Penetration Tester consultant- (Pen Testing, API Testing, Mobile Testing)

3 Months ago • 10 Years + • Cyber Security

Job Summary

Job Description

Job Details

Overview:

We are a leading AI-driven Global Supply Chain Solutions Software Product Company and one of Glassdoor’s “Best Places To Work”.

Scope:

The role of the Penetration Tester Consultant is to work closely with information technology and development staff to help implement secure systems, tools, and processes. As a penetration tester, you will be responsible to analyse, identify & recommend specific improvement measures that help in the security posture of the organization by protecting the sensitive information.

What you’ll do:

  • Conduct manual and automated penetration testing on BY WMS products.
  • Perform Mobile and API security testing.
  • Help the product team with CodeQL configuration, source code scanning and secret scanning.
  • Understand how to identify, exploit, and remediate the OWASP Top 10, SANS 25 software flaws, and other vulnerabilities through use of tools.
  • Experience in using common penetration testing tools, Burp Suite, etc.
  • Understand and able to calculate risk for vulnerabilities using risk rating methodologies like CVSS.
  • Good in report preparation with executive summary and technical details.
  • Managing vulnerabilities found during the penetration testing activities, getting the remediation plan within timelines, and helping the team in fixing them.
  • Analyzes output from product software security scans and advises development teams on security vulnerabilities and recommends prevention/mitigation methodologies.
  • Work with development teams to ensure false positives are verified and documented.
  • Research and recommend fixes for issues/vulnerabilities identified during the penetration testing.
  • Conduct research on new vulnerabilities and threats regularly to improve oneself capabilities.
  • Maintain a professional working relationship with other departments through clear communication and project level collaborations.
  • Collaborates with information security, product development teams, customer support, and Blue Yonder customers to resolve security related issues/concerns.
  • Manages the relationship with Security Partners and vendors and coordinates external security testing.
  • Analyzes results of external testing and provides guidance to product teams on issue mitigation approaches.
  • Works with internal and external resources to resolve application security issues within prescribed time frames

What we are looking for:

  • 10+ years of web application penetration testing and API security testing
  • Knowledge on source code reviews
  • Expert knowledge of application vulnerabilities, exploits, and remediation techniques
  • Expert knowledge of OWASP TOP 10
  • Experience with current web application technology and concepts
  • Familiar with dynamic testing tools and techniques
  • Excellent communication skills

Our Values


If you want to know the heart of a company, take a look at their values. Ours unite us. They are what drive our success – and the success of our customers. Does your heart beat like ours? Find out here: Core Values

Diversity, Inclusion, Value & Equity (DIVE) is our strategy for fostering an inclusive environment we can be proud of. Check out Blue Yonder's inaugural Diversity Report which outlines our commitment to change, and our video celebrating the differences in all of us in the words of some of our associates from around the world.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.

Similar Jobs

Scopely - Principal Security Engineer

Scopely

Ireland (Hybrid)
3 Months ago
undefined - Senior Application Security Engineer

Hyderabad, Telangana, India (On-Site)
4 Months ago
Spacelabs Healthcare - Senior Cyber Security Engineer

Spacelabs Healthcare

Hyderabad, Telangana, India (On-Site)
2 Months ago
Every matrix - Application Security Engineer

Every matrix

Bucharest, Bucharest, Romania (Hybrid)
1 Month ago
Super - Software Engineering Intern - Security

Super

Toronto, Ontario, Canada (Remote)
1 Month ago
PwC - IN-Senior Associate_ Guidewire QA _TC Guidewire_ Advisory_  Kolkata

PwC

Kolkata, West Bengal, India (On-Site)
3 Months ago
ByteDance - AI Security Researcher - Security Flow

ByteDance

San Jose, California, United States (On-Site)
3 Months ago
Eleven Labs - IT Security Engineer

Eleven Labs

London, England, United Kingdom (Remote)
3 Months ago
PwC - IN-Associate–ERP Controls- ITRA– Advisory – Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
4 Months ago
PwC - Cyber Security Architect

PwC

Amsterdam, North Holland, Netherlands (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Mayhem Studios - Security Engineer-II

Mayhem Studios

Bengaluru, Karnataka, India (On-Site)
7 Months ago
Aurigo Software Technologies - Security Engineer

