Talent.com
Senior Application Security Analyst (Pentester)

Senior Application Security Analyst (Pentester)

NowSecureUS
11 days ago
Job type
  • Full-time
  • Quick Apply
Job description

Join Our Mission :

  • To Save the World from Unsafe Mobile Apps!
  • NowSecure is the mobile app security software company trusted by the world’s most demanding organizations and most advanced security teams.
  • As the standards-based mobile app risk management company, NowSecure protects the Mobile App Economy.
  • The world’s most demanding organizations, innovative mobile developers and advanced security, privacy, safety and compliance teams entrust NowSecure to safeguard millions of mobile app users across banking, insurance, high tech, IoT, retail, hospitality, energy and government sectors.
  • Only NowSecure delivers continuous security and compliance with the depth, speed, accuracy, and efficiency to meet modern business demands.
  • Dedicated to the open-source community and standards including OWASP,and NIAP, NowSecure is SOC 2 certified and recognized by IDC, Deloitte, Gartner and TAG Cyber . www.nowsecure.com YOUR OPPORTUNITY We’re looking for a Senior Application Security Analyst — a hands-on pentester who thrives on technical challenges, thinks creatively under pressure, and has an insatiable curiosity for how things work (and how they break).
  • If you’re the kind of person who spins up a quick Python script to automate a test, roots a phone just to see what’s inside, or finds joy in reverse engineering an app at 2 AM — you’ll fit right in.
  • In this role, you’ll hunt vulnerabilities, dissect mobile apps and APIs, and collaborate with a team of world-class testers who live and breathe offensive security.
  • You’ll also help evolve our methodologies, develop new tooling, and contribute to NowSecure’s cutting-edge research across mobile, web, and connected systems.
  • WHAT YOU’LL DO Perform hands-on penetration testing of mobile apps (iOS / Android), APIs, web apps and connected ecosystems (IoT, automotive, medical, wearable).
  • Conduct vulnerability assessments and reverse engineering using tools like Burp Suite, Frida, mitmproxy, Ghidra, Radare2, IDA, or custom scripts.
  • Create clear, actionable technical reports that communicate findings and remediation guidance to both developers and security teams.
  • Act as a trusted advisor to customers, helping them make informed, risk-based decisions about their mobile and app security posture Build or adapt custom scripts, fuzzers, or automation tools to make testing faster, smarter, and more reliable.
  • Collaborate with teammates to refine methodologies, share research, and continuously push the boundaries of mobile and web security testing.
  • Tackle complex problems with creativity; when something doesn’t work, figure out another way. “Scrappy” is a skill set here, not a slogan.
  • WHO YOU ARE  You’re a technical problem-solver who thrives on exploration and experimentation.
  • You’re comfortable diving into unfamiliar codebases, debugging network traffic, and learning new tools on the fly.
  • You’re not a button pusher; you’re the kind of tester who asks why something works (or doesn’t) and can pivot quickly when the usual tools fall short.
  • You can translate technical detail into clear communication and enjoy mentoring or collaborating with others.
  • You take ownership, seek out challenges, and are never satisfied with “good enough.” REQUIREMENTS (You must have … )  Bachelor’s degree in a technical field or 6–8 years of equivalent security experience. 2+ years of experience in penetration testing or vulnerability assessment of mobile, web, or IoT apps / devices.
  • Deep understanding of OWASP MASVS / MASTG and app security fundamentals.
  • Strong experience with intercepting and analyzing traffic using tools like Burp Suite, mitmproxy, ZAP, Charles, or Fiddler.
  • Proficiency in mobile device rooting / jailbreaking and familiarity with iOS and Android internals, or equivalent hands-on experience in web application penetration testing or firmware reverse engineering .
  • Strong scripting or development experience (e.g., Python, Java, JavaScript, Ruby, or PowerShell).
  • Solid grasp of network and web fundamentals — TCP / UDP, HTTP requests, headers, cookies, APIs, and authentication flows.
  • Excellent technical writing and documentation skills.
  • Comfort working with Linux, Windows, and macOS environments.
  • A self-starter mindset - able to work independently, manage multiple projects, and find creative solutions to tough problems.
  • A demonstrated drive to learn, experiment, and stay on the cutting edge of mobile and appsec trends.
  • DESIRED SKILLS (Stand out from the crowd…) Familiarity with DAST / SAST tools , mobile instrumentation (e.g., Frida), and dynamic analysis.
  • Professional services or consulting experience.
  • Prior security research or exploit development experience.
  • Knowledge of system / network security , authentication, and applied cryptography .
  • Familiarity with Frida , Binary Ninja , Radare2 , or IDA Pro .
  • Experience testing in AWS, Azure, or GCP environments.
  • Contributions to open-source security projects or published research.

