Application Security Penetration Tester

3 days ago


Karachi, Sindh, Pakistan Intersys Ltd. Full time 900,000 - 1,200,000 per year

Application Security Penetration Tester

Shift
: 09:00 AM to 06:00 PM

Unit:
POS

Experience
: 2 to 3 years

Department:
Software Development

Location:
DHA, Phase 6, Karachi

Full-time, onsite

About the Role

We are seeking an experienced Application Security Penetration Tester to assess and strengthen the security of our web applications, mobile applications (iOS/Android), backend services, and deployment environment. The role involves performing security assessments, penetration testing, and vulnerability analysis, and providing actionable recommendations to remediate identified risks.

Responsibilities

  • Conduct penetration testing on web applications, mobile apps, and APIs to identify security vulnerabilities.
  • Assess backend services, databases, and authentication mechanisms for common attack vectors (SQLi, XSS, CSRF, IDOR, privilege escalation, etc.).
  • Perform mobile application security testing (static & dynamic analysis, API security, insecure storage, reverse engineering).
  • Review and test deployment environments for misconfigurations, insecure dependencies, and cloud/server-side risks.
  • Map findings against industry standards (OWASP Top 10, OWASP MASVS, SANS CWE Top 25).
  • Provide a detailed Security Assessment Report (SAR) with risk categorization, impact analysis, and remediation steps.
  • Collaborate with development and DevOps teams to help prioritize and fix vulnerabilities.

Required Skills & Qualifications

  • Proven experience in application penetration testing (web, mobile, APIs).
  • Strong knowledge of OWASP Top 10, OWASP MASVS, SANS CWE 25.
  • Hands-on experience with security tools such as:
  • Burp Suite, OWASP ZAP, Postman, Metasploit, Nmap, Nikto, MobSF, Frida, Drozer, IDA, etc.
  • Familiarity with backend technologies (PHP, Python, , etc.) and databases (MySQL, PostgreSQL, etc.).
  • Experience with mobile app testing frameworks (static/dynamic analysis, reverse engineering).
  • Good understanding of cloud/infrastructure security basics (AWS, GCP, or on-prem servers).
  • Strong reporting and communication skills.
  • Relevant certifications (nice to have, not mandatory): OSCP, OSWE, OSEP, CEH, GPEN, GMOB.

Nice to Have

  • Experience with compliance-oriented testing (PCI-DSS, GDPR, ISO 27001, etc.).
  • Familiarity with CI/CD security (DevSecOps pipelines).

  • Penetration Tester

    1 hour ago


    Karachi, Sindh, Pakistan 408 Solutions Full time $104,000 - $130,878 per year

    Job Title: Penetration TesterLocation: On-SiteType: Full-TimeWe're looking for aPenetration Testerto join our security team. The ideal candidate will possess a strong foundation in web security, practical experience with penetration testing tools, and the ability to work independently while contributing effectively to team objectives.What You'll Be...


  • Karachi, Sindh, Pakistan Arpatech (Pvt) Ltd Full time $104,000 - $130,878 per year

    Job Title:Penetration Testing EngineerJob Description: Penetration Testing Engineerto perform security assessments on applications, APIs, and systems. The role involves conducting penetration tests, vulnerability assessments, and code reviews using industry-standard frameworks and tools, while providing actionable remediation to strengthen overall...


  • Karachi, Sindh, Pakistan beBeeLead Full time

    Security Assurance LeadThe ideal candidate will lead and perform vulnerability assessments, penetration testing, application and API security assessments, and baseline reviews to ensure the robustness of our infrastructure and applications.Key responsibilities include conducting infrastructure, network, and application-level vulnerability assessments using...


  • Karachi, Sindh, Pakistan SoftZone Full time

    Employer: SoftZoneIndustry: Software DevelopmentLocation: KarachiJob Title: Senior Software TesterJob Type: Full timeJob Location: Mansoura or RemotelyJob Requirements:3-5 years of experience as a software testerMale or FemaleReview requirements and design specificationsDesign testing plans, scenarios, and test casesExecute functional testing (Smoke, UI,...


  • Karachi, Sindh, Pakistan Pakistan Single Window Full time $90,000 - $120,000 per year

    Assists with technical direction in designing and implementing security solutions for PSW technical infrastructure and business applications Performs day-to-day Information Security functions pertaining to access control on various software products, network, and processes Ensure the data security of PSW assets including data encryption, hashing,...


  • Karachi, Sindh, Pakistan beBeeCompliance Full time 8,000,000 - 12,000,000

    Job Title: Security Compliance SpecialistAbout the RoleWe're seeking a highly skilled Security Compliance Specialist to join our Compliance & Risk team. This role is responsible for managing compliance and technical security controls.The ideal candidate will have experience in implementing and maintaining security systems, gathering audit evidence,...


  • Karachi, Sindh, Pakistan HR Ways - Hiring Tech Talent Full time $90,000 - $120,000 per year

    InfoSec Engineer - Onsite - KarachiCompany Overview:Hiring for one of our Tech Solution providers in Karachi.Job Description:Develop and implement security strategies to safeguard our Cloud infrastructure,on-prem systems, applications, and data.Perform risk assessments, vulnerability scans, and penetration testing; provideactionable insights to mitigate...


  • Karachi, Sindh, Pakistan beBeeEmailSecurity Full time

    Job Title: Email Security SpecialistWe are seeking a highly skilled Email Security Specialist to join our team. This is a challenging and rewarding role that requires a deep understanding of email security concepts, as well as excellent analytical and problem management skills.Key Responsibilities:Email Security ImplementationDesign and implement Microsoft...


  • Karachi, Sindh, Pakistan Dolmen Group Full time 900,000 - 1,200,000 per year

    Job Responsibilities:Design, implement, and manage cybersecurity strategies to safeguard systems, networks, and data.Conduct regular vulnerability assessments and penetration testing.Monitor and analyze network traffic, system logs, and security events for timely incident response.Develop, enforce, and maintain security policies, procedures, and disaster...


  • Karachi, Sindh, Pakistan beBeeAutomation Full time 250,000 - 500,000

    Job DescriptionThe role of a Quality Assurance Specialist is critical in ensuring the excellence of our software solutions. This position works collaboratively with software developers and architects to identify and resolve issues, guaranteeing the highest standards of quality.Responsibilities:Design and execute test plans based on software requirements and...