Application Security Penetration Tester

2 weeks ago


Karachi, Sindh, Pakistan Intersys Ltd. Full time 1,200,000 - 3,600,000 per year

Application Security Penetration Tester

Shift
: 09:00 AM to 06:00 PM

Unit:
POS

Experience
: 2 to 3 years

Department:
Software Development

Location:
DHA, Phase 6, Karachi

Full-time, onsite

About the Role

We are seeking an experienced Application Security Penetration Tester to assess and strengthen the security of our web applications, mobile applications (iOS/Android), backend services, and deployment environment. The role involves performing security assessments, penetration testing, and vulnerability analysis, and providing actionable recommendations to remediate identified risks.

Responsibilities

  • Conduct penetration testing on web applications, mobile apps, and APIs to identify security vulnerabilities.
  • Assess backend services, databases, and authentication mechanisms for common attack vectors (SQLi, XSS, CSRF, IDOR, privilege escalation, etc.).
  • Perform mobile application security testing (static & dynamic analysis, API security, insecure storage, reverse engineering).
  • Review and test deployment environments for misconfigurations, insecure dependencies, and cloud/server-side risks.
  • Map findings against industry standards (OWASP Top 10, OWASP MASVS, SANS CWE Top 25).
  • Provide a detailed Security Assessment Report (SAR) with risk categorization, impact analysis, and remediation steps.
  • Collaborate with development and DevOps teams to help prioritize and fix vulnerabilities.

Required Skills & Qualifications

  • Proven experience in application penetration testing (web, mobile, APIs).
  • Strong knowledge of OWASP Top 10, OWASP MASVS, SANS CWE 25.
  • Hands-on experience with security tools such as:
  • Burp Suite, OWASP ZAP, Postman, Metasploit, Nmap, Nikto, MobSF, Frida, Drozer, IDA, etc.
  • Familiarity with backend technologies (PHP, Python, , etc.) and databases (MySQL, PostgreSQL, etc.).
  • Experience with mobile app testing frameworks (static/dynamic analysis, reverse engineering).
  • Good understanding of cloud/infrastructure security basics (AWS, GCP, or on-prem servers).
  • Strong reporting and communication skills.
  • Relevant certifications (nice to have, not mandatory): OSCP, OSWE, OSEP, CEH, GPEN, GMOB.

Nice to Have

  • Experience with compliance-oriented testing (PCI-DSS, GDPR, ISO 27001, etc.).
  • Familiarity with CI/CD security (DevSecOps pipelines).

  • Penetration Tester

    2 weeks ago


    Karachi, Sindh, Pakistan 408 Solutions Full time 600,000 - 1,200,000 per year

    Job Title: Penetration TesterLocation: On-SiteType: Full-TimeWe're looking for aPenetration Testerto join our security team. The ideal candidate will possess a strong foundation in web security, practical experience with penetration testing tools, and the ability to work independently while contributing effectively to team objectives.What You'll Be...


  • Karachi, Sindh, Pakistan Arpatech (Pvt) Ltd Full time $104,000 - $130,878 per year

    Job Title:Penetration Testing EngineerJob Description: Penetration Testing Engineerto perform security assessments on applications, APIs, and systems. The role involves conducting penetration tests, vulnerability assessments, and code reviews using industry-standard frameworks and tools, while providing actionable remediation to strengthen overall...


  • Karachi, Sindh, Pakistan Simpaisa Full time 1,200,000 - 2,400,000 per year

    We are seeking a highly skilled Information Security Analyst to join our growing team. In this role, you will play a crucial role in safeguarding our sensitive financial data and ensuring compliance with industry regulations. The ideal candidate will have a deep understanding of information security principles and best practices, with experience in the...

  • Security Engineer

    1 week ago


    Karachi, Sindh, Pakistan Contour Software Full time 104,000 - 130,878 per year

    About ContourContour Softwarehas grown from a dozen people to over 2,000 staff across 3 cities, in less than 14 years.As a subsidiary of Constellation Software Inc., we are proud to be part of a global enterprise software conglomerate that has grown to become one of the top 10 software companies in the world, with employees and customers in 100+ countries....

  • Security Engineer

    4 weeks ago


    Karachi, Sindh, Pakistan Contour Software Full time

    OverviewJoin to apply for the Security Engineer (DevSecOps) role at Contour Software.About Contour: Contour Software has grown from a dozen people to over 2,000 staff across 3 cities, in less than 14 years. As a subsidiary of Constellation Software Inc., we are part of a global enterprise software conglomerate with a broad portfolio and international reach....

  • Security Engineer

    1 week ago


    Karachi, Sindh, Pakistan Contour Software Full time 1,200,000 - 2,400,000 per year

    About ContourContour Software has grown from a dozen people to over 2,000 staff across 3 cities, in less than 14 years. As a subsidiary of Constellation Software Inc., we are proud to be part of a global enterprise software conglomerate that has grown to become one of the top 10 software companies in the world, with employees and customers in 100+...

  • Security Developer

    2 weeks ago


    Karachi, Sindh, Pakistan NCCS-NED (National Centre for Cyber Security) Full time 900,000 - 1,200,000 per year

    National Centre for Cybersecurity (NCCS-NEDUET) is seeking a skilled and experienced Security Developer to join our team. As a Developer, you will play a crucial role in the development of cybersecurity products and solutions. You will work closely with other team members to design, develop, and test applications that are used to protect against cyber...


  • Karachi, Sindh, Pakistan Dolmen Group Full time 900,000 - 1,200,000 per year

    Job Responsibilities:Design, implement, and manage cybersecurity strategies to safeguard systems, networks, and data.Conduct regular vulnerability assessments and penetration testing.Monitor and analyze network traffic, system logs, and security events for timely incident response.Develop, enforce, and maintain security policies, procedures, and disaster...


  • Karachi, Sindh, Pakistan Hbox Digital Full time 1,200,000 - 2,400,000 per year

    Job Opening: Software Quality Assurance (Manual Tester)Location: Bahria Town Tower, Main Tariq Rd, Block 2 PECHS, KarachiExperience Required: 3+ yearsEmployment Type: Full-timeAbout the RoleWe are looking for a skilled and detail-oriented Manual Tester to join our QA team. The ideal candidate will have hands-on experience in testing across multiple...


  • Karachi, Sindh, Pakistan Turn Up Technologies Full time 1,200,000 - 2,400,000 per year

    About Turn Up Technologies:Turn Up Technologies is one of the fastest-growing IT companies operating globally, with offices in Karachi, the UK, Canada, and the UAE. We specialize in delivering innovative technological solutions to a diverse range of clients, helping them achieve their business goals through cutting-edge technology and expert...