
Application Security Penetration Tester
3 days ago
Application Security Penetration Tester
Shift
: 09:00 AM to 06:00 PM
Unit:
POS
Experience
: 2 to 3 years
Department:
Software Development
Location:
DHA, Phase 6, Karachi
Full-time, onsite
About the Role
We are seeking an experienced Application Security Penetration Tester to assess and strengthen the security of our web applications, mobile applications (iOS/Android), backend services, and deployment environment. The role involves performing security assessments, penetration testing, and vulnerability analysis, and providing actionable recommendations to remediate identified risks.
Responsibilities
- Conduct penetration testing on web applications, mobile apps, and APIs to identify security vulnerabilities.
- Assess backend services, databases, and authentication mechanisms for common attack vectors (SQLi, XSS, CSRF, IDOR, privilege escalation, etc.).
- Perform mobile application security testing (static & dynamic analysis, API security, insecure storage, reverse engineering).
- Review and test deployment environments for misconfigurations, insecure dependencies, and cloud/server-side risks.
- Map findings against industry standards (OWASP Top 10, OWASP MASVS, SANS CWE Top 25).
- Provide a detailed Security Assessment Report (SAR) with risk categorization, impact analysis, and remediation steps.
- Collaborate with development and DevOps teams to help prioritize and fix vulnerabilities.
Required Skills & Qualifications
- Proven experience in application penetration testing (web, mobile, APIs).
- Strong knowledge of OWASP Top 10, OWASP MASVS, SANS CWE 25.
- Hands-on experience with security tools such as:
- Burp Suite, OWASP ZAP, Postman, Metasploit, Nmap, Nikto, MobSF, Frida, Drozer, IDA, etc.
- Familiarity with backend technologies (PHP, Python, , etc.) and databases (MySQL, PostgreSQL, etc.).
- Experience with mobile app testing frameworks (static/dynamic analysis, reverse engineering).
- Good understanding of cloud/infrastructure security basics (AWS, GCP, or on-prem servers).
- Strong reporting and communication skills.
- Relevant certifications (nice to have, not mandatory): OSCP, OSWE, OSEP, CEH, GPEN, GMOB.
Nice to Have
- Experience with compliance-oriented testing (PCI-DSS, GDPR, ISO 27001, etc.).
- Familiarity with CI/CD security (DevSecOps pipelines).
-
Penetration Tester
1 hour ago
Karachi, Sindh, Pakistan 408 Solutions Full time $104,000 - $130,878 per yearJob Title: Penetration TesterLocation: On-SiteType: Full-TimeWe're looking for aPenetration Testerto join our security team. The ideal candidate will possess a strong foundation in web security, practical experience with penetration testing tools, and the ability to work independently while contributing effectively to team objectives.What You'll Be...
-
Penetration Testing Engineer
2 days ago
Karachi, Sindh, Pakistan Arpatech (Pvt) Ltd Full time $104,000 - $130,878 per yearJob Title:Penetration Testing EngineerJob Description: Penetration Testing Engineerto perform security assessments on applications, APIs, and systems. The role involves conducting penetration tests, vulnerability assessments, and code reviews using industry-standard frameworks and tools, while providing actionable remediation to strengthen overall...
-
Senior Security Assurance Professional
1 week ago
Karachi, Sindh, Pakistan beBeeLead Full timeSecurity Assurance LeadThe ideal candidate will lead and perform vulnerability assessments, penetration testing, application and API security assessments, and baseline reviews to ensure the robustness of our infrastructure and applications.Key responsibilities include conducting infrastructure, network, and application-level vulnerability assessments using...
-
Senior Software Tester
2 weeks ago
Karachi, Sindh, Pakistan SoftZone Full timeEmployer: SoftZoneIndustry: Software DevelopmentLocation: KarachiJob Title: Senior Software TesterJob Type: Full timeJob Location: Mansoura or RemotelyJob Requirements:3-5 years of experience as a software testerMale or FemaleReview requirements and design specificationsDesign testing plans, scenarios, and test casesExecute functional testing (Smoke, UI,...
-
Network & Infrastructure Security Lead
3 days ago
Karachi, Sindh, Pakistan Pakistan Single Window Full time $90,000 - $120,000 per yearAssists with technical direction in designing and implementing security solutions for PSW technical infrastructure and business applications Performs day-to-day Information Security functions pertaining to access control on various software products, network, and processes Ensure the data security of PSW assets including data encryption, hashing,...
-
Security Compliance Specialist
2 days ago
Karachi, Sindh, Pakistan beBeeCompliance Full time 8,000,000 - 12,000,000Job Title: Security Compliance SpecialistAbout the RoleWe're seeking a highly skilled Security Compliance Specialist to join our Compliance & Risk team. This role is responsible for managing compliance and technical security controls.The ideal candidate will have experience in implementing and maintaining security systems, gathering audit evidence,...
-
Information Security Manager
3 days ago
Karachi, Sindh, Pakistan HR Ways - Hiring Tech Talent Full time $90,000 - $120,000 per yearInfoSec Engineer - Onsite - KarachiCompany Overview:Hiring for one of our Tech Solution providers in Karachi.Job Description:Develop and implement security strategies to safeguard our Cloud infrastructure,on-prem systems, applications, and data.Perform risk assessments, vulnerability scans, and penetration testing; provideactionable insights to mitigate...
-
Email Security Specialist
1 week ago
Karachi, Sindh, Pakistan beBeeEmailSecurity Full timeJob Title: Email Security SpecialistWe are seeking a highly skilled Email Security Specialist to join our team. This is a challenging and rewarding role that requires a deep understanding of email security concepts, as well as excellent analytical and problem management skills.Key Responsibilities:Email Security ImplementationDesign and implement Microsoft...
-
Associate Manager- Cyber Security
3 days ago
Karachi, Sindh, Pakistan Dolmen Group Full time 900,000 - 1,200,000 per yearJob Responsibilities:Design, implement, and manage cybersecurity strategies to safeguard systems, networks, and data.Conduct regular vulnerability assessments and penetration testing.Monitor and analyze network traffic, system logs, and security events for timely incident response.Develop, enforce, and maintain security policies, procedures, and disaster...
-
Senior Software Tester
1 week ago
Karachi, Sindh, Pakistan beBeeAutomation Full time 250,000 - 500,000Job DescriptionThe role of a Quality Assurance Specialist is critical in ensuring the excellence of our software solutions. This position works collaboratively with software developers and architects to identify and resolve issues, guaranteeing the highest standards of quality.Responsibilities:Design and execute test plans based on software requirements and...