Excellent understanding of web application security and secure coding.
Proficient in Application Security concepts and OWASP Top 10.
Understanding of vulnerability assessment/penetration testing.
Experience with application vulnerability scanning tools (e.g., IBM AppScan, HP Web Inspect, Acunetix, NTO Spider, BurpSuite, Nessus, Nexpose)
In-depth knowledge and experience with OWASP and SANS standards.
Web App Security (Burp Suite, Manual & Automated Testing, Comfortable in Black Box/WhiteBox testing with the capability of finding business logic vulnerabilities, OWASP testing guide).
Good to Have Skills:
Rich script development in Perl/Ruby/Php/Python will be added advantage.
Relevant certifications (OSCP/CSSLP/CISSP) will be an added advantage