Web Application Security Test Engineer (W2)

Addison, TX, US • Posted 4 hours ago • Updated 4 hours ago
Contract Independent
Contract W2
12 Months
No Travel Required
On-site
Depends on Experience
Company Branding Image
Fitment

Dice Job Match Score™

👤 Reviewing your profile...

Job Details

Skills

  • Identity Management
  • Authentication
  • Authorization
  • Web Application Security
  • Software Security
  • Penetration Testing
  • Black-box Testing
  • Multi-factor Authentication
  • OWASP
  • HTTPS
  • Proxies
  • PKI
  • Web Browsers

Summary

Job Title: Web Application Security Test Engineer (W2)

Locations: Seattle, WA / Addison, TX (5 days onsite)

Duration: 12+ months contract

 

Job Description:

  • This is a Web Application Security Testing role, not a penetration testing position. The focus is on candidates who have hands-on experience testing real enterprise-level web applications (such as banking platforms or other large-scale applications), rather than performing generic or exploratory penetration testing.
  • The ideal candidate must have a deep understanding of OWASP Top 10 vulnerabilities, including the ability to clearly explain the root cause of each vulnerability, how to test for it, and how to fix it.
  • Strong knowledge of SAST (Static Application Security Testing) and DAST (Dynamic Application Security Testing) is the key on this role, along with hands-on experience using tools like Burp Suite and similar security testing platforms.
  • A key requirement of the role is strong expertise in authentication and authorization testing, including areas such as login systems, password-based authentication, multi-factor authentication (MFA/OTP), biometrics, and understanding potential failure points within these flows.
  • Beyond identifying vulnerabilities, the candidate must act as a security advisor to development teams. This means not only detecting issues but also being able to explain the root cause, recommend solutions, and guide developers on how to remediate them effectively.

 

In short, they need a Web Application Security expert who can deeply understand vulnerabilities, test them in real enterprise systems, and guide developers on fixing them, not just a penetration tester.

 

  • Deep understanding of different web application technologies, web protocols (HTTP, HTTPS, etc.), browser technologies, etc.
  • In depth domain understanding of application security in terms of Identity and Access Management (IAM), different authentication technologies (passwords, biometrics, OTP, digital certificates & PKI, device authentication, FIDO U2F/Passkeys, etc.
  • Proven expertise on different security testing tools (Proxy tools like Fiddler, Black box security testing tools like Burp, Static Security Code analysis tools,
  • Deep understanding of different application security vulnerabilities such as OWASP Top 10, SANS Top 25, CWE, attack patterns (CAPEC), etc.
  • Bachelor''s Degree in Computer Science or equivalent experience.
  • Must be self-directed, able to work independently, as well as work in a team-oriented and fast paced environment

 

Best Regards,

 

Ashish Singh

Truehire Staffing,

5900, Balcones Drive Suit 100, Austin, TX, 78731

Email ID: 

Web:  

 

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 91173234
  • Position Id: 8990631
  • Posted 4 hours ago

Company Info

About TrueHire Staffing LLC

Truehire is a leading provider of Recruitment Process Outsourcing (RPO) & Staffing services, supporting organizations across various industries and sizes. The company delivers customized hiring solutions designed to streamline recruitment operations and improve the quality of talent acquisition. At Truehire, the focus is on combining advanced technology with data-driven insights to achieve superior hiring outcomes. The team comprises experienced recruiters with strong domain expertise, enabling them to understand diverse client needs and deliver the right talent quickly and efficiently. One of Truehire core strengths is its ability to offer a seamless and consistent recruitment experience, regardless of client scale or geography. By working closely with clients, Truehire builds tailored recruitment strategies that align perfectly with their business goals and unique hiring requirements.

About_Company_One
Contact the job poster
AS

Ashish Singh

Recruiter @ TrueHire Staffing LLC
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

It looks like there aren't any Similar Jobs for this job yet.

Search all similar jobs