Penetration Testing - Purple Drive Technologies - Santa Clara, CA
Purple Drive Technologies
Overview:
Role: Penetration Testing / Security Test Engineer
Location: Santa Clara, CA
Role Summary
The Application Security & Penetration Testing Specialist will be responsible for conducting security assessments across web, mobile, thick client, and instrumented applications. The role includes vulnerability analysis, criticality-based reporting, and close collaboration with development, application, and product teams to support remediation. The position also provides platform administration and analytics support for SAST, DAST, SCA, and vulnerability management tools, along with cloud and infrastructure assistance as required.
Key Responsibilities
Instrument / Network Penetration Testing
• Conduct security testing of instrumented or connected applications, including exposed network services and interfaces
• Use Nessus / Tenable.SC for vulnerability scanning and configuration assessment
• Analyse and prioritize vulnerabilities based on criticality
• Prepare detailed vulnerability reports and support application teams during remediation
Web Application Penetration Testing
• Perform security scanning and manual penetration testing of in-scope web applications
• Identify, analyze, classify, and prioritize vulnerabilities based on agreed standards such as:
o OWASP Top 10
o CVSS / CVS
o Organization-specific security standards
• Produce criticality-based vulnerability reports with clear remediation guidance
• Provide clarification and consultation support to Application, Development, and Asset Owner teams during vulnerability remediation
Mobile Application Penetration Testing
• Conduct security testing of in-scope mobile applications (Android/iOS)
• Analyze identified vulnerabilities and prioritize them based on severity and business risk
• Generate criticality-based reports for stakeholders
• Support application teams with remediation-related clarifications
Thick Client Penetration Testing
• Perform security assessments of thick client applications
• Analy