5+ years in Application Security, Pentesting, or Security Engineering Expert knowledge of the OWASP Top 10 and common web attack vectors Experience with testing AI/LLM applications and OWASP LLM Top 10 vulnerabilities Proficiency in reading and auditing Node.js code Ability to write automation scripts in Python Experience with Burp Suite Professional, OWASP ZAP, and commercial SAST/DAST/SCA platforms Excellent communication skills