Burp Suite / Application Security Engineer (Thrissur)

Burp Suite / Application Security Engineer (Thrissur)

21 Aug
|
Hexo Global Technologies
|
Thrissur

21 Aug

Hexo Global Technologies

Thrissur

We are looking for an experienced Application Security Engineer with strong hands-on expertise in Burp Suite and web application security testing. The candidate will be responsible for identifying, validating, and reporting security vulnerabilities across web applications and APIs, as well as supporting remediation and security improvements.

Key Responsibilities

Perform Web Application and API Security Testing using Burp Suite.

Conduct manual and automated penetration testing of web applications.

Identify vulnerabilities such as

OWASP Top 10

SQL Injection

Cross-Site Scripting (XSS)

Authentication & Authorization flaws

IDOR / Broken Access Control

SSRF

CSRF

File Upload vulnerabilities

Business Logic vulnerabilities

API security vulnerabilities

Use Burp Proxy, Repeater, Intruder, Scanner, Decoder and Collaborator effectively.

Perform vulnerability validation and proof-of-concept development.

Analyze application traffic, HTTP requests/responses, cookies, sessions, tokens, and APIs.

Prepare detailed vulnerability assessment and penetration-testing reports.

Work with developers to explain vulnerabilities and recommend remediation.

Perform security retesting after vulnerabilities are fixed.

Stay updated with emerging web and API security threats.





Participate in secure SDLC and application security activities.

Required Skills

- Strong hands-on experience with Burp Suite Professional.
- Good understanding of HTTP/HTTPS, REST APIs, JSON, cookies, sessions and authentication mechanisms.
- Strong knowledge of OWASP Web Security Testing Guide and OWASP Top 10.
- Experience with web application penetration testing.
- Experience testing REST/JSON APIs.
- Understanding of JWT, OAuth 2.0 and SSO.
- Basic scripting/programming knowledge in Python, JavaScript, Bash or similar.
- Familiarity with tools such as Nmap, Wireshark, Postman, SQLMap and Metasploit is an advantage.
- Good vulnerability documentation and report-writing skills.
- Robust analytical and problem-solving abilities.

Preferred Certifications

- OSCP
- OSWE
- Burp Suite Certified Practitioner (BSCP)
- CEH
- eWPT / eWPTX
- Other relevant application-security certifications

Pay: ₹30,000.00 - ₹40,000.00 per month

Ability to commute/relocate

- Thrissur, Kerala: Reliably commute or planning to relocate before starting work (Preferred)

Application Question(s):
- What is your current CTC?
- What is your Expected CTC?

Experience:
- Burp Suite: 3 years (Required)

Work Location: In person

📌 Burp Suite / Application Security Engineer (Thrissur)
🏢 Hexo Global Technologies
📍 Thrissur

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: burp suite / application security engineer (thrissur) / thrissur

Subscribe to this job alert:

Get the latest job offers by email for: burp suite / application security engineer (thrissur) / thrissur