Talent.com
Senior Web Application Penetration Tester – Cybersecurity
Senior Web Application Penetration Tester – CybersecurityMatch Point Solutions • Oakland, California, USA
Senior Web Application Penetration Tester – Cybersecurity

Senior Web Application Penetration Tester – Cybersecurity

Match Point Solutions • Oakland, California, USA
13 days ago
Job type
  • Full-time
Job description

MatchPoint Solutions is a fast-growing young energetic global IT-Engineering services company with clients across the US . We provide technology solutions to various clients like Uber Robinhood Netflix Airbnb Google Sephora and more! More recently we have expanded to working internationally in Canada China Ireland UK Brazil and India . Through our culture of innovation we inspire build and deliver business results from idea to outcome. We keep our clients on the cutting edge of the latest technologies and provide solutions by using industry-specific best practices and expertise.

We are excited to be continuously expanding our team. If you are interested in this position please send over your updated resume. We look forward to hearing from you!

Job Description

Position : Senior Web Application Penetration Tester Cybersecurity

Location : Remote - Working PST hours candidates located in PST are HIGHLY preferred

Contract : 12 months

Rate : $85 to $90 / hr on w2

  • The Senior Web Application Penetration Tester is responsible for identifying security vulnerabilities in internally developed and third-party web applications used across the Utility. This role focuses exclusively on application-layer security testing helping ensure that customer-facing and internal web applications are resilient against real-world threats. The position works closely with application development cloud and security teams to reduce risk and improve secure development practices.

Key Responsibilities

  • Web Application & API Penetration Testing
  • Conduct manual and automated penetration testing of web applications and RESTful APIs
  • Identify and exploit common and advanced web vulnerabilities (e.g. OWASP Top 10 business logic flaws)
  • Test authentication authorization session management and access controls
  • Perform API security testing including authorization bypass mass assignment and input validation flaws
  • Assess application security across development test and production environments (as authorized) Secure SDLC & Collaboration
  • Partner with application development and DevSecOps teams to integrate security testing into the SDLC
  • Provide guidance on secure coding practices and vulnerability remediation
  • Support threat modeling and design reviews for new or enhanced applications Reporting & Risk Communication
  • Produce detailed penetration test reports with clear reproduction steps and remediation recommendations
  • Communicate risk in business-appropriate language for technical and non-technical stakeholders
  • Validate remediation through follow-up testing and re-assessments Tools & Techniques
  • Use industry-standard tools such as Burp Suite OWASP ZAP Postman and custom scripts
  • Leverage manual testing techniques to identify business logic and workflow vulnerabilities
  • Stay current on emerging web application attack techniques and defenses Required Qualifications
  • 6 years of cybersecurity experience with a strong focus on web application penetration testing
  • Demonstrated experience testing modern web applications and APIs
  • Strong understanding of HTTP / S REST JSON authentication mechanisms and web architectures
  • Proficiency with tools such as Burp Suite Pro and API testing tools
  • Working knowledge of at least one scripting or programming language (e.g. Python JavaScript or PowerShell)
  • Strong written and verbal communication skills
  • Preferred Qualifications
  • Experience testing customer-facing applications in regulated environments
  • Familiarity with cloud-hosted applications and CI / CD pipelines
  • Knowledge of OWASP ASVS SAMM or similar application security standards
  • Certifications such as OSCP GWAPT OSWE or similar
  • MatchPoint Solutions provides equal employment opportunities to all employees and applicants for employment and prohibits discrimination and harassment of any type without regard to race color religion age sex national origin disability status genetics protected veteran status sexual orientation gender identity or expression or any other characteristic protected by federal state or local laws.

    This policy applies to all terms and conditions of employment including recruiting hiring placement promotion termination layoff recall transfer leaves of absence compensation and training.

    Key Skills

    Asset,Front Desk,Banking & Finance,Jboss,Accident Investigation,Chemistry

    Employment Type : Full Time

    Experience : years

    Vacancy : 1

    Create a job alert for this search

    Senior Web Application Penetration Tester Cybersecurity • Oakland, California, USA

    Similar jobs
    Senior Cybersecurity Course Creator

    Senior Cybersecurity Course Creator

    Practical DevSecOps • San Francisco, CA, United States
    Full-time
    Senior Cybersecurity Course Creator at Practical DevSecOps.Senior Cybersecurity Course Creator.Practical DevSecOps (a Hysn Technologies Inc. Our online training focuses on modern areas of cybersecur...Show more
    Last updated: 30+ days ago • Promoted
    Remote Senior Application Security Engineer - Zetachain

    Remote Senior Application Security Engineer - Zetachain

    Blockchain Works • San Francisco, CA, United States
    Remote
    Full-time
    Application Security or DevSecOps Engineer with broad set of experiences to have an early and formative impact in many areas of the ZetaChain security program. The ideal candidate will be responsibl...Show more
    Last updated: 30+ days ago • Promoted
    Senior Tester

