onsite
Senior Security Testing Specialist - PNC
Software Engineer
Senior specialist driving application security testing, including manual pen‑tests, SAST/DAST integration, and vulnerability remediation using OWASP standards and scripting in Python.
About the role
Key Responsibilities
- Design, execute, and lead manual and automated penetration tests for web, mobile, and API applications.
- Integrate SAST and DAST tools into CI/CD pipelines and provide actionable findings to development teams.
- Develop and maintain security test scripts and utilities, primarily using Python.
- Collaborate with developers, architects, and product owners to remediate vulnerabilities and improve secure coding practices.
- Stay current with OWASP Top 10, emerging threats, and industry best practices to continuously enhance testing methodologies.
Requirements
- 5+ years of hands‑on experience in application security testing and vulnerability assessment.
- Proficiency with penetration testing tools (e.g., Burp Suite, Metasploit) and SAST/DAST solutions.
- Strong scripting skills in Python and familiarity with CI/CD platforms such as Jenkins, GitLab CI, or Azure DevOps.
- Deep understanding of OWASP Top 10, secure coding standards, and remediation processes.
- Excellent communication skills to convey technical findings to both technical and non‑technical stakeholders.
Skills
penetration testingowasppython