- Conduct penetration testing on web, mobile, and network applications
- Identify and document security vulnerabilities and exploits
- Perform vulnerability assessments and recommend remediation steps
- Prepare detailed technical reports for clients/internal teams
- Stay current with emerging threats and attack techniques
Required Skills:
- Robust understanding of OWASP Top 10 and common attack vectors
- Experience with tools like Burp Suite, Nmap, Metasploit
- Knowledge of network and application security testing methodologies
- Strong analytical and report-writing skills
- CEH/OSCP certification preferred
Good to Have:
- Experience with cloud security testing
- Knowledge of scripting (Python) for tool development
- Exposure to red team exercises