logo

JobNob

Your Career. Our Passion.

Web App Pentester-2


Sony India Software Center Private Limited


Location

Bangalore | India


Job description

We look for the risk-takers , the collaborators , the inspired and the inspirational . We want the people who are brave enough to work at the cutting edge and create solutions that will enrich and improve the lives of people across the globe. So, if you want to make the world say wow, let's talk.

The conversation starts here. If this role matches your ambitions and skillset, let's get started with your application . Take a look at our other open positions too. Our many opportunities can lead to infinite possibilities .

Job description: Web Applications Pen-tester

Position Summary:

Software Architecture Division (SARD) is looking for a motivated, creative and experienced web application penetration tester.

Product security group in SARD has been providing defensive and offensive security testing services since 2012. We do security assessments for different Sony products such as PlayStation, consumer electronics (CE) and professional solutions many of each you can found on the official Sony site.

SARD primarily works on core technologies that are used in Sony products and services as part of Sony India Software Centre located in Bangalore.

We help Sony entities finding vulnerabilities before their products are released to the market by looking at them from a skilled human attacker point of view. We know how the attackers think and what tools they use. Our assessments are 90% manual, but we use different automation techniques (e.g., fuzzers) helping us to identify suspicious areas for future investigations.

We are looking for an experienced hands-on web penetration tester. In this role, the new team member will focus on testing and evaluating the security of web applications and APIs. It includes creating and executing a pen-testing plan, reporting the found vulnerabilities and providing recommendations how to fix them.

The team is also responsible for organizing the cumulated knowledge about existing vulnerabilities and potential threats on specific targets.

Tools are developed as part of the execution and automation of the research process.

Finally, the team closely collaborates with colleagues in Sony Brussels Laboratory, who have been providing a wide range of offensive security services inside Sony for the last 10 years.

In general, the following activities are expected to be executed by the new team member:

Job Start and Duration

Job start is ASAP. We are interested in both permanent and temporary contracts. For the temporary type of contract we are interested to keep the hired security researcher longer if we are happy with the performance.

Profile

The candidate needs to have the following qualifications:

Experience in the following topics is desirable:


Job tags



Salary

All rights reserved