Web Apps QA Engineer at Remote, Remote, USA |
Email: [email protected] |
From: Anju Pathak, Tek Inspirations LLC [email protected] Reply to: [email protected] Job Description - Web Apps QA Engineer Hybrid in Richmond, VA (Need only Local candidate) State of VA Need Linkedin with Profile Picture and exact Location 2-3 submissions max! Need LinkedIn and address proof In this role, the candidates primary focus will be web application security testing by designing and performing manual and automated testing on applications to identify risks such as SQL Injection, Cross Site Scripting (XSS), Cross Site Request Forgery (CSRF), and other common web security vulnerabilities. Requirements: 12+ years of hands-on experience in software quality assurance. 8+ years of experience using test automation technologies. A masters degree in computer science, Information Technology, or a related field. Perform both automated and manual testing to identify vulnerabilities, security flaws, and weaknesses in systems. Leverage OWASP tools like OWASP ZAP, OWASP Dependency-Check, and others to conduct security assessments and vulnerability scans. Technical knowledge of threat modeling, code review, penetration testing, familiarity with security protocols, understanding of vulnerabilities, scripting languages like Python, Bash, Power, etc. for automation, knowledge of web application security, and the ability to analyze logs and network traffic to identify potential security issues. Perform manual and automated testing on applications to identify risks such as SQL Injection, Cross-Site Scripting (XSS), Cross-Site Request Forgery (CSRF), and other common web security vulnerabilities. Stay current with the latest web application security trends, OWASP vulnerabilities, and emerging attack techniques. Proficiency in penetration testing tools such as Burp Suite, Nessus, Metasploit, Kali Linux, Wireshark, and others. Strong knowledge of web application security (OWASP Top 10), network security, and cloud security. Strong understanding of TCP/IP, HTTP, DNS, and other network protocols. Certifications such as CISSP, CEH, AWS Certified Security Specialty, or similar are a plus. Testing tools: DBeaver (or similar), Beyond Compare, OWASP tools like OWASP ZAP, OWASP Dependency-Check. Automation testing tools: Selenium. Test artifact management: Zephyr. API testing tools: SoapUI, Postman. Defect and task tracking: Jira. Keywords: quality analyst Virginia Web Apps QA Engineer [email protected] |
[email protected] View All |
09:21 PM 03-Mar-25 |