Application Security Tester
Job title: Application Security Tester in USA at Gusto
Company: Gusto
Job description: About GustoGusto is a modern, online people platform that helps small businesses take care of their teams. On top of full-service payroll, Gusto offers health insurance, 401(k)s, expert HR, and team management tools. Today, Gusto offices in Denver, San Francisco, and New York serve more than 400,000 businesses nationwide.Our mission is to create a world where work empowers a better life, and it starts right here at Gusto. That's why we're committed to building a collaborative and inclusive workplace, both physically and virtually. Learn more about our .About the Role:As an Application Security Tester you will be a part of the Security Partners team at Gusto, you will be helping us keep our customers secure by proactively identifying vulnerabilities in our applications. The role will be focused on completing comprehensive security assessments of internally-developed web, mobile, AI, and API applications, from testing plan creation through to code review and vulnerability reporting to development teams.About the Team:The Security Partners team at Gusto acts as a crucial bridge between Product Development and Security, advocating for both sides to ensure secure product development. Their mission is to provide timely, trustworthy, and actionable security advice that mitigates overall risk while supporting the rapid pace of product development. They also serve as the consistent point of contact for all product security concerns.Here's what you'll do day-to-day:
- Design and implement testing plans for new features and applications.
- Perform independent security assessments of internally developed web, mobile, AI, and API applications.
- Clearly document and communicate vulnerability findings to product development teams.
- Develop and maintain automated security testing tools.
- Perform code reviews on new and existing codebases.
- Stay up-to-date with the latest security threats, vulnerabilities, and attack techniques.
- 4+ years of experience in penetration testing and application security.
- Ability to effectively apply security testing methodologies.
- Deep understanding of web application security and vulnerabilities (XSS, SQL injection, CSRF, etc.)
- Familiarity with AI security threats (prompt injection, model abuse, etc.)
- Passion for learning and staying up-to-date with the latest security threats, vulnerabilities, and tools.
- Proficiency in Ruby, Python, and/or Javascript.
- Familiarity with REST and GraphQL.
Expected salary: $147000 - 164000 per year
Location: USA
Apply for the job now!
[ad_2]
Apply for this job