Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Application Security & Penetration Testing Specialist

Diverse Lynx

ONSITE ROLE


PEN Testing


Role Summary
The Application Security & Penetration Testing Specialist will be responsible for conducting security assessments across web, mobile, thick client, and instrumented applications. The role includes vulnerability analysis, criticality-based reporting, and close collaboration with development, application, and product teams to support remediation. The position also provides platform administration and analytics support for SAST, DAST, SCA, and vulnerability management tools, along with cloud and infrastructure assistance as required.


Key Responsibilities
Instrument / Network Penetration Testing
• Conduct security testing of instrumented or connected applications, including exposed network services and interfaces
• Use Nessus / Tenable.SC for vulnerability scanning and configuration assessment
• nalyse and prioritize vulnerabilities based on criticality
• Prepare detailed vulnerability reports and support application teams during remediation


Web Application Penetration Testing
• Perform security scanning and manual penetration testing of in-scope web applications
• Identify, analyze, classify, and prioritize vulnerabilities based on agreed standards such as:
o OWASP Top 10
o CVSS / CVS
o Organization-specific security standards
• Produce criticality-based vulnerability reports with clear remediation guidance
• Provide clarification and consultation support to Application, Development, and Asset Owner teams during vulnerability remediation


Mobile Application Penetration Testing
• Conduct security testing of in-scope mobile applications (Android/iOS)
• nalyze identified vulnerabilities and prioritize them based on severity and business risk
• Generate criticality-based reports for stakeholders
• Support application teams with remediation-related clarifications


Thick Client Penetration Testing
• Perform security assessments of thick client applications
• nalyze vulnerabilities related to client-server communication, authentication, authorization, and data protection
• Prioritize findings and prepare severity-based reports
• Provide consultation support to development and application teams


Additional Security Platform & Tooling Support SAST (Static Application Security Testing)
• Provide operational and administrative support for:
o Coverity on Polaris
o Polaris
o GitHub Application Security
• Manage user access, configurations, and scan operations
• Import SAST data into Power BI for:
o Security trend analysis
o Risk dashboards
• Generate management and operational reports from Power BI


DAST (Dynamic Application Security Testing)
• Provide support for WhiteHat DAST tool operations
• dminister tool configurations and access
• Import scan data into Power BI for analytics and reporting
• Generate vulnerability trend and compliance reports


SCA (Software Composition Analysis)
• Provide support for Black Duck SCA
• dminister tool usage, scan scheduling, and configurations
• Import vulnerability and license risk data into Power BI
• Generate trend, risk, and compliance reports


Vulnerability Management (Tenable)
• Provide support for Tenable.SC / Nessus
• Run vulnerability scans for product teams as required
• Provide tool administration, configuration, and access management
• Import scan data into Power BI
• Generate vulnerability posture and trend reports


Required Skills & Competencies
Technical Skills
• Strong knowledge of:
o Web, Mobile, Thick Client, and Network Security
o OWASP Top 10, CVSS, secure coding concepts
• Hands-on experience with:
o Nessus / Tenable.SC
o WhiteHat DAST
o Black Duck SCA
o Coverity / Polaris / GitHub Security
o Power BI (data import, analysis, dashboard creation)
• Understanding of AWS Cloud, containers, and infrastructure security
• Exposure to Jira administration
Soft Skills
• Strong analytical and problem-solving skills
• bility to communicate security risks clearly to technical and non-technical stakeholders
• Collaborative mindset with application, development, and product teams
• Good documentation and reporting skills


Preferred Qualifications
• Certifications such as:
o CEH, OSCP, GWAPT, AWS Security Specialty (preferred)
• Experience in regulated or enterprise environments
• Familiarity with DevSecOps practices and CI/CD security integration

Diverse Lynx LLC is an Equal Employment Opportunity employer. All qualified applicants will receive due consideration for employment without any discrimination. All applicants will be evaluated solely on the basis of their ability, competence and their proven capability to perform the functions outlined in the corresponding role. We promote and support a diverse workforce across all levels in the company.
Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Application Security & Penetration Testing Specialist in Santa Clara, CA vacancy
  • Detailed Job Description: Web application security testing. Good knowledge of Secure code Analysis and Web penetration testing. Good experience in HP Fortify and WebInspect tool. Top 3 responsibilities you would expect the Subcon to shoulder and execute: Client facing... 
    Application

    Tekskills inc

    Sunnyvale, CA
    3 days ago
  • $200k - $280k

     ...Senior Manager - Network and Information Security Emeryville or Santa Clara,...  ...operations, IoT devices, and enterprise applications. Lead routing and switching design...  ...Oversee vulnerability assessments and penetration test scoping; ensure timely remediation and... 
    Application
    Contract work

    Atomic Machines

    Santa Clara, CA
    2 days ago
  •  ...stop breaches, and we've redefined modern security with the world's most advanced AI-native...  ...large enterprisesDevelop scripting and application solutions using Falcon APIs to enhance...  ...periodically undergo and pass alcohol and/or drug test(s) during the course of employment.... 
    Application
    Work at office
    Local area
    Remote work

