Web Application Security Test Engineer (W2)


TrueHire Staffing LLC
Dice Job Match Score™
👤 Reviewing your profile...
Job Details
Skills
- Identity Management
- Authentication
- Authorization
- Web Application Security
- Software Security
- Penetration Testing
- Black-box Testing
- Multi-factor Authentication
- OWASP
- HTTPS
- Proxies
- PKI
- Web Browsers
Summary
Job Title: Web Application Security Test Engineer (W2)
Locations: Seattle, WA / Addison, TX (5 days onsite)
Duration: 12+ months contract
Job Description:
- This is a Web Application Security Testing role, not a penetration testing position. The focus is on candidates who have hands-on experience testing real enterprise-level web applications (such as banking platforms or other large-scale applications), rather than performing generic or exploratory penetration testing.
- The ideal candidate must have a deep understanding of OWASP Top 10 vulnerabilities, including the ability to clearly explain the root cause of each vulnerability, how to test for it, and how to fix it.
- Strong knowledge of SAST (Static Application Security Testing) and DAST (Dynamic Application Security Testing) is the key on this role, along with hands-on experience using tools like Burp Suite and similar security testing platforms.
- A key requirement of the role is strong expertise in authentication and authorization testing, including areas such as login systems, password-based authentication, multi-factor authentication (MFA/OTP), biometrics, and understanding potential failure points within these flows.
- Beyond identifying vulnerabilities, the candidate must act as a security advisor to development teams. This means not only detecting issues but also being able to explain the root cause, recommend solutions, and guide developers on how to remediate them effectively.
In short, they need a Web Application Security expert who can deeply understand vulnerabilities, test them in real enterprise systems, and guide developers on fixing them, not just a penetration tester.
- Deep understanding of different web application technologies, web protocols (HTTP, HTTPS, etc.), browser technologies, etc.
- In depth domain understanding of application security in terms of Identity and Access Management (IAM), different authentication technologies (passwords, biometrics, OTP, digital certificates & PKI, device authentication, FIDO U2F/Passkeys, etc.
- Proven expertise on different security testing tools (Proxy tools like Fiddler, Black box security testing tools like Burp, Static Security Code analysis tools,
- Deep understanding of different application security vulnerabilities such as OWASP Top 10, SANS Top 25, CWE, attack patterns (CAPEC), etc.
- Bachelor''s Degree in Computer Science or equivalent experience.
- Must be self-directed, able to work independently, as well as work in a team-oriented and fast paced environment
Best Regards,
Ashish Singh
Truehire Staffing,
5900, Balcones Drive Suit 100, Austin, TX, 78731
Email ID:
Web:
- Dice Id: 91173234
- Position Id: 8990631
- Posted 4 hours ago
Company Info
About TrueHire Staffing LLC
Truehire is a leading provider of Recruitment Process Outsourcing (RPO) & Staffing services, supporting organizations across various industries and sizes. The company delivers customized hiring solutions designed to streamline recruitment operations and improve the quality of talent acquisition. At Truehire, the focus is on combining advanced technology with data-driven insights to achieve superior hiring outcomes. The team comprises experienced recruiters with strong domain expertise, enabling them to understand diverse client needs and deliver the right talent quickly and efficiently. One of Truehire core strengths is its ability to offer a seamless and consistent recruitment experience, regardless of client scale or geography. By working closely with clients, Truehire builds tailored recruitment strategies that align perfectly with their business goals and unique hiring requirements.

Similar Jobs
It looks like there aren't any Similar Jobs for this job yet.
Search all similar jobs