NetSPI

Security Consultant II (Mobile Application Penetration Tester)

NetSPI$95K — $115K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Computer Science, Engineering, Math, or IT; equivalent experience accepted
  • 2-3 years of mobile application penetration testing experience
  • Familiar with offensive tools like Kali Linux and Burp Suite
  • Experience developing Frida tools for exploiting vulnerabilities
  • Knowledge of mobile data security and operating systems (Android/iOS)
  • Understanding of OWASP Top 10 and security frameworks
  • Effective written and verbal communication skills

Responsibilities

  • Conduct penetration testing on mobile applications and APIs
  • Identify vulnerabilities in data storage and communications
  • Create and deliver detailed penetration testing reports
  • Research and develop new penetration testing techniques
  • Manage administrative tasks for smooth consulting operations

Benefits

  • Opportunities for professional development and continuous learning
  • Collaborative work environment with a team of experts
  • Exposure to diverse client environments and challenges
  • Opportunity to work with innovative tools and methodologies
  • Flexible work hours for project deadlines
Full Job Description
Join the mission as a Security Consultant II. We are seeking a skilled and detail-oriented Penetration Tester to conduct thorough security assessments, identify vulnerabilities, and provide expert recommendations to strengthen our clients' security posture. As a Penetration Tester supporting mobile applications, you will work closely with clients to deliver clear, actionable reports and contribute to the development of security best practices.

Responsibilities:
  • Conduct penetration testing engagements on mobile applications and underlying APIs
  • Identify insecure data storage, communications, or cryptography in mobile applications
  • Create, deliver, and collaborate on penetration testing reports in diverse client environments, maintaining client-specific processes, reporting standards, and access protocols to help improve their security posture
  • Research and develop innovative techniques, tools, and methodologies for penetration testing services, alongside commitment to improvement and execution on NetSPI specific products and processes
  • Perform administrative tasks related to day-to-day consulting activities to ensure smooth business and engagement operations.

Minimum Qualifications:
  • Bachelor's degree or higher required, with a concentration in Computer Science, Engineering, Math, or IT preferred, or equivalent experience
  • Minimum of 2-3 years of work experience in mobile application penetration testing
  • Familiarity with offensive tools, based on applicable skillset (e.g., Kali Linux, Burp Suite, Frida, Drozer, Objection, Ghidra)
  • Experience developing Frida tools to bypass application protections or exploit vulnerabilities
  • Understanding of mobile application data security, communications, and sandboxes
  • Knowledge of Android and iOS operating systems
  • Familiarity with offensive and defensive IT concepts and protocols
  • Extensive understanding of the OWASP Top 10 and various security frameworks
  • Working knowledge of Windows, Linux and MacOS operating systems internals
  • Ability to work independently and as part of a team
  • Proficient communication skills, both written and verbal
  • Willingness to travel up to 5-10%
  • This position requires an 8-hour workday, with occasional evenings or weekends necessary to meet project deadlines or critical needs

Preferred Qualifications:
  • Experience mentoring or coaching to growing team members, while sharing knowledge externally through blogs, hosting webinars, or presenting at conferences
  • Experience in one or more of the following programming or scripting languages (e.g., Ruby, Python, Perl, C, C++, Java, and C#)
  • Offensive cybersecurity certifications (e.g., GXPN, GPEN, OSCP, CISSP, GWAPT)
  • Experience in ARM reverse engineering

About NetSPI

NetSPI is a leading provider of application and network security testing solutions that support organizations in scaling and operationalizing their security programs. The company's solutions are designed to help businesses identify vulnerabilities and prioritize remediation efforts to reduce risk. NetSPI's offerings include penetration testing, vulnerability management, and application security testing services. The company serves clients across a range of industries, including financial services, healthcare, and retail.
Learn more about NetSPI
Size
500 employees
Industry
Founded
2001
5 Year Trend
+50%
Revenue
$30 million

Similar Jobs

More Jobs at NetSPI

More Information Technology Jobs

Find similar Security Consultant II (Mobile Application Penetration Tester) jobs: