Padmi
Wolters Kluwer logo
Wolters Kluwer

AI-powered professional solutions · Cloud-based platforms

IT Security Analyst - Penetration Testing (Mobile Application & Thick Client Penetration Testing)

ChennaiPosted 2 months ago
CybersecuritySeniorFull Time; Regular
Apply at Wolters Kluwer

Opens the source posting on shine.com

Source description

About the role

View original

As an IT Security Analyst (Mobile Application & Thick Client Penetration Testing) at Wolters Kluwer Global Business Services, you will play a crucial role in ensuring the operation and delivery of critical security services to protect and enhance the confidentiality, integrity, and availability of Wolters Kluwer assets. Your responsibilities will include assisting in efforts to strengthen the secure configuration and hardening of systems within Wolters Kluwer, demonstrating proficiency in systems configuration, data gathering, and information synthesis in various areas of IT security including penetration testing. You will also interface with and respond to internal business unit IT representatives and stakeholders at all levels during the performance of your duties. Responsibilities: - Be a subject matter expert for complex application assessments, focusing on Mobile (iOS/Android) and Thick Client (Desktop) architectures. - Conduct deep-dive mobile assessments by performing manual penetration testing and runtime manipulation on complex iOS and Android applications, targeting logic flaws and hybrid framework vulnerabilities. - Perform thick client & protocol analysis by reverse engineering desktop applications (.NET, C++, Java) and intercepting non-HTTP proprietary traffic to identify security gaps in legacy and modern client-server architectures. - Develop custom exploits by writing custom scripts (Python, Frida, etc.) to demonstrate proof-of-concept exploits and bypass client-side controls. - Partner with developers for strategic remediation by providing code-level guidance and secure design patterns to prevent security vulnerabilities. - Build internal tools and integrate security checks into the CI/CD pipeline to scale offensive security capabilities. Please note that the company values authenticity and expects candidates to participate in interviews without the assistance of AI tools or external prompts. The interview process is designed to assess your individual skills, experiences, and communication style. Furthermore, applicants may be required to appear onsite at a Wolters Kluwer office as part of the recruitment process. As an IT Security Analyst (Mobile Application & Thick Client Penetration Testing) at Wolters Kluwer Global Business Services, you will play a crucial role in ensuring the operation and delivery of critical security services to protect and enhance the confidentiality, integrity, and availability of Wolters Kluwer assets. Your responsibilities will include assisting in efforts to strengthen the secure configuration and hardening of systems within Wolters Kluwer, demonstrating proficiency in systems configuration, data gathering, and information synthesis in various areas of IT security including penetration testing. You will also interface with and respond to internal business unit IT representatives and stakeholders at all levels during the performance of your duties. Responsibilities: - Be a subject matter expert for complex application assessments, focusing on Mobile (iOS/Android) and Thick Client (Desktop) architectures. - Conduct deep-dive mobile assessments by performing manual penetration testing and runtime manipulation on complex iOS and Android applications, targeting logic flaws and hybrid framework vulnerabilities. - Perform thick client & protocol analysis by reverse engineering desktop applications (.NET, C++, Java) and intercepting non-HTTP proprietary traffic to identify security gaps in legacy and modern client-server architectures. - Develop custom exploits by writing custom scripts (Python, Frida, etc.) to demonstrate proof-of-concept exploits and bypass client-side controls. - Partner with developers for strategic remediation by providing code-level guidance and secure design patterns to prevent security vulnerabilities. - Build internal tools and integrate security checks into the CI/CD pipeline to scale offensive security capabilities. Please note that the company values authenticity and expects candidates to participate in interviews without the assistance of AI tools or external prompts. The interview process is designed to assess your individual skills, experiences, and communication style. Furthermore, applicants may be required to appear onsite at a Wolters Kluwer office as part of the recruitment process.

One address, no account. We’ll tell you when matching roles go live.

More at Wolters Kluwer

Related open roles

View all roles