Sr. Penetration Tester (Android)/Mobile Tester

Mountain View, CA

FocusKPI

FocusKPI offers custom marketing analytics solutions and specialized data science support to optimize ROI and improve productivity. Among our areas of expertise are: personalization AI/ML solutions, measurement (MMM & MTA), customer sentiment...

View all jobs at FocusKPI

Apply now Apply later

FocusKPI is looking for a Sr. Penetration Tester (Android)/Mobile Tester to join one of our clients, a high-tech SaaS company. 
 

The client is looking for a Sr. Penetration Tester (Android) who will be responsible for working in a dual role as part of their Development Quality Innovation (DQI) lab. First, to research new automation tools as well as take current tools and refine them to our needs. Second, act as a centralized QI group to provide quality assessment and penetration testing operations.

This duality provides a unique opportunity to explore new concepts in different technologies and perform original research in the quality and security domain.


Work Location: Mountain View, CA
Duration: 12 months contract
Pay Range: $68/hr to $78/hr

Responsibilities:
  • Develop expertise in our product solutions, deep dive into design/architecture, & execute white box and black box penetration scenarios.
  • Plan, scope, and conduct vulnerability assessment/ Penetration tests on internal/external facing public assets such as Web applications, Android platforms, Android Apps, Backend APIs, and Cloud services.
  • Research & and conduct adversary simulation for known security threats and identify novel attack vectors to test a system’s relative security readiness.
  • Conduct Threat modeling, Threat Intelligence, and scoping with stakeholders.
  • Assist in creating and maintaining internal penetration testing and practice within the QA team, managing vulnerabilities, and tracking until closure.
  • Build Test harness & required Automation suites and validate attack vectors in Threat Lab.
  • Coordinate with program management and security architects at Internal & offshore sites.
  • Stays up to date on current tools, technologies, and vulnerabilities to incorporate into testing practices.
  • Research and developing exploits for zero-day vulnerabilities.
  • Conduct penetration tests on IOT and firmware devices.
Qualifications & Experience:
  • 5+ years’ experience in Penetration testing, including 2+ years experience in Android and 1+ years experience in Web Applications.
  • A degree in Cyber Security or Security relevant disciplines is a plus.
  • Certifications in offensive security: OSCP or OSWA or OSWE or CRTO or BSCP or similar is a plus.
  • Comprehensive knowledge in Information Security practices on malware, phishing attacks, attack vectors and methods to protect against threats.
  • Extensive Knowledge in Java, python or any relevant programming language.
  • Malware development or reverse engineering experience is a plus.
  • Self-motivated individual with the ability to thrive in a team-based or independent environment.
  • Detail-oriented with strong organizational skills.
  • Ability to work in a fast-paced environment.
  • Limited supervision and the exercise of discretion.
  • Blog posts on security research, CVEs, walkthroughs, or PoCs in the security domain are a plus.
 

Thank you!

FocusKPI Hiring Team

Founded in 2010, FocusKPI, Inc. (FocusKPI) is a data science and technology firm specializing in predictive analytics practice and methodologies. FocusKPI is a US company headquartered in Silicon Valley, California, with an East Coast office in Boston, Massachusetts.

NOTICE: Please be aware of fraudulent emails regarding job postings, job offers and fake checks. FocusKPI's recruiting team will strictly reach out via @focuskpi.com email domain. If you have received fraudulent emails now or in the past, please report it to https://reportfraud.ftc.gov/ .
The domain @focuskpijobs.com is fraudulent and not related to FocusKPI. Please do not not reply or communicate to anyone with @focuskpijobs.com.

Apply now Apply later
Job stats:  2  2  0
Category: PenTesting Jobs

Tags: Analytics Android APIs Automation Black box Cloud Exploits IoT Java Malware Offensive security OSCP OSWE Pentesting POCs Python Reverse engineering SaaS Threat intelligence Vulnerabilities White box Zero-day

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.