- Conduct DAST (manual and automated) for web, API, and thick client applications
- Perform manual code reviews and mobile application VAPT (static and energetic)
- Execute infrastructure VA and configuration reviews
- Assist in cloud and container security assessments and audits
Role Responsibilities
- Identify and assess vulnerabilities using OWASP methodologies
- Document and explain findings clearly to technical and non-technical stakeholders
- Collaborate with development and infrastructure teams on remediation
- Maintain up-to-date knowledge of threats, tools, and certifications like CEH, OSCP, CRTP