Desired Skills and Experience

  • Develop exploits, proof-of- concepts for web application vulnerabilities
  • Develop new plugins to detect web application vulnerabilities
  • Enhance existing plugins to improve detection of web application vulnerabilities
  • Analyse vulnerabilities in web applications through dynamic and static analysis
  • Installing vulnerable/non-vulnerable versions of web applications
  • Work with customer support to resolve false positive/negative reports
  • Manage, participate in, or directly work on any additional projects, assignments, or initiatives as assigned
  • Drive innovation by coming up with new ideas for our products and processes
  • B.S. degree in Computer Science or a related field
  • 3-4 years of programming experience in Ruby or Python
  • In depth understanding of web application security vulnerabilities, detection and exploitation techniques
  • Understanding of Web Services technologies such as XML, SOAP, and AJAX
  • Web Server configuration knowledge: Microsoft IIS, Apache HTTP Server, Apache Tomcat
  • Strong programming skills in Ruby or Python
  • Experience with one or more web application security assessment tools such as BurpSuite, Arachni, sqlmap, w3af, sqlninja, and others
  • Outstanding written and oral communication skills
  • Experience with pentesting web applications
  • Research and/or development experience with web application security assessment tools
  • Experience working with OWASP Top 10, CVE, and other vulnerability taxonomy/classification systems

Apply