Senior Security Consultant (Secure Code Review) Job at NetSPI LLC, Minneapolis, MN

S2czS2E2cVJrWi80M1BCbnB0OGtKVHZ2QlE9PQ==
  • NetSPI LLC
  • Minneapolis, MN

Job Description

Job Description

Job Description

NetSPI® pioneered Penetration Testing as a Service (PTaaS) and leads the industry in modern pentesting. Combining world-class security professionals with AI and automation, NetSPI delivers clarity, speed, and scale across 50+ pentest types, attack surface management, and vulnerability prioritization. The NetSPI platform streamlines workflows and accelerates remediation, enabling our experts to focus on deep dive testing that uncovers vulnerabilities others miss. Trusted by the top 10 U.S. banks and Fortune 500 companies worldwide, NetSPI has been driving security innovation since 2001.

NetSPI is on an exciting growth journey as we disrupt and improve the proactive security market. We are looking for individuals with a collaborative, innovative, and customer-first mindset to join our team. Learn more about our award-winning workplace culture and get to know our A-Team at

NetSPI is seeking a Senior Security Consultant who will serve as a resource for delivery of secure code review and web application penetration assessments.  This position requires an understanding of various web technologies, enterprise secure development and risk management. In addition, it requires experience with application security assessments/testing, as well as demonstrated competencies in problem solving, client service, written/verbal communication, and project execution.

Responsibilities:

  • Conduct in-depth penetration testing and secure code review assessments on web applications
  • Dynamically exploit vulnerabilities found in codebase and correlate insecure coding practices into dynamic application vulnerabilities
  • Deliver secure code review assessment on programming languages such as Java, C#, Python, C/C++, Perl, PHP
  • Analyze and identify security vulnerabilities in source code using both automated and manual static analysis tools and techniques
  • Train and assist developers in writing secure software and remediating existing vulnerabilities
  • Provide oversight to peers on service lines through QA process
  • Mentor and assist team members in effectively delivering assessments and enhancing skillsets
  • Present detailed penetration test findings to clients and assist in remediation planning
  • Engage in research to develop new penetration testing methods, tools, and innovative exploit techniques
  • Contribute to the cybersecurity community through tools, presentations, white papers, and blogging
  • Maintain consistency with other internal requirements related to day-to-day administration tasks (time keeping, status updates to clients, etc.)

Minimum Qualifications:

  • Minimum of 3-5 years of experience in application security including both secure code review and web application penetration testing
  • Exceptional familiarity in all Burp Suite functions. Published Burp extensions and ability to create new Burp Suite extensions preferred
  • Detailed understanding of the OWASP Top 10 and CWE Top 25 issues with focus on ability to identify and remediate vulnerability in source code
  • Ability to explain risk and business impact of security vulnerabilities to variety of audience
  • Bachelor’s degree or higher, preferably in Computer Science, Engineering, Mathematics, IT, or a related field; equivalent experience will also be considered.
  • Willingness to travel up to 25%

Preferred Qualifications:

  • Ability to provide technical and QA oversight on Web Application Penetration Testing and Secure Code Review service lines.
  • Experience in detecting, analyzing and providing recommendation guidance on security vulnerabilities using SAST and/or manual secure code review in at least two of the following languages: Java, C#, PHP, Python, C/C++
  • Experience in software development in at least one server-side programming language

We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law.  

Job Tags

Worldwide,

Similar Jobs

Consolidated Supply Co.

Water Works Project Manager Job at Consolidated Supply Co.

 ...Job Description Job Description Project Manager (Water Works) Consolidated Supply Co. a leading wholesale distributor of plumbing, hydronic heating, and water works products, has an opening for a Project Manager. This position represents the company and its products... 

McDonald's

Daytime cashier- 18 years-old and up Job at McDonald's

 ...We believe in letting you do you. If you're looking for a part-time job that supports your full-time ambition, you've come to the...  ...schedule - part time or full time - give us a try. You must be 16 years of age or older to work as a Crew Member at McDonald's. Additional... 

Top Level Promotions

Office Administration Assistant - Work from Home Job at Top Level Promotions

 ...Work from Home Data Entry & Office Administration Remote Online Role About the Job We are seeking motivated individuals...  ...environment for remote work, Lancaster is an ideal location for home-based administrative roles. Industries We Work With... 

The UPS Store #3764

Sales Associate - The UPS Store 3683 Job at The UPS Store #3764

 ...outstanding customer service to walk-in customers and telephone inquiries* Continuously practices good listening skills with customers, UPS Store team members, and leadership* Takes ownership of the customer's shipping needs and offers viable solutions* Takes action to... 

AffirmedRx, a Public Benefit Corporation

Summer Internship, Accounting/Finance Job at AffirmedRx, a Public Benefit Corporation

 ...operations, financial reporting, and process improvements. This internship is an excellent opportunity for a student or recent graduate to...  ...opportunities to all employees and applicants for employment. Remote employees are expected to maintain a professional work environment...