Application Security & Penetration Testing Specialist
Diverse Lynx
ONSITE ROLE
PEN Testing
Role Summary
The Application Security & Penetration Testing Specialist will be responsible for conducting security assessments across web, mobile, thick client, and instrumented applications. The role includes vulnerability analysis, criticality-based reporting, and close collaboration with development, application, and product teams to support remediation. The position also provides platform administration and analytics support for SAST, DAST, SCA, and vulnerability management tools, along with cloud and infrastructure assistance as required.
Key Responsibilities
Instrument / Network Penetration Testing
• Conduct security testing of instrumented or connected applications, including exposed network services and interfaces
• Use Nessus / Tenable.SC for vulnerability scanning and configuration assessment
• nalyse and prioritize vulnerabilities based on criticality
• Prepare detailed vulnerability reports and support application teams during remediation
Web Application Penetration Testing
• Perform security scanning and manual penetration testing of in-scope web applications
• Identify, analyze, classify, and prioritize vulnerabilities based on agreed standards such as:
o OWASP Top 10
o CVSS / CVS
o Organization-specific security standards
• Produce criticality-based vulnerability reports with clear remediation guidance
• Provide clarification and consultation support to Application, Development, and Asset Owner teams during vulnerability remediation
Mobile Application Penetration Testing
• Conduct security testing of in-scope mobile applications (Android/iOS)
• nalyze identified vulnerabilities and prioritize them based on severity and business risk
• Generate criticality-based reports for stakeholders
• Support application teams with remediation-related clarifications
Thick Client Penetration Testing
• Perform security assessments of thick client applications
• nalyze vulnerabilities related to client-server communication, authentication, authorization, and data protection
• Prioritize findings and prepare severity-based reports
• Provide consultation support to development and application teams
Additional Security Platform & Tooling Support SAST (Static Application Security Testing)
• Provide operational and administrative support for:
o Coverity on Polaris
o Polaris
o GitHub Application Security
• Manage user access, configurations, and scan operations
• Import SAST data into Power BI for:
o Security trend analysis
o Risk dashboards
• Generate management and operational reports from Power BI
DAST (Dynamic Application Security Testing)
• Provide support for WhiteHat DAST tool operations
• dminister tool configurations and access
• Import scan data into Power BI for analytics and reporting
• Generate vulnerability trend and compliance reports
SCA (Software Composition Analysis)
• Provide support for Black Duck SCA
• dminister tool usage, scan scheduling, and configurations
• Import vulnerability and license risk data into Power BI
• Generate trend, risk, and compliance reports
Vulnerability Management (Tenable)
• Provide support for Tenable.SC / Nessus
• Run vulnerability scans for product teams as required
• Provide tool administration, configuration, and access management
• Import scan data into Power BI
• Generate vulnerability posture and trend reports
Required Skills & Competencies
Technical Skills
• Strong knowledge of:
o Web, Mobile, Thick Client, and Network Security
o OWASP Top 10, CVSS, secure coding concepts
• Hands-on experience with:
o Nessus / Tenable.SC
o WhiteHat DAST
o Black Duck SCA
o Coverity / Polaris / GitHub Security
o Power BI (data import, analysis, dashboard creation)
• Understanding of AWS Cloud, containers, and infrastructure security
• Exposure to Jira administration
Soft Skills
• Strong analytical and problem-solving skills
• bility to communicate security risks clearly to technical and non-technical stakeholders
• Collaborative mindset with application, development, and product teams
• Good documentation and reporting skills
Preferred Qualifications
• Certifications such as:
o CEH, OSCP, GWAPT, AWS Security Specialty (preferred)
• Experience in regulated or enterprise environments
• Familiarity with DevSecOps practices and CI/CD security integration
- Detailed Job Description: Web application security testing. Good knowledge of Secure code Analysis and Web penetration testing. Good experience in HP Fortify and WebInspect tool. Top 3 responsibilities you would expect the Subcon to shoulder and execute: Client facing...Application
$200k - $280k
