Web Penetration Testers Job at Orison Solutions, Denver, CO

TGF2aEhLQUFteWlGbVVuK0pjUTFLRENOY1E9PQ==
  • Orison Solutions
  • Denver, CO

Job Description

Hi Network Partners,

Happy New Year! We have a new position with our client Web Penetration Testers. We are specifically looking for the Lead Web Penetration Tester to be in Denver, Colorado and they have to have worked in a Financial Institution/bank. 

Duration-12 months plus

Pay Rate-Market Rate/Industry Rate. For the Lead Penetration Tester will pay more. Would like to see work samples.

Location-The Lead Web Penetration Tester we would like to be in Denver, CO

Other locations acceptable for non-lead Web Penetration Testers include Austin, San Antonio, Texas or Miami, Florida. We would prefer no remote but if rockstar submit

Requesting web penetration testers

Denver is top priority for the Lead Penetration Tester

2nd locations can be -Texas/Austin/San Antonio or Florida/Miami

Austin, Miami, Denver-Remote

Awesome candidate in Denver-required on-site

Must have worked for a Financial Institution/Bank

Role Overview:

We are seeking an experienced Web Penetration Tester to perform comprehensive security assessments of our web applications. The goal is to identify vulnerabilities, validate security controls, and provide actionable remediation guidance to strengthen our application security posture.

Scope of Work

• Conduct scoped penetration testing on designated web applications.

• Identify and exploit vulnerabilities in:

o Authentication and authorization mechanisms.

o Input validation and data handling.

o Session management.

o API endpoints and integrations.

o Business logic flaws

• Assess compliance with OWASP Top 10 and other relevant security standards.

• Perform manual testing supplemented by automated tools

• Provide detailed risk analysis and prioritize findings based on impact and likelihood, per Western Union risk rating.

• Deliver a comprehensive report including:

o Executive summary.

o Technical details of findings.

o Proof-of-concept exploits.

o Recommended remediation steps.

Required Qualifications

• Proven experience in web application penetration testing.

• Strong knowledge of:

o OWASP Top 10.

o Common web vulnerabilities (SQL injection, XSS, CSRF, etc.).

o Business Logic flaws in Financial Services Apps.

• Familiarity with secure coding practices and modern frameworks.

• Proficiency with penetration testing tools (Burp Suite, OWASP ZAP, etc.).

• Ability to produce clear, actionable reports for both technical and non-technical audiences.

Deliverables

• Vulnerability report with severity ratings.

• Retest after remediation

Email is the best way to reach me anil@orisonsolutions.com

 

Job Tags

Remote work,

Similar Jobs

Syncreon Consulting

OSP engineer - ArcGIS/ESRI, 3GIS, telecommunications Job at Syncreon Consulting

 ...Processes, and Administrative) - Comprehensive knowledge and skill for more complex applications to include Word, Excel, Visio, ArcGIS/ESRI, 3GIS, Google Earth, etc. * Knowledge of the network plant and local practices. * Experience with working application of... 

Mobile Meals

Delivery Driver - Food Job at Mobile Meals

 ...customers Deliver job description Mobile Meals is the oldest most established restaurant delivery service in the Tampa Bay area! Our driver tell us they make more than any other food delivery apps. We have been in business now for over 13 years and are looking for good... 

CAMALI CORP

Low Voltage Cabling PM & Installer Job at CAMALI CORP

 ...include but are not limited to: As a Low Voltage Technician, you will be responsible for the installation, termination, testing, and maintenance of low voltage cabling systems, including voice, data, security, access control, and audio/visual systems. This role requires... 

Prospect Equities

Front-End Developer Intern Job at Prospect Equities

 ...About the Role: We are seeking a motivated and detail-oriented Front-End Developer Intern to join our team in building responsive and user-friendly public websites, mobile applications, and web applications. In this role, you will focus on crafting intuitive user interfaces... 

C3 AI

Technical Curriculum Developer Job at C3 AI

 ...including the C3 Agentic AI Platform, an end-to-end platform for developing, deploying, and operating enterprise AI applications, C3 AI...  ...enterprise. Learn more at: C3 AI C3 AI is hiring a Technical Curriculum Developer to join our Training team. In this role, you will...