
Search by job, company or skills
Job Purpose: Responsible for following activities:
1. Web application assessment.
2. Mobile application assessment. (Android / iOS)
3. API Assessments
Key responsibilities:
· Conduct advanced penetration tests on complex web applications, including authentication mechanisms, authorization controls, business logic, and multi-tier architectures.
· Perform in-depth manual testing, supported by automated tools, to identify vulnerabilities beyond standard scanning capabilities.
· Utilize advanced attack techniques to simulate real-world cyberattacks and uncover hidden or chained vulnerabilities.
· Identify and exploit vulnerabilities such as SQL injection, cross-site scripting (XSS), cross-site request forgery (CSRF), IDOR, SSRF, and other OWASP Top 10 risks.
· Conduct API security testing (REST, SOAP), including authentication, authorization, and data validation weaknesses.
· Analyze and validate security assessment results, ensuring elimination of false positives and accurate risk prioritization.
· Develop detailed reports outlining findings, proof of concept, business impact, and actionable remediation recommendations.
· Develop or customize tools, scripts, and methodologies tailored to specific applications or environments to enhance assessment effectiveness.
Required Qualification, Skills & Experience:
• Arabic-speaking candidate required.
• 4 to 6 years of VAPT Consulting Experience
• Preferably OSCP certification
• OSWE Certification (required)
• Expertise in web application, mobile application, and API penetration testing.
Other qualifications:
· eWPTx Certification and other related penetration testing certifications
Availability:
Immediately available for a maximum of 30 days
Note:
Please note that candidates who are ready to relocate to Qatar only will be considered.
Job ID: 147375473
We don’t charge any money for job offers