...Senior Manager - Network and Information Security Emeryville or Santa Clara,... ...operations, IoT devices, and enterprise applications. Lead routing and switching design... ...Oversee vulnerability assessments and penetration test scoping; ensure timely remediation and...ApplicationContract work- ...stop breaches, and we've redefined modern security with the world's most advanced AI-native... ...large enterprisesDevelop scripting and application solutions using Falcon APIs to enhance... ...periodically undergo and pass alcohol and/or drug test(s) during the course of employment....ApplicationWork at officeLocal areaRemote work
- ...Contractor-Staff Security Engineer As a Staff Security Engineer... ...to determine and implement application/network security requirements... ...product development, testing, and implementation. Continuous... ...security technology research, penetration testing, and vulnerability...ApplicationFor contractorsWork at officeFlexible hours
$231.1k - $346.7k
...company in the rapidly evolving physical security and video analytics market.... ...launches, market expansion, and vertical penetration Own pipeline generation strategy and... ...disability and need an accommodation during the application/hiring process, rest assured that...ApplicationWork experience placementWork at office- ...Application Security Sonsoft, Inc. is a USA based corporation duly organized under the laws of the Commonwealth of Georgia. Sonsoft... ...CodeSecure Skills. Knowledge of source code analysis and Penetration testing. Knowledge of Traffic intercepting tools like...ApplicationPermanent employmentFull timeH1b
- A leading tech firm in Sunnyvale is looking for a skilled professional in web application security testing. You will be responsible for conducting security tests, analyzing results, and coordinating with clients onsite. The ideal candidate has a solid understanding of...Application
$160k - $220k
...intersection of networking and security. At Fortinet, our mission is... ...privacy of our AI-driven applications while collaborating with cross... ...to automate security testing and ensure consistent application... ...experience in manual application penetration testing ~ Proven...ApplicationFull timeWork experience placement- ...Team is responsible for the security lifecycle of medical devices... ...management of complex medical device applications and systems. The candidate... ...product cybersecurity testing and remediation as a... ...Vulnerability Assessment & Penetration Testing (10%) Support development...ApplicationLocal areaWorldwideFlexible hours
- ...Job requirements IT Security Analyst Cloud Security Analyst... ...Hands on experience on security testing tools such as Burp Suite... ...security posture of systems and applications through vulnerability assessments and penetration testing Good understanding...ApplicationWork at officeRemote workWeekend workAfternoon shift
- ...Security Administrator Ability to lift 30 pounds • Must possess a CompTIA Security+ or equivalent DoD 8572 qualified certificate... ...associated hardware • Successfully install/configure software applications and programs • Managing servers in a disconnected environment...Application
- ...are actively seeking Senior Cloud / SAAS Security Engineer for one of our client, Please... ...engineering, with a focus on cloud-native application development, at large organizations or... ...abilities. Isolate issues found during testing and verify bug fixes once they are resolved...Application
- ...have extensive experience in MicroStrategy and Security Administration, capable of managing a large... ...life cycle, including analysis, design, construction, and testing, offering a chance to be part of innovative client-server application projects. #J-18808-Ljbffr E*Pro IncApplication
$120.2k - $155.5k
...opportunity for an intermediate SRE Specialist to join our MIS operation... .... Service Reliability and Security is our top priority. This is... ..., storage, VMs, containers, applications, and network components to... ..., automating the build, testing, and deployment of the Internet...ApplicationFull time$23 - $29 per hour
Information Security Analyst I - Santa Clara, CA WhiteDog is seeking an Information Security... ...to Windows, Linux, Unix. Knowledge of applications, databases, middleware to address... ...Certified Ethical Hacker (CEH) Certified Penetration Tester (CWAPT) CompTIA Network+...ApplicationHourly payFull timeWork at officeRemote work- ...Description Staff Product Security Engineer At Intuitive, we... ...requirements, design, build, test, production, operations, and... ...product security to meet all applicable certification and customer requirements... ...in-house and third-party penetration testing activities....ApplicationLocal areaWorldwideFlexible hours
$162.7k - $263.18k
...integrated, AI‑based, continuous security platform. Cortex is a significant evolution of the Application Framework designed to simplify... ...and robust vulnerability tests, and building and maintaining... ...methodologies. Familiarity with current penetration and security assessment tools...ApplicationWork at officeVisa sponsorshipWork visa$122.65k - $283.91k
