Information Security Analyst - I
RemoteIndia or France
Job Summary
Conduct vulnerability assessments and penetration testing on web apps, mobile apps, cloud infrastructure, SaaS applications, network devices, and open-source projects. Develop and test rule sets for the DAST scanner while maintaining the vulnerability management system. Interact with clients over remediation calls and facilitate their process for fixing vulnerabilities. Requires CEH, OSCP, or CREST certification, 1-3 years of pentesting experience across multiple assets, customer-facing communication skills, and coding proficiency. This role supports Astra's mission to help CTOs and CISOs fix vulnerabilities in record time through continuous scanning and DevSecOps integrations.
Required Qualifications
- CEH or OSCP or CREST certified
- 1-3 years of experience in doing pentests on multiple assets including web apps, cloud infrastructure etc.
- Comfortable in Black Box/WhiteBox testing with capability of finding business logic vulnerabilities
- Experience directly interfacing with customers over calls & emails
- Able to write & understand code in any one programming language
Desired Qualifications
- A few published CVE's
- Good bug bounty/CTF experience
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.