penetration testing and source code reviews on web, API and mobile platforms.
  • Solid programming/debugging skills with proficiency in one or more of the following: Java, JavaScript, HTML, XML, PHP, ASP.NET, AJAX, JSON, Objective-C, and SOAP/REST web APIs.

Skills

AjaxAngularHtmlCPythonCybersecurityDebuggingJavaJavascriptLinuxPhpTestingXmlDeveloperApiJsonFull StackCloudReactInformation Security

If an employer asks you to pay any kind of fee, please notify us immediately. Jobaaj does not charge any fee from the applicants and we do not allow other companies also to do so.

About Company

Mavenlink is the modern software platform for professional and marketing services organizations. Drive performance, unlock capacity, and improve your bottom line with complete visibility and control. Mavenlink is the modern software platform for professional and marketing services organizations. Drive performance, unlock capacity, and improve your bottom line with complete visibility and control.

Important dates & deadlines?

Application Deadline

15 Jul 26, 04:31 PM IST

Similar Jobs

View All
Loading...
Bag Logo
Jobaaj
Don't Miss out any Updates

Subscribe now for the latest job alerts
and never miss an update

Job Alert
Google hiring for Specific Roles Apply Now!
1 min ago
New Opportunity
Amazon is hiring freshers Apply Now!
5 min ago
Featured Jobs
Microsoft opening 50+ positions Apply Now!
10 min ago

Penetration Tester

Share with