    Senior Tester

    Steampunk.com • San Francisco, CA, United States
    Full-time
    Steampunk is looking for you to join our team as a Senior Test Engineer.You will work with our growing DevSecOps practice delivering quality assurance services to support application, cloud and dat...Show more
    Last updated: 3 days ago • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    Zip • San Francisco, CA, United States
    Full-time
    The simple task of buying software, services, or tools at work has become hopelessly complicated at even the most innovative companies in the world. Today, enterprises spend $120T+ per year globally...Show more
    Last updated: 30+ days ago • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    ZipHQ, Inc. • San Francisco, CA, United States
    Full-time
    The simple task of buying software, services, or tools at work has become hopelessly complicated at even the most innovative companies in the world. Today, enterprises spend $120T+ per year globally...Show more
    Last updated: 30+ days ago • Promoted
    Senior Application Security Engineer [Remote-US]

    Senior Application Security Engineer [Remote-US]

    Quanata • San Francisco, California, US
    Remote
    Full-time
    Job Description Job Description To help keep everyone safe, we encourage all applicants to pay close attention to protect themselves during their job search. When applying for a position online yo...Show more
    Last updated: 1 day ago • Promoted
    Cyber SDC - WAM Penetration Tester - Senior - Location OPEN

    Cyber SDC - WAM Penetration Tester - Senior - Location OPEN

    San Francisco Staffing • San Francisco, CA, United States
    Full-time
    Cybersecurity Attack And Penetration Tester.At EY, we're all in to shape your future with confidence.We'll help you succeed in a globally connected powerhouse of diverse teams and take your career ...Show more
    Last updated: 4 days ago • Promoted
    Cyber SDC - WAM Penetration Tester - Senior - Location OPEN

    Cyber SDC - WAM Penetration Tester - Senior - Location OPEN

    Ernst & Young Oman • San Francisco, California, United States
    Full-time
    At EY, we’re all in to shape your future with confidence.We’ll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...Show more
    Last updated: 17 days ago • Promoted
    Lead Penetration Tester

    Lead Penetration Tester

    Labelbox • San Francisco, CA, United States
    Full-time
    This role focuses on replicating adversary behavior, documenting findings clearly, and validating mitigation strategies.Conduct penetration tests across applications, networks, and cloud systems.Id...Show more
    Last updated: 30+ days ago • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    Kubelt • San Francisco, CA, United States
    Full-time
    World is a network of real humans, built on privacy-preserving proof-of-human technology, and powered by a globally inclusive financial network that enables the free flow of digital assets for all....Show more
    Last updated: 30+ days ago • Promoted
    Senior Penetration Tester & Security Analyst - SF Office

    Senior Penetration Tester & Security Analyst - SF Office

    Rapsys Technologies • San Francisco, CA, United States
    Full-time
    A dynamic technology firm in San Francisco is seeking an experienced Penetration Tester / Security Analyst to join their team. The candidate should have over 9 years of experience in cybersecurity a...Show more
    Last updated: 30+ days ago • Promoted
    Senior Web Application Developer

    Senior Web Application Developer

    Hp Iq • San Francisco, California, United States
    Full-time
    HP IQ is HP’s new AI innovation lab.Combining startup agility with HP’s global scale, we’re building intelligent technologies that redefine how the world works, creates, and collaborates.We’re asse...Show more
    Last updated: 17 days ago • Promoted
    Senior Web Application Developer

    Senior Web Application Developer

    PM2CM • San Francisco, California, United States
    Full-time
    Project Management to Construction Management) is a professional services company dedicated to providing Program and Project Management, Construction Management, and Project Controls services durin...Show more
    Last updated: 17 days ago • Promoted
    Senior Enterprise Security Pen Tester

    Senior Enterprise Security Pen Tester

    Salesforce • San Francisco, CA, United States
    Full-time
    A leading cloud technology company is seeking a Senior Enterprise Security Engineer to enhance enterprise security programs. Responsibilities include conducting security assessments, developing secu...Show more
    Last updated: 21 hours ago • Promoted • New!
    Senior Cybersecurity Engineer

    Senior Cybersecurity Engineer

    Waabi Innovation Inc. • San Francisco, CA, United States
    Full-time
    Overview Waabi, founded by AI pioneer and visionary Raquel Urtasun, is an AI company building the next generation of self-driving technology. With a world class team and an innovative approach that ...Show more
    Last updated: 8 days ago • Promoted
    Cyber SDC - WAM Penetration Tester - Senior - Location OPEN

    Cyber SDC - WAM Penetration Tester - Senior - Location OPEN

    EY • San Francisco, CA, United States
    Full-time
    Cyber SDC - WAM Penetration Tester - Senior.Cyber threats, social media, massive data storage, privacy requirements and continuity of the business as usual require heavy information security measur...Show more
    Last updated: 30+ days ago • Promoted
    Penetration Tester CA

    Penetration Tester CA

    SynAck Solutions Pty • San Francisco, CA, United States
    Full-time
    SynAck Solutions provides comprehensive risk management and expert advice with a highly skilled team of professionals.With careers at SynAck, you can make a real impact in a rapidly growing, cuttin...Show more
    Last updated: 8 days ago • Promoted
    Senior AppSec Engineer : Secure Web & API Platform

    Senior AppSec Engineer : Secure Web & API Platform

    Gemini Trust Company • San Francisco, CA, United States
    Full-time
    A leading crypto platform is seeking a Senior Application Security Engineer to enhance application security practices.You will collaborate with engineering teams to conduct security reviews and pro...Show more
    Last updated: 30+ days ago • Promoted