Penetration Testing Engineer Job at TalentOla, Charlotte, NC

WElwV3BGeEtudzFkM2tuVk5qanUyVmllOWc9PQ==
  • TalentOla
  • Charlotte, NC

Job Description

Cybersecurity Penetration Testing Engineer – Application & API Security Location: Charlotte, NC Experience: 10 years total About the Role We are seeking an experienced Penetration Testing Engineer specializing in Application and API Security to join our cybersecurity team. The ideal candidate will be a hands‑on offensive security professional skilled in identifying, exploiting, and reporting security vulnerabilities across web, mobile, and API platforms. Key Responsibilities Perform manual and automated penetration testing on web, mobile, and API endpoints. Use Burp Suite Professional extensively (Intruder, Repeater, Extender, Decoder). Identify and exploit authentication, authorization, session management, and input validation vulnerabilities. Conduct source code‑assisted testing to uncover deeper logic flaws. Apply frameworks such as OWASP Top 10, API Security Top 10, and SANS 25. Conduct REST and GraphQL API testing, including JWT, OAuth, and token manipulation. Validate business logic flaws, parameter tampering, and microservices vulnerabilities. Develop PoC exploits to demonstrate risk impact. Simulate real‑world attack scenarios leveraging MITRE ATT&CK and CWE references. Document detailed findings with reproduction steps, impact analysis, and mitigation recommendations. Collaborate with developers and DevSecOps teams to drive secure remediation and retesting. Present findings to both technical and non‑technical stakeholders in clear, actionable language. Integrate testing results into CI/CD pipelines and support DevSecOps automation. Contribute to secure coding guidelines and developer training. Stay current on emerging threats, CVEs, and offensive security tools. Develop custom scripts, payloads, or Burp extensions to enhance testing capabilities. Required Skills & Experience 10 years of total experience in Application and API Penetration Testing. Minimum 3 years of hands‑on offensive security testing experience. Expert‑level proficiency in Burp Suite Professional. Deep understanding of REST, GraphQL, JSON, and XML. Strong command of OWASP Top 10, API Top 10, and CWE Top 25 vulnerabilities. Experience using tools such as OWASP ZAP, Nmap, Metasploit, SQLmap, DirBuster, Hydra, and Ffuf. Excellent report writing and presentation skills. Preferred Skills Familiarity with API gateways (Kong, Apigee) and microservices architectures. Knowledge of Cloud Security (AWS, Azure, GCP) and Container Security (Docker, Kubernetes). Exposure to C2 frameworks (Cobalt Strike, Empire) and red team methodologies. Education & Certifications Bachelor’s or Master’s degree in Computer Science, Information Security, or a related field. Preferred certifications: OSCP / OSWE / OSEP (Offensive Security); eWPTX / eCPPT / GWAPT / GPEN / CEH (Practical). Job Details Seniority level: Mid‑Senior level Employment type: Contract Job function: Information Technology Industries: Staffing and Recruiting Referrals increase your chances of interviewing at TalentOla by 2x. #J-18808-Ljbffr TalentOla

Job Tags

Contract work,

Similar Jobs

CT Assist

Nurse Practitioner - Cardiovascular/Cardiothoracic Surgery Job at CT Assist

 ...Job Description CT Assist is seeking a Nurse Practitioner Cardiovascular/Cardiothoracic Surgery for a job in Springfield, Missouri. Job Description & Requirements ~ Specialty: Cardiovascular/Cardiothoracic Surgery ~ Discipline: Nurse Practitioner ~ Start... 

Campbell County Health

REGISTERED NURSE | Maternal Child Job at Campbell County Health

Campbell County Health (CCH) is actively seeking a dedicated Registered Nurse specialized in Maternal Child healthcare to join our compassionate team at Campbell County Memorial Hospital. As a community-focused health provider in Gillette, WY, we pride ourselves on delivering... 

Guardian Angel Senior Services

A caregiver for senior citizens. Job at Guardian Angel Senior Services

 ...Hiring: Compassionate Caregivers & HHAs! &##128153;&##128205; Guardian Angel Senior Services Bringing care, comfort, and companionship to seniors for over 20 years! FULL-TIME | PART-TIME | PER DIEM OPPORTUNITIES &##128176; $250 SIGN-ON BONUS for caregivers... 

Addison Kenway

Aesthetic Injectables Nurse Practitioner Job at Addison Kenway

 ...Aesthetic Injectables Nurse Practitioner River Edge, NJ Job#16733129 Details: Join a dynamic and rapidly expanding multidisciplinary practice in northeastern New Jersey. Seeking a skilled Nurse Practitioner to administer a full range of medical aesthetic services... 

Maplewood at Chardon LLC

Licensed Practical Nurse (LPN) - Part Time 7a-7p Job at Maplewood at Chardon LLC

 ...LPN (Wellness Nurse) Location: Chardon, OH Employment Type: Part Time 7a-7p Department: Resident Care About Us: Want to...  .... Each employee has the ability to touch the hearts of all our senior and be a part of something bigger than themselves. It's not just...