FocusKPI is looking for a
Sr. Penetration Tester (Android)/Mobile Testerto join one of our clients a hightech SaaS company.
The client is looking for a (Android) who will be responsible for working in a dual role as part of their Development Quality Innovation (DQI) lab. First to research new automation tools as well as take current tools and refine them to our needs. Second act as a centralized QI group to provide quality assessment andpenetrationtesting operations.
This duality provides a unique opportunity to explore new concepts in different technologies and perform original research in the quality and security domain.
Work Location:Mountain View CA;hybrid role (onsite 3 days a week)
Duration:12 months contract
Pay Range:$68/hr to $78/hr
Responsibilities:- Develop expertise in our product solutions deep dive into design/architecture & execute white box and black boxpenetrationscenarios.
- Plan scope and conductvulnerability assessment/ Penetration tests on internal/external facing public assets such as Web applications Android platforms Android Apps Backend APIs and Cloud services.
- Research & and conduct adversary simulation for known security threats and identify novel attack vectors to test a systems relative security readiness.
- Conduct Threat modeling Threat Intelligence and scoping with stakeholders.
- Assist in creating and maintaining internalpenetrationtesting and practice within the QA team managing vulnerabilities and tracking until closure.
- Build Test harness & required Automation suites and validate attack vectors in Threat Lab.
- Coordinate with program management and security architects at Internal & offshore sites.
- Stays up to date on current tools technologies and vulnerabilities to incorporate into testing practices.
- Research and developing exploits for zeroday vulnerabilities.
- Conductpenetration tests on IOT and firmware devices.
Qualifications & Experience:- 5 years experience in Penetration testing including 2 years experience in Android and 1 years experience in Web Applications.
- Certifications in offensive security: OSCP or OSWA or OSWE or CRTO or BSCP or similar is a plus.
- Comprehensive knowledge in Information Security practices on malware phishing attacks attack vectors and methods to protect against threats.
- Extensive Knowledge in Java python or any relevant programming language.
- Selfmotivated individual with the ability to thrive in a teambased or independent environment.
- Detailoriented with strong organizational skills.
- Ability to work in a fastpaced environment.
- Limited supervision and the exercise of discretion.
- Malware development or reverse engineering experience is a plus.
- A degree in Cyber Security or Security relevant disciplines is a plus.
- Blog posts on security research CVEs walkthroughs or PoCs in the security domain are a plus.
Thank you!
FocusKPI Hiring Team
Founded in 2010 FocusKPI Inc. (FocusKPI) is a data science and technology firm specializing in predictive analytics practice and methodologies. FocusKPI is a US company headquartered in Silicon Valley California with an East Coast office in Boston Massachusetts.
NOTICE: Please be aware of fraudulent emails regarding job postings job offers and fake checks. FocusKPIs recruiting team will strictly reach out via @focuskpi email domain. If you have received fraudulent emails now or in the past please report it to .
The domain @focuskpijobs is fraudulent and not related to FocusKPI. Please do not not reply or communicate to anyone with @focuskpijobs.
Required Experience:
Senior IC