Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Immediate Opening For Vapt With Kiya.ai (cmmi )

Home > IT Security

 Immediate Opening For Vapt With Kiya.ai (cmmi )

Job Description

Direct Responsibilities

- To perform Penetration testing (Gray Box and/or Black Box) for Web applications, Mobile, API, and thick client applications.

- Hands-on mobile penetration tester with strong knowledge and experience in Android and iOS application security testing (both static and dynamic), responsible for discovering, validating and reporting security issues in mobile applications.

- Perform Static analysis (SAST) and Dynamic analysis (DAST) on Android APKs and iOS IPA to identify insecure storage, hardcoded secrets, insecure configurations, runtime hooking, parameter tampering etc

- Conduct reverse engineering and protection bypass on mobile applications including decompiling /inspecting binaries, analyzing native libraries (.so/.dylib) and bypassing client-side protections (root / jailbreak detection, SSL pinning, obfuscation, tamper checks etc.) using tools like Frida, objection magisk, cydia/selio/zebra and Xposed.

- Strong research knowledge and should be updated with evolving mobile threats and industry standard (OWASP MASVS/MASTG)

- To understand the applications security requirements and identify & document the scope of the test.

- Ensure execution of the documented security scenarios for the application under test.

- Document and report all findings.

- Collaborate with the developers to help them understand the vulnerabilities reported in application.

- Escalate issues to the local management and onshore stakeholders in case it affects the testing progress.

- Ensure processes for the project is followed for the assessments.

Note:

Mandatory requirement Mobile, Web & API Penetration Testing

- Optional, experience in Source Code Assessment (SCA)/SAST.

Contributing Responsibilities

Technical & Behavioral Competencies

- Clear understanding of OWASP Top 10 - application security risks

- Tools/OS: Burp Suite, OWASP ZAP, Kali Linux, mobsf, jadx, dex2jar, adb, xcode, Frida, objection, apktool, putil, otool.

- Manual Security Testing & Analysis, Security Test Designing

- Excellent Interpersonal and presentation skills

- Strong in verbal and written communication

- Good analytical skills

- Strong Time Management

- Must be flexible, independent, self-motivated.

- Team player


Ankita Bhagat
Talent Acquisition Human Resources, Kiya.ai
Email ID: an**********t@ki*a.ai

Mobile Number : 7738314***

  • www.kiya.ai

Job Classification

Industry: IT Services & Consulting
Functional Area / Department: IT & Information Security
Role Category: IT Security
Role: IT Security - Other
Employement Type: Full time

Contact Details:

Company: Kiya.ai
Location(s): Mumbai

+ View Contactajax loader


Keyskills:   Penetration Testing Penetration Mobile Applications Vapt Web Application API

 Fraud Alert to job seekers!

₹ 5-9 Lacs P.A

Similar positions

Platform Security Engineer L3

  • NTT DATA
  • 7 - 12 years
  • Bengaluru
  • 19 days ago
₹ Not Disclosed

Middleware Lead ( Azure, Apache; Tomcat; Hybris; Iis; Weblogic; Azure)

  • Capgemini
  • 6 - 8 years
  • Mumbai
  • 23 days ago
₹ 9-12 Lacs P.A.

Infrastructure Ops Engineer Ii (iam, Azure Ad B2c)

  • NCR Corporation
  • 4 - 7 years
  • Mumbai
  • 2 mths ago
₹ Not Disclosed

ServiceNow Platform Data Security Engineering- Manager

  • Ameriprise Financial
  • 14 - 18 years
  • Noida, Gurugram
  • 6 days ago
₹ Not Disclosed

Kiya.ai

About us Website: http://www.kiya.ai Kiya.ai (Infrasoft Tech) is a leading #FinTech Digital Solutions provider for the Banking and Financial sector.                                          &nbs...