Security Engineer / Penetration Tester (Web and Mobile)
TechOps Ghana Ivory Coast (Côte d'Ivoire) Remote

About the Position

RightCom has been revolutionizing customer experience in Africa for more than a decade. Creating innovative experiences that make customer journey seamless, personalized, simple and outstanding, RightCom empowers businesses in approximately 30 markets to join and thrive in the experience economy.

Our CX platform – RightCom XP – allows businesses to anticipate customer needs and identify upselling and cross-selling opportunities regardless of the touchpoint (mobile app, website, location, contact center, as well as agent network) while RightCom OS offers next-gen managed services (MS) .

Our beliefs are the foundation for how we conduct business every day. We live each day guided by our core values of Creativity, Trust, and Customer Success. Together, our values ensure that we work together as one global team with our customers at the center of everything we do – and they push us to ensure we take care of ourselves, each other, and our communities.

We are embarking on an innovation agenda as an organization-wide transformation of people and technology capabilities to enable digital-first delivery for every product and service. Our ambition is to establish digital and data points that allow us to: attract, retain and develop customers; secure existing revenue streams; and innovate where we identify a competitive advantage.

We are seeking one (1) experienced Penetration Tester to ensure compliance with the strictest security standards for our CX product line. The candidate will be responsible for identifying, prioritizing, and reporting security vulnerabilities within our web applications and mobile platforms (iOS and Android). This role requires a “hacker’s mindset” to proactively detect vulnerabilities before they can be exploited, thereby ensuring the security of our international clients’ data.

Responsibilities

  • Web Application Penetration Testing
  • Conduct in-depth, manual, and automated security assessments of web applications based on the OWASP Top 10 framework.
  • Mobile app security testing:
  • Conduct security audits for native and hybrid mobile applications (Android and iOS), with a focus on local storage, unsecured communications, and binary analysis.
  • API Security:
  • Test RESTful APIs and microservices to detect authentication flaws, data exposure, and injection vulnerabilities.
  • Vulnerability Assessment:
  • Conduct regular DAST/SAST (dynamic and static analysis) tests and provide expert manual validation of the results.
  • Proofreading assistance:
  • Work with the development and infrastructure teams to provide clear and actionable guidance on how to address identified vulnerabilities.
  • Reports:
  • Create comprehensive technical reports for developers and summaries for stakeholders, detailing the risk level and impact of the vulnerabilities discovered.
  • Compliance:
  • Ensure that all testing activities comply with industry standards such as NIST, PTES, and the GDPR/local African data protection regulations.

Qualifications

  • Experience: At least 5 years of experience in penetration testing and vulnerability management.
  • Specialization: Proven experience in testing complex web architectures and mobile ecosystems.
  • Technical tools: Proficiency in the industry’s standard tools, including Burp Suite Professional, OWASP ZAP, Metasploit, Kali Linux, MobSF, and Postman.
  • Methodologies: In-depth knowledge of OWASP (Web and mobile) and SANS 25 standards.
  • Scripting skills: Ability to write custom scripts in Python, JavaScript, or Bash to automate testing tasks.
  • Certifications (preferred): OSCP (Offensive Security Certified Professional), CEH (Certified Ethical Hacker), or eMAPT (Mobile Application Penetration Tester).
  • Esprit d’analyse : Une grande capacité à enchaîner des vulnérabilités de bas niveau pour mettre en évidence des risques commerciaux à fort impact.
  • Communication: Excellent written and verbal English skills, with the ability to explain complex security concepts to non-technical team members.

What We Offer

  • A work environment built on strategic platforms, with IT security at the heart of all its customer experience initiatives;
  • A leading provider of data security solutions for international brands;
  • Competitive pay and bonuses tied to customer satisfaction.

If you’re passionate about cybersecurity and want to help protect a rapidly expanding digital ecosystem, we’d love to meet you.

Apply now to help shape the future of the customer experience in Africa!

Need help?
No problem. Chat with our sales experts or request a call back
  • This field is for validation purposes and should be left unchanged.
Feedback
Powered by