Application Security Test Engineer - (Thick Client Penetration Testing + Source Code Review)

Posted 2 Days Ago
Be an Early Applicant
San José, San José
Mid level
Security • Cybersecurity
The Role
The Application Security Test Engineer will conduct security assessments and penetration tests to identify vulnerabilities in thick client applications across various platforms. Responsibilities include source code review, collaboration with development teams to enhance secure coding, and documentation of findings and recommendations.
Summary Generated by Built In

SonicWall is a cybersecurity forerunner with more than 30 years of expertise and is recognized as a leading partner-first company, ensuring our partners and their customers are never alone in the fight against cybercrime. With the ability to build, scale and manage security across the cloud, hybrid and traditional environments in real-time, SonicWall provides relentless security against the most evasive cyberattacks across endless exposure points for increasingly remote, mobile and cloud-enabled users. With its own threat research center, SonicWall can quickly and economically provide purpose-built security solutions to enable any organization—enterprise, government agencies and SMBs—around the world. For more information, visit www.sonicwall.com or follow us on TwitterLinkedInFacebook and Instagram.

Location: Remote ( Only for the candidates residing in Costa Rica)

Job Description:

We are seeking a skilled Application Security Test Engineer - (Thick Client Penetration Testing + Source Code Review)' to join our security team. In this role, you will be responsible for conducting security assessments, penetration testing, and secure code reviews of our thick client applications across various platforms (Windows, Linux desktop applications and mobile clients). Your primary focus will be on identifying and mitigating security vulnerabilities to enhance the overall security posture of our applications and services.

Responsibilities:
•    Conduct thorough vulnerability assessment on the Windows desktop VPN, other client applications and mobile client apps (Android and iOS).
•    Identify and analyze cryptographic algorithms, protocols, and identify security misconfigurations implemented in the applications.
•    Perform manual penetration testing to identify vulnerabilities, weaknesses, and potential exploits in the VPN and SonicWall client applications.
•    Utilize various tools and methodologies to conduct static and dynamic security analysis of the binary code.
•    Review source code for security flaws, coding errors, and potential areas of improvement.
•    Collaborate with the development team to provide recommendations for secure coding practices.
•    Conduct penetration testing on the Firewall hardware, virtual appliances, and VPN client applications to simulate real-world attack scenarios.
•    Document and report findings, including recommended remediation steps.
•    Stay abreast of the latest cybersecurity threats, vulnerabilities, and attack vectors relevant to VPN technologies.
•    Prepare comprehensive reports detailing the results of security assessments and penetration tests.
•    Clearly communicate findings, risks, and recommended mitigations to both technical and non-technical stakeholders.
•    Works closely with cross-functional teams, including developers, system administrators, and PSIRT engineers, to address and resolve security issues.

 Qualifications:
•    Bachelor's degree in computer science, Cybersecurity, or a related field.
•    Proven experience in  Windows, Linux desktop applications and mobile clients (Android and iOS).
•    Proficiency in using tools such as Burp Suite, Wireshark, IDA Pro, Ghidra, and other relevant application security tools.
•    Strong understanding of VPN technologies, cryptographic protocols, and network security principles.
•    Experience with Security Testing methodologies and standards.
•    Excellent written and verbal communication skills.
•    Certifications such as OSCP, OSCE, or similar are a plus.

#LI-KB7

#LI-Remote

#securitytesting #penetrationtester #sourcecodeanalyst


SonicWall is an equal opportunity employer.  

We are committed to creating a diverse environment and are an equal opportunity employer. All qualified applicants receive consideration for employment without regard to race, color, ethnicity, religion, sex, gender, gender identity and expression, sexual orientation, national origin, disability, age, marital status, veteran status, pregnancy, or any other basis prohibited by applicable law.
At SonicWall, we pride ourselves on recruiting a diverse mix of talented people and providing active security solutions in 100+ countries.

Applicant Privacy Notice

Top Skills

Android
iOS
Linux
Windows
The Company
Milpitas, CA
1,832 Employees
On-site Workplace
Year Founded: 1991

What We Do

SonicWall has been fighting the cyber-criminal industry for over 25 years defending small, medium-size businesses and enterprises worldwide. Backed by research from the Global Response Intelligent Defense (GRID) Threat Network, our award-winning real-time breach detection and prevention solutions, coupled with the formidable resources of over 10,000 loyal channel partners around the globe, are the backbone securing more than a million business and mobile networks and their emails, applications and data. This combination of products and partners has enabled a real-time cyber defense solution tuned to the specific needs of the more than 500,000 global businesses in more than 215 countries and territories.

Similar Jobs

Cargill Logo Cargill

ERP Supply Chain Senior Systems Analyst

Food • Greentech • Logistics • Sharing Economy • Transportation • Agriculture • Industrial
5 Locations
155000 Employees

Kraft Heinz Logo Kraft Heinz

R&D Packaging Coordinator

Big Data • Cloud • Food • Machine Learning • Software • Database • Analytics
Hybrid
San José, San José, CRI
38000 Employees
San José, San José, CRI
210 Employees

Snowflake Logo Snowflake

Senior Cloud Support Engineer - SQL

Artificial Intelligence • Big Data • Cloud • Machine Learning • Software • Database • Analytics
San José, San José, CRI
7630 Employees

Similar Companies Hiring

Coro Thumbnail
Software • Security • Information Technology • Data Privacy • Cybersecurity • Cloud • Artificial Intelligence
Chicago, IL
330 Employees
MacPaw Thumbnail
Software • Security • Information Technology • Data Privacy • Cybersecurity • App development
Cambridge, MA
550 Employees
Silverfort Thumbnail
Security • Sales • Information Technology • Cybersecurity • Automation
GB
357 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account