Penetration Tester

  • Full time
  • Ar Riyad, Saudi Arabia View on Map
  • posted 3 days ago
  • Posted : November 18, 2024 -Accepting applications
  • View(s) 1

Job Detail

  • Qualifications  Degree Bachelor
  • Experience  3 Years

Job Description

  •  Perform Penetration testing Grey Box/BlackBox
  •  Being Up To Date with the latest vulnerabilities & exploits.
  •  Able to write detailed technical penetration testing reports highlighting the detailed steps of exploitation & mitigation.
  •  Able to write scripts for proof-of-concept for any discovered vulnerabilities.
  •  Some code writing skills , it is necessary for the remediation to be able to demonstrate the vulnerabilities discovered and how to mitigate.
  •  Familiar with OWASP to 10 and how to exploit each discovered vulnerability.
  •  Familiar with mobile application penetration test and owasp top 10 vulnerabilities.
  •  Familiar with network penetration testing and how to demonstrate his proof of concept without causing any severe impact to the environment.
  •  Familiar with the IT environments and why every environment is being used , e.g: Production, Pre-Production.
  •  Familiar with change requests and how to analyze them to perform correct assessment.
  •  Familiar with penetration testing operating systems like Parrot, Kali Linux, Black Arch.
  •  Familiar with penetration testing tools for web applications ( BurpSuite ).
  •  Familiar with vulnerability discovery tools (Nessus, Qualys, OpenVAS)
  •  Familiar with penetration testing concepts like service banner grabbing , threat, port-scanners.
  •  Familiar with dev-sec-ops and CI/CD concepts like pipeline,change request, dataflow diagram.
  •  Familiar with programming languages like Javascript, PHP & .NET Framework.

 

Requirements:

  •  Able to communicate properly and prove his idea in the simplest form and most accurate way.
  •  Good knowledge of Arabic or English language is a must.
  •  Able to commit into a deadline.
  •  Able to work under pressure.
  •  Offensive Security(OSCP,OSEP,OSWE) or SANS offensive security related courses is a must.

Required skills