Key Responsibilities:
Conduct advanced penetration testing for web applications, APIs, networks, and infrastructure systems.
Perform vulnerability scanning, assessment, and exploitation using industry-standard tools.
Conduct in-depth security assessments to identify weaknesses in applications and infrastructure.
Prepare detailed technical reports and executive-level summaries.
Collaborate with development, IT, and infrastructure teams to remediate identified issues.
Design and maintain test cases, scripts, and security toolsets.
Required Skills:
5 or more years of experience in Application Security & Infrastructure Security VAPT.
Strong knowledge of Web , Mobile & AI Application Security (OWASP Top 10), Secure Code Review, API Security, Cloud Security (AWS, Azure, GCP), and Infrastructure Security.
Experience with security tools such as BurpSuite, SonarQube, Fortify, Metasploit, Nessus, Qualys, Nmap, Acunetix, ZAP, and KaliLinux.
Understanding of data protection regulations (UAE- IA, ISO 27001, NIST, PCI-DSS, etc.).
Strong technical writing and documentation skills.
Scripting experience in Python or Bash.