Current jobs related to Cloud-Based Web APIs Penetration Testing Support Consultant - San Francisco - New Era Technology


  • San Francisco, California, United States New Era Technology Full time

    About the OpportunityNew Era Technology is seeking a skilled Penetration Testing Support Consultant to conduct web API security testing for indirect object access permissions and controls on AWS. This is a 5-month remote opportunity.Key ResponsibilitiesWrite RSpec tests in Ruby to ensure code quality and maintain a robust test framework.Set up API endpoint...


  • San Francisco, California, United States New Era Technology company Full time

    About the Opportunity:New Era Technology is seeking a skilled Penetration Testing Support Consultant to conduct thorough testing for web APIs on AWS. This is a 5-month remote opportunity.Key Responsibilities:Write RSpec tests in Ruby to ensure code quality and maintain a robust testing framework.Set up API endpoint calls using Postman or similar tools for...


  • San Francisco, California, United States New Era Technology Full time

    About the OpportunityNew Era Technology is seeking a skilled Cloud Security Consultant to conduct penetration testing for web APIs on AWS. This is a 5-month remote opportunity.Key ResponsibilitiesDevelop and execute penetration testing strategies to identify vulnerabilities in web APIs.Collaborate with API developers to ensure secure coding practices and...

  • Penetration Tester

    1 week ago


    San Diego, California, United States Manpower Group Inc. Full time

    Job Summary:We are seeking a highly skilled Penetration Tester to join our team. As a Penetration Tester, you will be responsible for conducting formal vulnerability assessments and penetration tests of networks, systems, web-based applications, and other types of information systems on a regular basis.Key Responsibilities: Conduct vulnerability assessments...


  • San Francisco, California, United States Adobe Full time

    About the RoleWe're seeking a highly skilled Web APIs Engineer to join our team at Adobe. As a key member of our engineering team, you will be responsible for designing and developing web APIs that meet the needs of our customers.Key Responsibilities:Collaborate with cross-functional teams to create seamless developer experiences on our web application...

  • Penetration Tester

    4 weeks ago


    San Diego, California, United States RSI Security Full time

    Job Title: Penetration Tester ConsultantWe are seeking a highly skilled Penetration Tester Consultant to join our team at RSI Security. As a Penetration Tester Consultant, you will be responsible for performing comprehensive penetration testing against other enterprise networks.Key Responsibilities:Participate in pre-sales calls to scope out and support...


  • San Francisco, California, United States Amazon Web Services, Inc. - A97 Full time

    About the RoleWe are seeking a highly skilled Cloud Solutions Architect to join our team at Amazon Web Services, Inc. - A97. As a Cloud Solutions Architect, you will be responsible for designing and implementing cloud-based solutions for our customers, with a focus on serverless architecture and emerging technologies.Key ResponsibilitiesDesign and implement...


  • San Francisco, California, United States Amazon Web Services, Inc. Full time

    Job Title: Worldwide Specialist, Serverless, ServerlessAbout the Role:We are seeking a highly skilled and experienced Worldwide Specialist to join our Serverless team at Amazon Web Services, Inc. As a key member of our team, you will be responsible for driving the adoption of our Container and Serverless Compute Services portfolio across the globe.Key...

  • Cloud Developer

    4 weeks ago


    San Francisco, United States Stefanini Full time

    Stefanini Group is hiring!Stefanini is looking for a Cloud Developers in San Francisco, CA(Hybrid Role)For quick Apply, please reach out to Ravi Singh: /email: W2 candidates only. The individual will be responsible for developing, implementing, maintaining, and supporting Java based components and interfaces. The position requires broad understanding of...


  • San Francisco, California, United States Kapwing Full time

    Video Editing Software EngineerKapwing is revolutionizing the video editing industry with its cloud-based platform. We're seeking a talented software engineer to join our Repurpose team and help us build the next generation of video editing tools.Key Responsibilities:Design and develop full-stack features for our cloud-based video editor using React, Node,...


  • San Francisco, California, United States Amazon Web Services, Inc. - A97 Full time

    Cloud Solutions Architect - Amazon Web Services, Inc. - A97Are you a customer-obsessed builder with a passion for helping customers achieve their full potential? Do you have the business savvy, GenAI background in the Startup space, and sales skills necessary to help position AWS as the cloud provider of choice for customers? Do you love building new...


