NetSPI · 2 weeks ago
Security Consultant II (Mobile Application Penetration Tester)
NetSPI is a leader in Penetration Testing as a Service (PTaaS) and is seeking a Security Consultant II to enhance their proactive security offerings. The role involves conducting security assessments on mobile applications, identifying vulnerabilities, and delivering actionable reports to improve client security.
ComputerCyber SecurityInformation TechnologyNetwork SecurityService Industry
Responsibilities
Conduct penetration testing engagements on mobile applications and underlying APIs
Identify insecure data storage, communications, or cryptography in mobile applications
Create, deliver, and collaborate on penetration testing reports in diverse client environments, maintaining client-specific processes, reporting standards, and access protocols to help improve their security posture
Research and develop innovative techniques, tools, and methodologies for penetration testing services, alongside commitment to improvement and execution on NetSPI specific products and processes
Perform administrative tasks related to day-to-day consulting activities to ensure smooth business and engagement operations
Qualification
Required
Bachelor's degree or higher required, with a concentration in Computer Science, Engineering, Math, or IT preferred, or equivalent experience
Minimum of 2-3 years of work experience in application penetration testing
Familiarity with offensive tools, based on applicable skillset (e.g., Kali Linux, Burp Suite, Metasploit, Nessus, Frida, Drozer, Objection, Ghidra)
Understanding of mobile application data security, communications, and sandboxes
Knowledge of Android and iOS operating systems
Familiarity with offensive and defensive IT concepts and protocols
Extensive understanding of the OWASP Top 10 and various security frameworks
Working knowledge of Windows, Linux and MacOS operating systems internals
Ability to work independently and as part of a team
Proficient communication skills, both written and verbal
Willingness to travel up to 5-10%
This position requires an 8-hour workday, with occasional evenings or weekends necessary to meet project deadlines or critical needs
Preferred
Experience mentoring or coaching to growing team members, while sharing knowledge externally through blogs, hosting webinars, or presenting at conferences
Experience in one or more of the following programming or scripting languages (e.g., Ruby, Python, Perl, C, C++, Java, and C#)
Offensive cybersecurity certifications (e.g., GXPN, GPEN, OSCP, CISSP, GWAPT)
Experience in ARM reverse engineering
Experience developing Frida tools to bypass application protections or exploit vulnerabilities
Company
NetSPI
NetSPI is a cybersecurity company that offers enterprise security testing and attack surface management services.
H1B Sponsorship
NetSPI has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (1)
2024 (3)
2023 (1)
2022 (2)
2021 (5)
2020 (5)
Funding
Current Stage
Late StageTotal Funding
$500MKey Investors
Kohlberg Kravis Roberts
2022-10-05Private Equity· $410M
2021-05-12Private Equity· $90M
2017-04-21Private Equity
Recent News
2026-01-12
2025-11-24
Company data provided by crunchbase