FIND_THE_RIGHTJOB.
Karachi, Pakistan
Conduct infrastructure, network, and application-level vulnerability assessments using tools like Qualys, Burp Suite, etc.
Execute penetration testing across web applications, APIs, and infrastructure environments.
Perform and lead static (SAST) and dynamic (DAST) application security assessments.
Evaluate API endpoints for misconfigurations, security flaws, and vulnerabilities.
Perform baseline configuration reviews against standards such as CIS and STIG.
Prepare detailed technical reports on findings and communicate risks to stakeholders.
Provide technical guidance and support for remediation of identified vulnerabilities.
Collaborate with DevOps teams to embed security practices in CI/CD pipelines.
Maintain documentation for audit and regulatory compliance.
Lead internal knowledge-sharing sessions and participate in evaluating new tools.
Required Skills and Experience:
Bachelor’s degree in computer science, Information Security, IT, or related field.
5 to 6 years of experience in vulnerability management, penetration testing, and application/API security assessments.
Relevant certificates (e.g., OSCP, CEH, eWPT) are highly desirable.
Proficient with security tools like Qualys, Burp Suite, OWASP ZAP, Fortify.
Strong understanding of OWASP Top 10, secure coding principles, and API security best practices.
Basic understanding of wireless security testing is a plus.
Excellent analytical, problem-solving, and technical communication skills.
Job Type: Full-time
Work Location: On the road
Similar jobs
Standard Chartered Bank
Karachi, Pakistan
about 17 hours ago
Mashreq
Karachi, Pakistan
7 days ago
OMI Hospital
Karachi, Pakistan
7 days ago
Fiblix
Karachi, Pakistan
7 days ago
Standard Chartered
Karachi, Pakistan
7 days ago
SG Allied Businesses Ltd
Karachi, Pakistan
8 days ago
Aptech Learning, Sharah e Faisal
Karachi, Pakistan
8 days ago
© 2025 Qureos. All rights reserved.