Lead Consultant (Application Security testing- DAST)
Mampan InfraconJob Description
Lead Consultant (Application Security testing- DAST)
Wipro is looking for senior penetration tester to join our team to test and secure Wipro's internal application stack. The ideal candidate will be responsible for conducting comprehensive security assessments, including Dynamic Application Security Testing (DAST), grey box penetration testing, and both manual and automated testing methodologies. The role requires expertise in testing various platforms, including web applications, mobile applications, thick client applications, and APIs. The candidate should possess a strong understanding of security principles, vulnerabilities, and exploits, along with the ability to simulate real-world attack scenarios to identify and mitigate security risks. This position demands a proactive and analytical mindset, excellent problem-solving skills, and the ability to communicate findings effectively to stakeholders.
- Conduct comprehensive grey box penetration testing on web, APIs, mobile, and thick client applications.
- Perform in-depth manual assessments to showcase the exploitation steps of vulnerabilities to understand their impact.
- Develop and execute advanced test plans and methodologies to simulate sophisticated attack scenarios, penetration testing SOP, reports, and remediation guidance.
- Utilize and manage automated scanning tools (e.g., Burp Suite, Webinspect)
- Collaborate with development teams to remediate identified vulnerabilities and provide security recommendations.
- Review and test change requests as part of DevSecOps to ensure ongoing security compliance.
- Mentor and train junior penetration testers, sharing best practices and techniques.
- Stay updated on the latest security threats, vulnerabilities, and technology trends.
- Liaising with DevOps team and DAST tool vendor to enable integration of security testing within the CI/CD pipeline to ensure continuous security validation.
- Prepare and deliver comprehensive dashboards and presentations to technical and executive management teams.
- Bachelor’s degree in a technical field
- 8-10 years of experience in application security testing
- Should have hands-on experience in:
- Dynamic Application Security Testing (DAST)
- Grey box manual penetration testing for web, APIs, mobile, and thick client applications
- Good to have:
- experience in Static Application Security Testing (SAST)
- Utilizing automated scanners for web applications (preferably Webinspect and Macro creations in it)
- certifications such as OSCP, CEH, GPEN, CISSP, or similar preferred
Dynamic Application Security Testing (DAST)
Manual penetration Testing (Grey box)
Mobile and Thick client penetration testing
API penetration testing
Burp Suite
Postman
Automated scanning
Job role
Job requirements
About company
Similar jobs you can apply for
Field SalesYou can expect a minimum salary of 0 INR. The salary offered will depend on your skills, experience and performance in the interview.
The candidate should have completed the required education and people who have 1 to 31 years are eligible to apply for this job. You can apply for more jobs in Mumbai to get hired quickly.
The candidate should have sound communication skills and sound communication skills for this job.
Both Male and Female candidates can apply for this job.
No, it's not a work from home job and can't be done online. You can explore and apply for other work from home jobs in Mumbai at apna.
No work-related deposit needs to be made during your employment with the company.
Go to the apna app and apply for this job. Click on the apply button and call HR directly to schedule your interview.
The last date to apply for this job is . For more details, download apna app and find Full Time jobs in Mumbai . Through apna, you can find jobs in 64 cities across India. Join NOW!