  • San Francisco, California, United States Akraya Full time

    Job Summary:We are seeking a Senior Cloud Engineer with extensive experience in designing, developing, and implementing high-quality technology solutions in the cloud. The ideal candidate will leverage their expertise in cloud-native Java applications and AWS services to develop, implement, maintain, and support web applications and interfaces.Key...


  • San Francisco, California, United States Amazon Web Services, Inc. - A97 Full time

    About the RoleWe are seeking a highly skilled and experienced Senior Cloud Solutions Architect to join our team at Amazon Web Services. As a key member of our Worldwide Specialist Organization (WWSO) Startup team, you will be responsible for helping Startups scale quickly and cost-effectively on AWS.As a Senior Cloud Solutions Architect, you will work...


  • San Francisco, California, United States Akraya Full time

    Job Summary:We are seeking a skilled Cloud Solutions Architect to design, develop, and implement high-quality technology solutions in the cloud to address business needs. The ideal candidate will leverage their expertise in cloud-native Java applications and AWS services to develop, implement, maintain, and support web applications and interfaces.Key...


  • San Francisco, California, United States Varite Full time

    Cloud Engineer Job DescriptionVarite is seeking an experienced Cloud Engineer to join our STAR Development team. The ideal candidate will have a strong background in cloud technology and a proven track record of designing and developing high-quality cloud-native applications.Key Responsibilities:Design and develop cloud-native Java-based applications using...


  • San Francisco, California, United States Amazon Web Services, Inc. - A97 Full time

    About the RoleWe are seeking a highly skilled Cloud Solutions Architect to join our team at Amazon Web Services, Inc. - A97. As a Cloud Solutions Architect, you will be responsible for designing and implementing cloud-based solutions for our customers, with a focus on accelerated computing.Key ResponsibilitiesDesign and implement cloud-based solutions for...


  • San Francisco, California, United States Amazon Web Services, Inc. - A97 Full time

    About the RoleWe are seeking a highly skilled Cloud Solutions Architect to join our team at Amazon Web Services. As a Cloud Solutions Architect, you will be responsible for designing and implementing cloud-based solutions for our startup and small business customers. You will work closely with our sales team to understand customer needs and develop solutions...


  • San Mateo, California, United States Snowflake Computing Full time

    About the RoleWe are seeking a talented Principal Software Engineer to join our Developer Ecosystem team in San Mateo, California. As a key member of our team, you will be responsible for designing and building a family of first-class APIs that provide a language-agnostic non-SQL interface for all Snowflake resources.You will work closely with our product...


  • San Francisco, California, United States Perfict Global, Inc. Full time

    About Us:Perfict Global, Inc. is a leading IT consulting services provider that offers innovative workforce solutions to Fortune 500 companies. Our team of experienced professionals strives to bring together the best technologies to manage clients' complex business and technology needs.We provide excellent benefits, including medical, dental, and vision...

  • Cloud Developer

    4 weeks ago


    San Francisco, United States Intelliswift Software Inc Full time

    Job Title: Cloud Developer - IIDuration: 12 MothsLocation: San Francisco, CA, USAPay Range: $100 per hourIntelliswift Software Inc. conceptualizes, builds, and supports the world's most amazing technology products and solutions. Our team of rich experts from diverse backgrounds contributes to making Intelliswift one of the most reliable partners in IT and...

Cloud-Based Web APIs Penetration Testing Support Consultant

2 months ago


San Francisco, United States New Era Technology Full time
Job DescriptionJob DescriptionAbout the opportunity:
New Era Technology is seeking a a Penetration Testing Support Consulting Resident to conduct testing for web APIs for indirect object access permissions and controls on AWS. This is a 5-month remote opportunity.

Key Responsibilities
  • Write RSpec tests in Ruby to ensure code quality. 
  • Set up API endpoint calls using Postman or a similar tool for testing purposes. 
  • Create Python scripts for reporting and for triaging issues. 
  • Establish a test environment to confirm test case validity. 
  • Research API endpoint functionality to clarify desired behaviors. 
  • Verify that each API endpoint functions as intended and meets the specified requirements. 
  • Identify the owner of each endpoint by reviewing code and documentation. 
  • Troubleshoot any issues that arise to maintain smooth testing operations. 
  • Analyze test results and diligently report any defects discovered. 
  • Continuously enhance test automation by updating and maintaining the test framework. 
  • Communicate progress and address any issues through regular status reports. 
  • Collaborate with API developers to tailor testing and analysis. 
  • Conduct penetration testing for web APIs for indirect object access permissions and controls on AWS.
  • Document and report detailed penetration testing results, findings and gaps. 
  • Support analysis, recommendations and potential remediation of identified vulnerabilities.
  • Collaborate with related Information Security Trust Assurance and Threat Detection teams to characterize potential security vulnerabilities.
  • Validate and/or enhance testing protocols, tools or scripts to optimize penetration testing processes.
  • Independently handle complex issues with minimal supervision, while escalating only the most complex issues to appropriate staff.
  • Provide guidance and recommendations to stakeholders responsible for security remediation actions to close identified gaps and remediation validation testing.
  • Develop comprehensive and accurate reports and presentations for various consumers of penetration testing results.
  • Developing, extending, or modifying exploits, shellcode, or exploit tools.

Required Skills
  • 5+ years experience conducting penetration testing. 
  • 3+ years experience conducting vulnerability analysis. 
  • Test Automation and Frameworks: Proficiency in writing automated tests using RSpec, a testing tool for Ruby. Understanding of test automation frameworks and principles is crucial. 
  • Programming Knowledge: Strong knowledge of Ruby programming language to write tests. Working knowledge of Python and possibly some familiarity with other languages used in the codebase. 
  • API Testing: Experience with API testing tools such as Postman or similar software to create and send requests to API endpoints and analyze responses. 
  • Environment Setup: Ability to set up and maintain test environments, including configuration of databases, servers, and other services that tests depend on. 
  • Troubleshooting: Skills in identifying, diagnosing, and resolving issues that arise during testing. This often requires a good understanding of the system being tested and problem-solving skills. 
  • Version Control Systems: Familiarity with version control systems like Git for searching through code and documentation to identify endpoint owners. 
  • Defect Tracking: Experience with defect tracking and reporting tools to log and manage issues discovered during testing. 
  • Continuous Integration/Continuous Deployment (CI/CD): Understanding of CI/CD principles to integrate automated tests with build pipelines. 
  • Hands on experience with the following: 
  • Scripting Languages (e.g., Python, PowerShell, etc.) 
  • Linux Operating Systems 
  • AWS Security Services 
  • AWS Infrastructure Services 
  • Network protocols (e.g., TCP/IP, UDP, ARP, DNS, and DHCP) 
  • Ability to identify and exploit web vulnerabilities (XSS, CSRF, SQLi, SSRF, arbitrary file upload, etc.) 
  • Ability to identify and exploit mobile vulnerabilities (API issues, insecure storage, memory corruption, deep links, etc.) 
  • Cryptography (e.g., PKI, TLS, etc.)
  • Web Application penetration testing 
  • Working knowledge of Identity and Access Management and Authentication Protocols including Active Directory and Entra ID 
  • Familiarity with the following: 
  • Windows Operating Systems 
  • Source code vulnerability analysis 

Preferred Skills                                    
  • Taking initiative and being proactive 
  • Excellent interpersonal communication skills with strong spoken and written English. 
  • Collaborative team worker – both in person and virtually using MS Teams or similar. 
  • Excellent analytical skills. 
  • Organizational skills with attention to detail. 
  • Ability to leverage existing documentation. 
  • Excellent documentation skills; demonstrated proficiency in Microsoft Office including Word, Excel and PowerPoint. 
  • Business outcomes mindset. 
  • Solid balance of strategic thinking with detailed orientation. 
  • Self-starter, ability to take initiative. 
  • Flexibility to accommodate working across different time-zones. 
Required Education
  • Bachelor's degree (BA/BS) from four-year college or university; or equivalent training, education, and work experience. Cybersecurity certifications such as EC-Council CEH, CISSP, CISM a plus.

About Us:       
New Era Technology is a community of like-minded, like-hearted people who share the same vision and values: Community, Integrity, Agile, and Committed.

These visions and values tie into our daily work, to serve as a trusted technology adviser to our customers. Often a single project leads to a long-lasting partnership where we have the continued privilege of helping our customers deliver valuable technology solutions that improve efficiencies and experiences to their employees and customers.

EEO Statement:
New Era Technology is proud to be an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, marital status, national origin, genetics, disability, age, or veteran status. 
 

Powered by JazzHR

sWRp5V67lR