    CrowdStrike

    Sunnyvale, CA
    5 days ago
  •  ...Contractor-Staff Security Engineer As a Staff Security Engineer...  ...to determine and implement application/network security requirements...  ...product development, testing, and implementation. Continuous...  ...security technology research, penetration testing, and vulnerability... 
    Application
    For contractors
    Work at office
    Flexible hours

    Netpace

    Santa Clara, CA
    2 days ago
  • $231.1k - $346.7k

     ...company in the rapidly evolving physical security and video analytics market....  ...launches, market expansion, and vertical penetration Own pipeline generation strategy and...  ...disability and need an accommodation during the application/hiring process, rest assured that... 
    Application
    Work experience placement
    Work at office

    Qualcomm

    Santa Clara, CA
    2 days ago
  •  ...Application Security Sonsoft, Inc. is a USA based corporation duly organized under the laws of the Commonwealth of Georgia. Sonsoft...  ...CodeSecure Skills. Knowledge of source code analysis and Penetration testing. Knowledge of Traffic intercepting tools like... 
    Application
    Permanent employment
    Full time
    H1b

    SonSoft

    Sunnyvale, CA
    2 days ago
  • A leading tech firm in Sunnyvale is looking for a skilled professional in web application security testing. You will be responsible for conducting security tests, analyzing results, and coordinating with clients onsite. The ideal candidate has a solid understanding of... 
    Application

    Tekskills inc

    Sunnyvale, CA
    5 days ago
  • $160k - $220k

     ...intersection of networking and security. At Fortinet, our mission is...  ...privacy of our AI-driven applications while collaborating with cross...  ...to automate security testing and ensure consistent application...  ...experience in manual application penetration testing ~ Proven... 
    Application
    Full time
    Work experience placement

    Fortinet

    Sunnyvale, CA
    1 day ago
  •  ...Team is responsible for the security lifecycle of medical devices...  ...management of complex medical device applications and systems. The candidate...  ...product cybersecurity testing and remediation as a...  ...Vulnerability Assessment & Penetration Testing (10%) Support development... 
    Application
    Local area
    Worldwide
    Flexible hours

    Intuitive

    Sunnyvale, CA
    5 days ago
  •  ...Job requirements IT Security Analyst Cloud Security Analyst...  ...Hands on experience on security testing tools such as Burp Suite...  ...security posture of systems and applications through vulnerability assessments and penetration testing Good understanding... 
    Application
    Work at office
    Remote work
    Weekend work
    Afternoon shift

    Futran Tech Solutions Pvt. Ltd.

    Santa Clara, CA
    2 days ago
  •  ...Security Administrator Ability to lift 30 pounds • Must possess a CompTIA Security+ or equivalent DoD 8572 qualified certificate...  ...associated hardware • Successfully install/configure software applications and programs • Managing servers in a disconnected environment... 
    Application

    PLANIT Group

    Sunnyvale, CA
    5 days ago
  •  ...are actively seeking Senior Cloud / SAAS Security Engineer for one of our client, Please...  ...engineering, with a focus on cloud-native application development, at large organizations or...  ...abilities. Isolate issues found during testing and verify bug fixes once they are resolved... 
    Application

    Rootshell Enterprise Technologies

    Santa Clara, CA
    1 day ago
  •  ...have extensive experience in MicroStrategy and Security Administration, capable of managing a large...  ...life cycle, including analysis, design, construction, and testing, offering a chance to be part of innovative client-server application projects. #J-18808-Ljbffr E*Pro Inc
    Application

    E*Pro Inc

    Santa Clara, CA
    5 days ago
  • $120.2k - $155.5k

     ...opportunity for an intermediate SRE Specialist to join our MIS operation...  .... Service Reliability and Security is our top priority. This is...  ..., storage, VMs, containers, applications, and network components to...  ..., automating the build, testing, and deployment of the Internet... 
    Application
    Full time

    Fortinet, Inc.

    Sunnyvale, CA
    2 days ago
  • $23 - $29 per hour

    Information Security Analyst I - Santa Clara, CA WhiteDog is seeking an Information Security...  ...to Windows, Linux, Unix. Knowledge of applications, databases, middleware to address...  ...Certified Ethical Hacker (CEH) Certified Penetration Tester (CWAPT) CompTIA Network+... 
    Application
    Hourly pay
    Full time
    Work at office
    Remote work

    WhiteDog, Inc.

    Santa Clara, CA
    1 day ago
  •  ...Description Staff Product Security Engineer At Intuitive, we...  ...requirements, design, build, test, production, operations, and...  ...product security to meet all applicable certification and customer requirements...  ...in-house and third-party penetration testing activities.... 
    Application
    Local area
    Worldwide
    Flexible hours

    Intuitive

    Sunnyvale, CA
    5 days ago
  • $162.7k - $263.18k

     ...integrated, AI‑based, continuous security platform. Cortex is a significant evolution of the Application Framework designed to simplify...  ...and robust vulnerability tests, and building and maintaining...  ...methodologies. Familiarity with current penetration and security assessment tools... 
    Application
    Work at office
    Visa sponsorship
    Work visa

    Palo Alto Networks, Inc.

