remote
Pen Tester Security VAT - Codilar Technologies Pvt. Ltd.
Security Engineer
Experienced Penetration Tester with 5+ years delivering manual and tool‑based VAPT, exploiting OWASP Top 10 flaws, and automating security checks using Python, Bash, and JavaScript to drive remediation across development teams.
About the role
Key Responsibilities
- Conduct manual and automated VAPT using Burp Suite (Proxy, Repeater, Intruder, Scanner) and comparable tools.
- Identify, exploit, and articulate the real‑world impact of OWASP Top 10 vulnerabilities, including complex business‑logic flaws.
- Integrate and validate findings from SAST and DAST solutions, ensuring accuracy, exploitability, and business relevance.
- Develop scripts in Python, Bash, or JavaScript to automate repetitive testing tasks and create custom security checks.
- Partner with developers and engineering managers to triage, prioritize, and remediate vulnerabilities, providing clear, actionable guidance while adhering to project timelines.
Requirements
- 5+ years of hands‑on penetration testing or VAPT experience.
- Proficiency with Burp Suite and other web application testing tools.
- Deep understanding of OWASP Top 10 and ability to exploit business‑logic vulnerabilities.
- Experience working with SAST and DAST tools and manually verifying their outputs.
- Strong scripting skills in Python, Bash, or JavaScript for automation and custom test development.
Skills
penetration testingburp suitepythonbash