17 days ago

Logo of Access Softek

Junior Mobile/Web Security Tester

Access Softek

Remote
Join Access Softek, an innovative software company revolutionizing digital banking with our cutting-edge online and mobile banking solutions. With a commitment to innovation through mobile-first technology, machine learning, and AI, we are seeking a Penetration Tester to ensure the security and integrity of our products. This role involves conducting rigorous penetration tests across our web and mobile banking platforms to identify vulnerabilities and improve our cybersecurity measures. As a full-time, remote position, we offer the flexibility to work from anywhere in the world, contributing to a team that reaches millions of users and prioritizes digital security and innovation.
As a Junior Mobile/Web Penetration Tester, you will help with assessing the security level of mobile applications.

Responsibilities:

  • Assist in conducting security testing of mobile (primary focus) and web applications under guidance of senior team members.
  • Follow structured testing processes to identify common vulnerabilities.
  • Help document findings in clear and concise reports for both technical and non-technical audiences.
  • Support the team in reproducing issues, tracking bugs, and verifying fixes.
  • Collaborate with QA and development teams to ensure security is integrated into the testing process.
  • Participate in planning and organizing small-scale security assessment tasks.
  • Learn and apply security best practices and remediation techniques.

Requirements:

  • Demonstrated interest in Cyber Security, especially offensive security for Web and Mobile applications.
  • Hands-on experience with penetration testing — through academic projects, internships, freelance, or personal initiatives.
  • Up to 1 year of experience in commercial projects is a strong advantage.
  • Familiarity with key InfoSec concepts, frameworks, and standards (e.g., ISO/IEC 27001-27002).
  • Solid understanding of how modern Web and Mobile applications are built and function.
  • Basic knowledge of network and web technologies — including the TCP/IP stack, HTTP/HTTPS protocols.
  • Understanding of common application vulnerabilities (e.g., OWASP Top 10, MASWE) and the fundamentals of security testing.
  • Exposure to mobile application security standards and practices (e.g., OWASP MASVS/MASTG).
  • Experience with popular security testing tools (e.g., Burp Suite, OWASP ZAP, MobSF).
  • Basic scripting skills in Python, Bash, or JavaScript.
  • Strong analytical mindset and attention to detail.

Our benefits:

  • Fully remote work.
  • Home office equipment (computer, additional monitor, etc.), if necessary.
  • Internet compensation (50$ per month).
  • Long-term employment.
  • Paid vacation and days off on national holidays.
  • Paid sick leave and internal medical insurance policy.
  • English at special corporate rates.
  • Community of practice, regular knowledge sharing among colleagues.
  • Friendly and easy-going international team and colleagues.