Past public speaking experience (conferences, podcasts, etc) One or more active certifications such as :

  • Infosec Certified Mobile and Web Application Penetration Tester (CMWAPT) Offensive Security Web Expert (OSWE) Offensive Security Certified Professional (OSCP) GIAC Certified Penetration Tester (GPEN) GIAC Certified Web Application Defender (GWEB) GIAC Web Application Penetration Tester (GWAPT) INE Web Application Penetration Tester eXtreme (eWPTX) GIAC Mobile Device Security Analyst (GMOB) 8kSec Certified Mobile Security Engineer (CMSE) INE Mobile Application Penetration Tester (eMAPT) TCM-SEC Mobile Application Penetration Testing BONUS POINTS (You have our attention…) Experience with LTE / GSM protocols or 5G network analysis .
  • Prior experience using NowSecure tools .
  • Master’s degree in Computer Science, Cybersecurity, or related field .
  • WE VALUE DIVERSITY We believe that the best ideas come from teams where diverse points of view uncover new solutions to hard problems.
  • We welcome and value team members who bring diverse life experiences, educational backgrounds, cultures, and work experiences.
  • COMPENSATION & BENEFITS The salary band for this position ranges is competitive and commensurate with experience and performance.
  • This position will be eligible for a competitive annual bonus and equity package.
  • Comprehensive Medical / Dental / Vision coverage  401K Plan + Company Match  Remote work flexibility  Home Office Stipend  Paid Parental Leave  Flexible PTO Powered by JazzHR
  • Create a job alert for this search

    Senior Security Analyst • US

    Related jobs
    • Promoted
    Travel Ultrasound Tech in Bartlesville, OK

    Travel Ultrasound Tech in Bartlesville, OK

    AlliedTravelCareersBartlesville, OK, US
    Full-time +1
    AlliedTravelCareers is working with Lancesoft Inc.Ultrasound in Bartlesville, Oklahoma, 74003!.We are currently seeking qualified candidates for Sonographer. Shift 5x8 Days, 08 : 00 : 00-16 : 00 : 00, 8.Day...Show moreLast updated: 30+ days ago
    • Promoted
    Travel CT Tech in Bartlesville, OK

    Travel CT Tech in Bartlesville, OK

    AlliedTravelCareersBartlesville, OK, US
    Full-time +1
    AlliedTravelCareers is working with Lancesoft Inc.CT Tech in Bartlesville, Oklahoma, 74003!.We are currently seeking qualified candidates for CT Technologist. Shift 3 - 12HR Nights, 19 : 00 : 00-07 : 00 : 0...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Pricing Integrity Agent

    Pricing Integrity Agent

    RetailDataParsons, KS, United States
    Part-time
    The retail industry continues to see unprecedented dynamics as it pivots to a true omni-channel shopping experience.Informed retailers are succeeding, and RDSolutions is providing them with the con...Show moreLast updated: 19 hours ago
    UK Compliance Proxy Director

    UK Compliance Proxy Director

    DevFindersBrent, BEN, GB
    Part-time +1
    We invite a UK Compliance Proxy Director to assist with opening a UK bank account and maintaining corporate compliance.This part-time, non-operational role requires minimal involvement.Expect 1–2 h...Show moreLast updated: 19 days ago
    Cost Analyst Il- 7763

    Cost Analyst Il- 7763

    ICSI.Bartlesville, OK, US
    Full-time
    Quick Apply
    Cost Analyst II Position Type : W2 Contract Position Location : Bartlesville, OK Job Description / Qualifications : I n this role your responsibilities include updating cost reports semi-monthly a...Show moreLast updated: 30+ days ago
    Composite Lead Tech (PIC)

    Composite Lead Tech (PIC)

    Renewable ConceptsNeodesha, KS, US
    Full-time
    Quick Apply
    To perform the job successfully, the individual must be able to perform each essential duty satisfactorily.The composites season is short : RCL values its composite techs and will utilize our desiri...Show moreLast updated: 30+ days ago
    • Promoted
    Delivery Driver - Flexible Schedule

    Delivery Driver - Flexible Schedule

    DoorDashChelsea, OK, United States
    Full-time +1
    DoorDash is the #1 category leader in food delivery, food pickup, and convenience store delivery in the US, trusted by millions of customers every day. As a Dasher, you’ll stay busy with a variety o...Show moreLast updated: 8 days ago
    • Promoted
    Customs and Border Protection Officer

    Customs and Border Protection Officer

    U.S. Customs and Border ProtectionAltamont, KS, United States
    Full-time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show moreLast updated: 30+ days ago
    Proxy Director

    Proxy Director

    DevFindersBrent, BEN, GB
    Part-time +1
    We are seeking a UK-based Proxy Director to assist with opening a UK bank account and ensuring ongoing compliance with statutory obligations. This is a part-time, non-operational role with a minimal...Show moreLast updated: 19 days ago
    • Promoted
    Restaurant Delivery - Sign Up in Minutes

    Restaurant Delivery - Sign Up in Minutes

    DoorDashParsons, KS, United States
    Full-time +1
    DoorDash is the #1 category leader in food delivery, food pickup, and convenience store delivery in the US, trusted by millions of customers every day. As a Dasher, you’ll stay busy with a variety o...Show moreLast updated: 8 days ago
    • Promoted
    Restaurant Delivery - Sign Up and Start Earning

    Restaurant Delivery - Sign Up and Start Earning

    DoorDashChelsea, OK, United States
    Full-time +1
    DoorDash is the #1 category leader in food delivery, food pickup, and convenience store delivery in the US, trusted by millions of customers every day. As a Dasher, you’ll stay busy with a variety o...Show moreLast updated: 8 days ago
    Compliance Support Director

    Compliance Support Director

    DevFindersBrent, BEN, GB
    Full-time
    We’re looking for a UK-based individual to serve as a Compliance Support Director in a nominee capacity.The role involves providing essential support during account setup and occasional compliance ...Show moreLast updated: 16 days ago
    • Promoted
    • New!
    Business Intelligence Analyst

    Business Intelligence Analyst

    Truity Credit UnionBartlesville, OK, United States
    Full-time
    This position will provide business intelligence, reporting, and data analysis delivery to the credit union.The successful candidate will work with departments and managers throughout the credit un...Show moreLast updated: 19 hours ago
    • Promoted
    Financial Analyst

    Financial Analyst

    Strategic Business Consulting ServicesBartlesville, OK, United States
    Full-time +1
    About the job Financial Analyst.Location : Bartlesville, OK ONSITE.Comp : up to 85K based on experience.SBCS has partnered with a manufacturing company based in Bartlesville, OK, and is seeking a hig...Show moreLast updated: 30+ days ago
    NonExecutive Nominee Director

    NonExecutive Nominee Director

    DevFindersBrent, BEN, GB
    Full-time
    Join as a Non-Executive Nominee Director for a UK entity.You’ll help with initial company setup and occasional compliance requirements without any day-to-day management involvement.Review and sign ...Show moreLast updated: 16 days ago
    • Promoted
    Customs and Border Protection Officer - Experienced (GS9)

    Customs and Border Protection Officer - Experienced (GS9)

    U.S. Customs and Border ProtectionUS
    Full-time
    Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of highly trained professionals whose camaraderie, p...Show moreLast updated: 30+ days ago
    NonOperational Director

    NonOperational Director

    DevFindersBrent, BEN, GB
    Part-time +1
    We’re seeking a part-time Non-Operational Director to act in a nominee capacity.Your primary function will be to support compliance during and after bank account establishment.Reviewing and signing...Show moreLast updated: 16 days ago
    • Promoted
    • New!
    Master Data Specialist

    Master Data Specialist

    ABBBartlesville, OK, United States
    Full-time
    At ABB, we help industries outrun - leaner and cleaner.Here, progress is an expectation - for you, your team, and the world. As a global market leader, we'll give you what you need to make it happen...Show moreLast updated: 19 hours ago