...Integration Design role-based security: field-level masking,... ...decisions Ensure 85%+ unit test coverage, validate CPQ configuration... ...Salesforce Certified CPQ Specialist (required) Platform App Builder... ..., data centers and application services. our consulting and...ApplicationWork at officeRemote workMonday to FridayFlexible hoursShift workWeekend work- ...Mobile Security Developer/ Architect San Jose-CA - Hybrid 1 year + contract... ...- Excellent knowledge of OWASP Mobile Application Security (MAS), cryptographic Algorithms... ...and frameworks (developing, debugging, testing and deploying). - A background in...ApplicationContract workWork experience placement
- ...responsibility of the Information Technology (IT) Security Analyst is to assure the secure... ..., network, access control, systems, applications, and systems development security.... ...vulnerability management and conduct penetration testing. Train Team Members on basic security...ApplicationFlexible hoursNight shiftWeekend work
$157.3k - $212.8k
...faster, data-driven decisions while maintaining enterprise-grade security and governance. From natural language interactions with... ...Mathematics (STEM) - Knowledge of machine learning concepts and their application to reasoning and problem-solving - Experience in a ML or...ApplicationWork at officeLocal areaFlexible hours$110k - $134k
...cybersecurity and redefine the intersection of networking and security. At Fortinet, our mission is to safeguard people, devices, and... ...entire digital attack surface, securing critical devices, data, applications, and connections from the data center to the cloud to the home...ApplicationFull timeWork experience placementWorldwideHome officeNight shiftWeekend work$120k - $145k
...Optimize performance across the full stack - from kernel tuning to application-level improvements Required Qualifications 7+ years of SRE/... ...FortiMonitor or similar monitoring platforms (Prometheus) Security certifications or demonstrated security expertise Technical...ApplicationFull time$231.5k - $298k
...Netskope to redefine Cloud, Network and Data Security. Since 2012, we have built the... ...POCs, demos, solution validations and testing Manage all aspects of our Innovation... ...AD is desired ~ Knowledge of web application programming XML, REST/SOAP API's, REST,...ApplicationWork at office$113.4k - $252k
...The Senior Product Security Engineer will be responsible for securing Navan products... ...early in the SDLC and developing application security tooling & processes to promote... ...performing application, cloud and mobile penetration testing in high risk environments like financial...ApplicationShift work$167.6k - $271.15k
...Job Summary The Offensive Security team is seeking a Principal... ...support the team responsible for testing the security of all the... ...of on-demand and continuous penetration testing engagements involving... ...portfolio of cloud-native applications, large-scale infrastructure,...ApplicationFull timeWork at officeVisa sponsorshipWork visa$104.7k - $178k
...Veza is the pioneer in identity security, purpose-built to answer the fundamental question enterprises face: who can and should take... ...and agentic identities across SaaS, cloud, on-prem, and custom applications. ( With over 30 billion access permissions under management, global...ApplicationWork at officeRemote workFlexible hours- ...Software Development Engineer Plans, designs, develops and tests software systems or applications for software enhancements and new products.... ...deliverables. Implementing software solutions that ensure security, integrity, scalability and consistency of critical user...ApplicationShift work
$140k - $215k
...stop breaches, and we've redefined modern security with the world's most advanced AI-native... ...across engineering teams to drive testing best practices Deliver with velocity... ...build high-performance, single-page web applications in JavaScript (Ember.js) that visualize...ApplicationWork experience placementWork at officeLocal areaWorldwide2 days per week3 days per week- ...outstanding results. Career Guidant proven and tested methodologies ensures client... ...Knowledge of source code analysis and Penetration testing. Knowledge of Traffic intercepting... ...least 7 years of experience with IT Application Security skills. #J-18808-Ljbffr Career...Application
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Application Security & Penetration Testing Specialist. Be the first to apply!
- accounts receivable cash application specialist Santa Clara, CA
- network security analyst Santa Clara, CA
- security advisor Santa Clara, CA
- information security compliance analyst Santa Clara, CA
- security consultant Santa Clara, CA
- security analyst intern Santa Clara, CA
- entry level information security analyst Santa Clara, CA
- security analyst remote Santa Clara, CA
- network security consultant Santa Clara, CA
- entry level security analyst Santa Clara, CA

