Senior Penetration Tester (Web/Mobile applications) Job at Accord Technologies Inc., Minnesota

SjZsNE1ZK1hWQmMwUllPcVdyT0xCQ1psTVE9PQ==
  • Accord Technologies Inc.
  • Minnesota

Job Description

Role: Senior Penetration Tester

Location: Minnetonka, MN (Hybrid- 3 Days a week)

Contract Duration: 12+ Months

Nbr of openings: 10

Position type : Contract

Mandatory: OWASP Top 10, NIST, and secure SDLC, DAST and SAST tools-Burp Suite, Metasploit, Acunetix, ZAP, Checkmarx, AppScan), Python, Java, PHP, Perl, Objective-C,SSL/TLS, TCP/IP, ACLs, routing, load balancing, LAMP, LEMP, and MEAN stack, AWS,Azure,
Certification is mandatory in
OSCP / OSWA / CEH or SANS (GWAPT, GPEN, GWEB)





Key Responsibilities

  • Perform manual and automated penetration testing of web and mobile applications.
  • Lead security assessments using DAST and SAST tools (e.g., Burp Suite, ZAP, Checkmarx, AppScan, WebInspect, Acunetix ).
  • Evaluate and secure cloud environments ( AWS and Azure ) including EC2, S3, RDS, VNets, and Azure DevOps pipelines.
  • Conduct API security reviews, enforce secure coding practices, and validate implementations against best practices.
  • Perform code reviews in Python, Java, PHP, Perl, and Objective-C to identify vulnerabilities.
  • Provide architecture-level feedback on SSL/TLS, networking, load balancing, and ACL configurations.
  • Develop and maintain Application Security Programs with a focus on CI/CD integration and secure SDLC.
  • Lead scoping calls with stakeholders, define testing approaches, and present findings/reports.
  • Actively research emerging exploits and contribute to vulnerability discovery (e.g., CTF, Hack the Box).
  • Collaborate with engineering and product teams to ensure remediation strategies are adopted.

Required Skills

  • 10+ Years of experience.
  • Strong knowledge of OWASP Top 10, NIST, and secure SDLC.
  • Proficiency in penetration testing tools: Burp Suite, Metasploit, ZAP, Checkmarx, AppScan.
  • Hands-on cloud security expertise in AWS (EC2, S3, RDS, KMS) and Azure security architecture.
  • Strong programming background in Python, Java, PHP, Perl, Objective-C for code review and exploit development.
  • In-depth knowledge of network security concepts: SSL/TLS, TCP/IP, ACLs, routing, load balancing.
  • Familiarity with LAMP, LEMP, and MEAN stacks from a security perspective.
  • Excellent communication skills for both technical and business stakeholders.

Required Certifications

  • OSCP / OSWA / CEH, or SANS (GWAPT, GPEN, GWEB)

Job Tags

Full time, Contract work, Part time, Internship, Seasonal work, 3 days per week,

Similar Jobs

Albertsons

Night Crew Stocker Job at Albertsons

 ...District of Columbia with 24 banners including Albertsons, Safeway, Vons, Jewel-Osco, Shaw's, Acme, Tom Thumb, Randalls, United Supermarkets, Pavilions, Star Market, Haggen, Carrs, Kings Food Markets and Balducci's Food Lovers Market. The Company is committed to helping... 

Domino's Franchise

Pizza Maker - 343 W Granada Blvd Job at Domino's Franchise

Job Description Looking for applicants with personality and people skills to work as Pizza Makers. You must be at least 16 years old. Experience a plus, but you will receive on-the-job training. Advancement opportunities are available to qualified, dedicated...

Always Best Care Senior Services - Atlanta/Buckhead

Part-Time Male Caregiver 16 Hours a Week Lithonia Job at Always Best Care Senior Services - Atlanta/Buckhead

Part-Time Male Caregiver - 16 Flexible Hours a Week in Lithonia Help a local client while enjoying a schedule that fits your life. Always Best Care is hiring a male caregiver to provide reliable, compassionate in-home support in the Lithonia area.This is... 

Aramark

Food Safety Manager I Job at Aramark

 ...Enter here The Food & Occupational Safety Manager at the Georgetown University Aramark account will coordinate effortstargeting a holistic approach to assist the organization with implementation of safety and risk programs, processes,and procedures to protect people... 

MCPC

Onsite Desktop Support Technician Job at MCPC

 ...Job Title: IT Support Technician Onsite Location: Butler, Indiana (Client Site) Company: MCPC Schedule: Monday to Friday, 8:30 AM 5:00 PM Employment Type: contract through end of year Overview: MCPC is seeking a dedicated and customer-focused IT Support...