    Santa Clara, CA
    1 day ago
  • $122.65k - $283.91k

     ...Integration Design role-based security: field-level masking,...  ...decisions Ensure 85%+ unit test coverage, validate CPQ configuration...  ...Salesforce Certified CPQ Specialist (required) Platform App Builder...  ..., data centers and application services. our consulting and... 
    Application
    Work at office
    Remote work
    Monday to Friday
    Flexible hours
    Shift work
    Weekend work

    NTT Data Americas, Inc.

    Santa Clara, CA
    1 day ago
  •  ...Mobile Security Developer/ Architect San Jose-CA - Hybrid 1 year + contract...  ...- Excellent knowledge of OWASP Mobile Application Security (MAS), cryptographic Algorithms...  ...and frameworks (developing, debugging, testing and deploying). - A background in... 
    Application
    Contract work
    Work experience placement

    3B Staffing LLC

    Santa Clara, CA
    2 days ago
  •  ...responsibility of the Information Technology (IT) Security Analyst is to assure the secure...  ..., network, access control, systems, applications, and systems development security....  ...vulnerability management and conduct penetration testing. Train Team Members on basic security... 
    Application
    Flexible hours
    Night shift
    Weekend work

    Infor

    Palo Alto, CA
    1 day ago
  • $157.3k - $212.8k

     ...faster, data-driven decisions while maintaining enterprise-grade security and governance. From natural language interactions with...  ...Mathematics (STEM) - Knowledge of machine learning concepts and their application to reasoning and problem-solving - Experience in a ML or... 
    Application
    Work at office
    Local area
    Flexible hours

    Amazon

    Santa Clara, CA
    1 day ago
  • $110k - $134k

     ...cybersecurity and redefine the intersection of networking and security. At Fortinet, our mission is to safeguard people, devices, and...  ...entire digital attack surface, securing critical devices, data, applications, and connections from the data center to the cloud to the home... 
    Application
    Full time
    Work experience placement
    Worldwide
    Home office
    Night shift
    Weekend work

    Fortinet

    Sunnyvale, CA
    1 day ago
  • $120k - $145k

     ...Optimize performance across the full stack - from kernel tuning to application-level improvements Required Qualifications 7+ years of SRE/...  ...FortiMonitor or similar monitoring platforms (Prometheus) Security certifications or demonstrated security expertise Technical... 
    Application
    Full time

    Fortinet, Inc.

    Sunnyvale, CA
    3 days ago
  • $231.5k - $298k

     ...Netskope to redefine Cloud, Network and Data Security. Since 2012, we have built the...  ...POCs, demos, solution validations and testing Manage all aspects of our Innovation...  ...AD is desired ~ Knowledge of web application programming XML, REST/SOAP API's, REST,... 
    Application
    Work at office

    Netskope

    Santa Clara, CA
    2 days ago
  • $113.4k - $252k

     ...The Senior Product Security Engineer will be responsible for securing Navan products...  ...early in the SDLC and developing application security tooling & processes to promote...  ...performing application, cloud and mobile penetration testing in high risk environments like financial... 
    Application
    Shift work

    Navan

    Palo Alto, CA
    1 day ago
  • $167.6k - $271.15k

     ...Job Summary The Offensive Security team is seeking a Principal...  ...support the team responsible for testing the security of all the...  ...of on-demand and continuous penetration testing engagements involving...  ...portfolio of cloud-native applications, large-scale infrastructure,... 
    Application
    Full time
    Work at office
    Visa sponsorship
    Work visa

    Palo Alto Networks

    Santa Clara, CA
    2 days ago
  • $104.7k - $178k

     ...Veza is the pioneer in identity security, purpose-built to answer the fundamental question enterprises face: who can and should take...  ...and agentic identities across SaaS, cloud, on-prem, and custom applications. ( With over 30 billion access permissions under management, global... 
    Application
    Work at office
    Remote work
    Flexible hours

    ServiceNow

    Santa Clara, CA
    5 days ago
  •  ...Software Development Engineer Plans, designs, develops and tests software systems or applications for software enhancements and new products....  ...deliverables. Implementing software solutions that ensure security, integrity, scalability and consistency of critical user... 
    Application
    Shift work

    ClifyX

    Santa Clara, CA
    2 days ago
  • $140k - $215k

     ...stop breaches, and we've redefined modern security with the world's most advanced AI-native...  ...across engineering teams to drive testing best practices Deliver with velocity...  ...build high-performance, single-page web applications in JavaScript (Ember.js) that visualize... 
    Application
    Work experience placement
    Work at office
    Local area
    Worldwide
    2 days per week
    3 days per week

    CrowdStrike

    Sunnyvale, CA
    18 hours ago
  •  ...outstanding results. Career Guidant proven and tested methodologies ensures client...  ...Knowledge of source code analysis and Penetration testing. Knowledge of Traffic intercepting...  ...least 7 years of experience with IT Application Security skills. #J-18808-Ljbffr Career... 
    Application

    Career Guidant Inc.

    Sunnyvale, CA
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Application Security & Penetration Testing Specialist. Be the first to apply!