H

Penetration Tester - Web & Mobile Applications

HWG

Dubai, United Arab Emirates · Full Time

Be the first to apply

Experience
2+ yrs
Salary
—
Openings
1
Posted
3 hours ago
Work mode
In office
Education
Bachelor's degree in Computer Science or Cybersecurity or equivalent
Resume
Required to apply

Where you'll work

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

Overview

We are seeking a highly capable and driven Penetration Tester with expertise in Web and Mobile Applications to enhance our cybersecurity offensive team. The role involves uncovering security weaknesses, emulating genuine cyberattacks, and assisting clients in bolstering their application defenses.

Key Duties

  • Conduct penetration testing (black-box, grey-box, white-box) on both web and mobile platforms to identify and exploit vulnerabilities.
  • Perform secure code analysis when necessary.
  • Evaluate findings based on their business and technical implications and generate comprehensive reports featuring executive summaries, technical details, risk assessments, and remediation advice.
  • Present results clearly to clients, facilitating remediation efforts.
  • Apply advanced testing methods including authentication bypass techniques, session management attacks, API and mobile reverse engineering assessments.
  • Test RESTful APIs, microservices, and modern web infrastructures.
  • Assist in red team exercises as required.
  • Utilize industry-standard tools such as Burp Suite, OWASP ZAP, Metasploit, MobSF, and Frida, and develop bespoke scripts or tools to enhance testing activities.
  • Follow structured testing methodologies like OWASP and PTES.
  • Engage clients directly to gather application architecture details and clarify testing scope.
  • Offer clear remediation guidance and support re-validation of corrections.
  • Keep abreast of new vulnerabilities, attack vectors, and security trends and contribute to internal knowledge bases and research programs.
  • Participate in professional development through training, certifications, and cybersecurity events.

Required Expertise

  • Degree in Computer Science, Cybersecurity, or equivalent industry experience.
  • At least two years of experience in application security testing with a focus on web and/or mobile platforms.
  • In-depth knowledge of web technologies including HTTP/S, APIs, and authentication.
  • Experience assessing security on mobile operating systems such as iOS and Android.
  • Practical experience using penetration testing tools, especially Burp Suite.
  • Strong familiarity with OWASP Top 10 vulnerabilities and secure coding standards.
  • Excellent English communication skills, both written and verbal.

Additional Qualifications and Attributes

  • Residence within the United Arab Emirates.
  • Relevant certifications such as OSCP, OSWE, eWPT, eMAPT, or CEH.
  • Experience with mobile reverse engineering tools (Frida, Objection, JADX).
  • Knowledge of cloud environments and API security testing.
  • Previous client-facing experience in the GCC region.
  • Strong analytical skills and meticulous attention to detail.
  • Good teamwork and interpersonal skills.
  • Ability to maintain composure under pressure and adapt to changing circumstances.
  • Willingness to travel within the GCC for onsite work.
  • Proficiency in English; Arabic language skills are a significant advantage.

Why Join Us?

  • Be part of a rapidly expanding cybersecurity environment.
  • Join a collaborative, energetic team culture.
  • Contribute directly to critical security operations and client success.

Become a key player in a highly impactful cybersecurity group operating within one of the world’s most vibrant digital markets. We invite you to apply and help secure our clients' futures across the GCC region.

Minimum education

Bachelor's Degree

Industry

Cybersecurity

Tools & software

Burp Suite required

How they work

Communication Teamwork & Collaboration Problem Solving Attention to Detail Adaptability

Languages

Servicenow

Leave it if you'd like a reply — we won't use it for anything else.

Click to browse, drag & drop, or paste a screenshot

PNG, JPG, GIF, MP4, WebM, MOV · Max 20MB each · Up to 5 files

🤖
Online · instant AI help
Broxer