Aurigo Software Technologies

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
Qventus,  Inc  - QA Functional Tester

Qventus, Inc

Noida, Uttar Pradesh, India (Hybrid)
3 Months ago
Experian - Senior Penetration Tester

Experian

Hyderabad, Telangana, India (Hybrid)
4 Months ago
undefined - Senior Application Security Engineer

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Scopely - Principal Security Engineer

Scopely

Seville, Andalusia, Spain (Hybrid)
3 Months ago
Every matrix - Application Security Engineer

Every matrix

Bucharest, Bucharest, Romania (Hybrid)
1 Month ago
Scopely - Principal Security Engineer

Scopely

Barcelona, Catalonia, Spain (Hybrid)
3 Months ago
HP - Cybersecurity Engineer

HP

Bengaluru, Karnataka, India (Hybrid)
4 Months ago
PwC - Cybersecurity Threat & Vulnerability | Manager | Cyber Security | Technology Consulting

PwC

Dublin, County Dublin, Ireland (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

Wipro - Competency Lead

Wipro

Bengaluru, Karnataka, India (On-Site)
6 Months ago
Google - Senior Software Engineer, Cloud Security

Google

Bengaluru, Karnataka, India (On-Site)
1 Month ago
Luxoft - Senior PostgreSQL and Snowflake Developer

Luxoft

Bengaluru, Karnataka, India (On-Site)
2 Months ago
Gates Corporation - SPT Engineer

Gates Corporation

Chennai, Tamil Nadu, India (On-Site)
4 Months ago
Magnit - Senior HRIS Analyst

Magnit

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Luxoft - UiPath Developer

Luxoft

Bengaluru, Karnataka, India (On-Site)
2 Months ago
SpotOn - Senior Software Engineer

SpotOn

Bengaluru, Karnataka, India (On-Site)
3 Months ago
Fiddler AI - Staff Backend Engineer

Fiddler AI

Bengaluru, Karnataka, India (Hybrid)
5 Months ago
Bristol Myers Squibb - Manager, GPS Global Technical Services IT Systems (Maximo)

Bristol Myers Squibb

Hyderabad, Telangana, India (On-Site)
3 Months ago
Nagarro - Staff Engineer, Machine Learning (Generative AI & NLP)

Nagarro

Gurugram, Haryana, India (On-Site)
1 Month ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

InvenioLSI - Chief Information Security Officer

InvenioLSI

New Delhi, Delhi, India (On-Site)
1 Month ago
NTT DATA,  Inc  - Security Managed Services Engineer (L3)

NTT DATA, Inc

Chennai, Tamil Nadu, India (On-Site)
3 Months ago
Trend Micro - Automotive Research Engineer - Threat Intelligence & Content Creation (VicOne)

Trend Micro

Taipei City, Taiwan (On-Site)
4 Months ago
PwC - CD&E-Cybersecurity-ServiceNow developer - Senior Associate - Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Intel Corporation - Network Security Engineer (DevSecOps)

Intel Corporation

Hillsboro, Oregon, United States (On-Site)
3 Months ago
Postman - Senior Security Engineer, Detection & Response

Postman

Bengaluru, Karnataka, India (On-Site)
4 Months ago
NetSPI - Security Consultant (Web Application Penetration Tester)

NetSPI

Pune, Maharashtra, India (On-Site)
3 Months ago
Google - Pursuit Lead II, Google Cloud Consulting

Google

(On-Site)
1 Month ago
Tesla - Security Shift Supervisor (m/f/d) - Gigafactory Berlin-Brandenburg

Tesla

Brandenburg, Germany (On-Site)
1 Month ago
Discord - Vulnerability Management Engineer

Discord

San Francisco, California, United States (Remote)
2 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Bengaluru, Karnataka, India (On-Site)

Hyderabad, Telangana, India (On-Site)

Dallas, Texas, United States (On-Site)

Tokyo, Japan (On-Site)

Warsaw, Masovian Voivodeship, Poland (Hybrid)

Hyderabad, Telangana, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Monterrey, Nuevo Leon, Mexico (Remote)

Bengaluru, Karnataka, India (On-Site)

View All Jobs

Get notified when new jobs are added by Blue Yonder

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug