Penetration Tester

1 week ago


Bengaluru, Karnataka, India Shell Full time

The Role:

Where you fit in?


The purpose of the IRM Function is to ensure that Shell is addressing Information Risks in an effective and efficient manner, commensurate with Shell risk appetite, and being seen as an industry leader among peers and key suppliers of security services.

The Information Risk posture of Shell includes a wide variety of potential business impacts, such as HSSE impacts, production loss, financial and maintenance operations loss, loss of Most Confidential bidding data.

The IRM Function defines requirements for the assessment of Information Risks, defines the selection of mandated IT Controls, and defines and executes assessments of the design and operational effectiveness of these controls.

The function organises communication campaigns to impact the behaviour of business and IT staff where it relates to Information Risks.

In addition to these preventative measures, the IRM Function includes a Cyber Resilience function to understand the cyber threat landscape and the vulnerabilities to cyberattacks in IT systems and services, to detect malicious behaviour and to respond to incidents.


What's the role?**As part of the Information Risk Management function, the CyberDefence capability has specific focus on identifying cyber threats, discovery of IT vulnerabilities, monitoring for cyber intrusions and response to security incidentsAs part of the CyberDefence capability the Penetration testing team has the following main areas of focus:
  • To find major vulnerabilities in IT landscapes where Shell data is hosted before they are being exploited for malicious purposes.
  • To prioritize and help remediate vulnerabilities as soon as possible where required.
A Penetration tester in this team you are responsible:

  • To plan, scope, execute and report on attack & penetration tests on new IT developments and hypothetical threat scenarios.
  • To close high risk vulnerabilities as soon as possible and register other vulnerabilities for risk priorization and remediation where required.

Accountabilities

Penetration Testing

  • Support the Vulnerability Lead in planning penetration tests based on new IT developments and hypothetical threat scenarios and find appropriate budget and sponsors.
  • Scope the tests in more detail and find information on network address and accounts.
  • Where necessary to help find additional expertise necessary to execute the tests.
  • Execute the tests preventing Business disruption as much as possible.
  • Report on findings, fixing high risk vulnerabilities as soon as possible and registering other vulnerabilities for later risk priorization and remediation where required.

Vulnerability Scanning

  • Operate periodic vulnerability scanning tools and services such as Nexpose, Veracode and others.
  • Support the Vulnerability Lead in consolidating the vulnerability scanning tools where possible.
  • Integrate reporting with other CyberDefence data in IRM workflow system (Collective) and data analytics solution (IRM investigation platform).

What we need from you?
Experience and Qualifications required.

  • Is a knowledgeable, creative and responsible IT security professional.
  • Has excellent analytical skills and appreciates a technical challenge.
  • Has a passion for IT technology and is able to share that with other members of the team.
  • Has good written and verbal communication skills and provides wellinformed advice.
  • Produces high quality deliverables in terms of both content and presentation

Examples of deliverables include:
reports, presentations and reasoned arguments.

  • Demonstrates an understanding of the issues of interest to Shell and proposes viable solutions within the scope of own expertise, taking into account the needs of those affected.
  • Maintains knowledge and experience of current practice within own area of expertise and is aware of current developments within own area of expertise.
  • Develops and maintains knowledge of Cyber security and maintains an awareness of current developments.
  • Promotes transfer of knowledge and awareness of information security to those in related areas.
  • Is comfortable working virtually.
  • Is able to think and act like a hacker using his creativity to bypass IT defences.
  • Has at least 1 year experience in IT security and preferably experience in attack and penetration testing/ethical hacking or technical IT audits.
  • Has a solid understanding of IT networks and operating systems such as Windows and Unix/Linux.
  • Has experience with analysing network traffic using tools such as tcpdump, wireshark.
  • Has experience using open source scanning tools such as nmap, nessus, metasploit and/or commercial tools such as Rapid7, Quallys.
  • Has experience with scripting tools and programming languages such as Perl, Python, C, C++, VBS, Java and analytical and reporting tools such as Excel, Sharepoint and preferably Splunk.
  • Has relevant certifications such as, CISSP, SANS and preferably:
  • GIAC Penetration Tester


  • Bengaluru, Karnataka, India CSG Talent Full time

    Junior Penetration TesterAre you an up-and-coming Penetration tester within Cybersecurity or Medical Devices?**Do you want the opportunity to and grow develop in this field with an international leader?**This is a fantastic opportunity to join a world leading provider of technical services. We provide a customer centric approach to our solutions that are...


  • Bengaluru, Karnataka, India Resillion Full time

    Company Description**_Resillion is a global company with end-to-end capabilities: no matter your industry, your geographical location, or stage in your digital journey. With offices in North America, Europe, and Asia, Resillion will be by your side. Helping you and your organization realize your ambitions in cyber security, testing of digital media content...

  • Penetration Tester

    1 week ago


    Bengaluru, Karnataka, India Securseed Full time

    Job Title: Vulnerability Assessment and Penetration TesterCompany Overview:Securseed InfoSec is a leading cybersecurity firm dedicated to providing cutting-edge solutions to protect our clients' digital assets and sensitive information. We specialize in comprehensive vulnerability assessments, penetration testing, and security consulting services that...

  • Penetration Tester

    1 week ago


    Bengaluru, Karnataka, India Shell Full time

    Where you fit inThe purpose of the IRM Function is to ensure that Shell is addressing Information Risks in an effective and efficient manner, commensurate with Shell risk appetite, and being seen as an industry leader among peers and key suppliers of security services.The Information Risk posture of Shell includes a wide variety of potential business...

  • Penetration Tester

    1 week ago


    Bengaluru, Karnataka, India Shell Full time

    The Role:Where you fit inThe purpose of the IRM Function is to ensure that Shell is addressing Information Risks in an effective and efficient manner, commensurate with Shell risk appetite, and being seen as an industry leader among peers and key suppliers of security services.The Information Risk posture of Shell includes a wide variety of potential...

  • Penetration Testing

    1 week ago


    Bengaluru, Karnataka, India Wipro Limited Full time

    Overview:CONSULTANT Penetration TesterOVERVIEWAs a Cyber Security Analyst (IT Penetration Tester), you?ll support the team lead and be responsible for penetration testing on client and third-party IT solutions in on-premises, mobile and cloud environments.Your dutiesCoordinate small to medium test engagementsConduct technical testingProvide reports on...

  • Penetration Tester

    1 week ago


    Bengaluru, Karnataka, India Flywire Full time

    Company DescriptionAre you ready to trade your job for a journey? Become a FlyMatePassion, excitement & global collaboration are all core to what it means to be a FlyMate. At Flywire, we're on a mission to deliver the world's most important and complex payments. We use our Flywire Advantage - the combination of our next-gen payments platform, proprietary...

  • Penetration Tester

    1 week ago


    Bengaluru, Karnataka, India Terraeagle Technologies Pvt Ltd Full time

    Job BriefWe are looking for talented penetration testers who like to break software and embedded devices.In this role, you will conduct offensive security operations to emulate adversary tactics and procedures to test preventative, detective and response controls across the global technology landscape.Responsibilities: Conduct highly complex offensive...

  • Penetration Tester

    1 week ago


    Bengaluru, Karnataka, India TEKsystems Full time

    Lead engagements from kickoff with product owners through scoping engagements, penetration testing and reporting while adhering to the agreed scope and deadlines. Minimum 3+ years of experience in product penetration testing. 3+ years of experience in web, mobile (Both Android & iOS) and thick client penetration testing domains. (Recommended to have...

  • Penetration Tester

    1 week ago


    Bengaluru, Karnataka, India TEKsystems Full time

    Lead engagements from kickoff with product owners through scoping engagements, penetration testing and reporting while adhering to the agreed scope and deadlines. Minimum 3+ years of experience in product penetration testing. 3+ years of experience in web, mobile (Both Android & iOS) and thick client penetration testing domains. (Recommended to have...

  • Penetration Tester

    1 week ago


    Bengaluru, Karnataka, India TEKsystems Full time

    Lead engagements from kickoff with product owners through scoping engagements, penetration testing and reporting while adhering to the agreed scope and deadlines. Minimum 3+ years of experience in product penetration testing. 3+ years of experience in web, mobile (Both Android & i OS) and thick client penetration testing domains.(Recommended to have...


  • Bengaluru, Karnataka, India ThreatXIntel Full time

    Company DescriptionThreatXIntel is a startup dedicated to safeguarding businesses and organizations from cyber threats. Our team offers various services, such as cloud security, web and mobile security testing, cloud security assessment, DevSecOps, and more.We understand the complexity of cyber security, especially for startups. Therefore, we provide...


  • Bengaluru, Karnataka, India ThreatXIntel Full time

    Company Description ThreatXIntel is a startup cyber security company dedicated to protecting businesses and organizations from cyber threats. Our team of experienced professionals offers a range of services, including cloud security, web and mobile security testing, cloud security assessment, DevSecOps, and more. We understand that the world of cyber...

  • Penetration Tester

    1 week ago


    Bengaluru, Karnataka, India AXA Full time

    About AXAAs one of the largest global insurers, our purpose is to act for human progress by protecting what matters.Protection has always been at the core of our business, helping individuals, businesses and societies to thrive.And AXA has always been a leader, an innovator, an entrepreneurial company, fostering progress in all its dimensions.Our purpose...

  • Penetration Tester

    1 week ago


    Bengaluru, Karnataka, India Rapsys Technologies Full time

    Responsibilities:- opensource tools Devise creative and custom exploits, solutions, and techniques to discover vulnerabilities and exploitability of the- targets Knowledgeshare with team on techniques and results to continuously improve the service offering Create detailed report of findings and recommendations after testing is complete and present to...


  • Bengaluru, Karnataka, India YASH Technologies Full time

    Excellent job opportunity for Penetration Tester Location: Bangalore ,Hyderabad, Indore, Pune Job Description: 1. Total Years of experience 3-6 Years 2. Experience in Server to Server API 3. In depth Technical Remediation knowledge with little coding knowledge 4. In depth Technical Remediation knowledge with little coding knowledge 5. Good Knowledge in...


  • Bengaluru, Karnataka, India RARR Technologies Pvt Ltd Full time

    For LTIMINDTREEYears- Full Time- BANGALORE/BENGALURUJob Skills:PENETRATION TESTINGCYBER SECURITYMOBILE TESTINGWEB APIJob Description - PSO FTCThe Role: Cybersecurity Penetration Tester R&DJob Description:Overview:Lead engagements from kickoff with product owners through scoping engagements, penetration testingand reporting while adhering to the agreed scope...


  • Bengaluru, Karnataka, India MRI Software Full time

    Responsibilities: Perform manual and automated security testing techniques to simulate realworld attack scenarios. Use a variety of penetration testing tools and methodologies to identify vulnerabilities and security gaps. Write detailed reports on security findings and recommend remediation strategies. Work with crossfunctional teams to prioritize and...


  • Bengaluru, Karnataka, India Alp Consulting Limited Full time

    Mandatory Skill Sets/Expertise:5-7 years of penetration testing experience, preferably in highly regulated industries and for globalclientsProficiency with scripting and programming languagesAdvanced problem-solving skillsOSCP certification preferred but, GPEN, GWAPT, GXPN, CREST, CESG and similar certifications a plusExperience with Cobalt Strike a...


  • Bengaluru, Karnataka, India Alp Consulting Limited Full time

    Mandatory Skill Sets/Expertise: 5-7 years of penetration testing experience, preferably in highly regulated industries and for global clients Proficiency with scripting and programming languages Advanced problem-solving skills OSCP certification preferred but, GPEN, GWAPT, GXPN, CREST, CESG and similar certifications a plus Experience with Cobalt...