
Senior Vulnerability Assessment and Penetration Testing
23 hours ago
Responsibilities
- Client Engagement & Leadership
- Act as a trusted security advisor for multiple high-value clients.
- Manage end-to-end security assessment projects, including scoping, execution, reporting, and remediation guidance.
- Conduct technical and executive-level briefings to communicate findings, risks, and strategic recommendations clearly.
- Translate complex technical vulnerabilities into business risk insights to help clients prioritize actions.
- Collaborate closely with client stakeholders to ensure security recommendations are practical and actionable.
- Advanced Threat Modelling & Risk Assessment
- Design and maintain threat models tailored to client applications, networks, and cloud environments.
- Perform risk assessments focusing on business impact and likelihood of exploitation.
- Develop attack scenarios based on the latest threat intelligence and real-world attacker techniques.
- Guide clients in integrating security into their software development lifecycle (SDLC) and cloud infrastructure designs.
- Penetration Testing & Red Team Operations
- Lead advanced black-box, grey-box, and white-box penetration testing engagements for web applications, APIs, networks, and cloud environments.
- Conduct sophisticated Red Team exercises to simulate targeted attack campaigns.
- Design and develop custom exploits and testing tools to replicate specific attacker techniques.
- Perform social engineering tests (phishing campaigns, physical security assessments) in controlled and ethical scenarios.
- Provide detailed post-exercise analysis, including actionable remediation strategies and long term improvement plans.
- Comprehensive Reporting & Documentation
- Produce clear and technically thorough vulnerability assessment and penetration testing reports.
- Create executive-level summaries focused on business impact and compliance risks.
- Maintain structured and up-to-date testing methodologies and playbooks.
- Contribute to internal knowledge base, documenting research, custom tools, and successful testing strategies.
- Technical & Programming Expertise
- Expert in vulnerability assessment and exploitation techniques across a wide range of technologies.
- Proficient in security testing tools such as Burp Suite, Nessus, Metasploit, Nmap, OpenVAS, Cobalt Strike, Wireshark, and tcpdump.
- Strong scripting and automation skills (Python, Bash, PowerShell) to automate repetitive testing tasks and tool workflows.
- Capable of custom tool development and advanced exploit research to target unique client environments.
- Strong knowledge of application security vulnerabilities (OWASP Top 10, SANS Top 25) and attack surface analysis.
- In-depth understanding of cloud security risks, identity and access management, and container security (Docker, Kubernetes).
- Social Engineering & OSINT Expertise
- Design and execute social engineering and phishing simulations tailored to client environments.
- Perform physical security assessments through tactics like tailgating and badge cloning.
- Apply Open Source Intelligence (OSINT) techniques to gather reconnaissance data for assessments.
- Provide training and awareness recommendations based on assessment outcomes.
- Professional Attributes & Mindset
- Strong analytical, problem-solving, and creative thinking skills.
- Ethical hacker mindset with a continuous drive to research emerging threats, attack techniques, and defense bypass methods.
- Methodical and detail-oriented approach to testing with the ability to think like an attacker.
- Strong communication and presentation skills, able to engage both technical teams and business leadership.
- Proactively innovate by developing new tools, scripts, or methodologies to improve testing efficiency and depth.
Qualifications
- 7+ years of hands-on experience in Vulnerability Assessment, Penetration Testing, and security consulting.
- Strong technical expertise in application security, network security, cloud security (AWS, Azure, GCP), and infrastructure security testing.
- Proven experience using VAPT tools such as Burp Suite, Nessus, Qualys, Nmap, Metasploit, Nikto, OpenVAS, etc.
- Solid knowledge of exploitation techniques, post-exploitation frameworks, and manual testing methodologies.
- In-depth knowledge of web application vulnerabilities (OWASP Top 10) and network protocol analysis.
- Experience conducting cloud security assessments, including misconfigurations, IAM permissions analysis, and container security.
- Proficiency in scripting and automation (Python, Bash, PowerShell) to customize tests and tools.
- Familiarity with security frameworks and standards such as NIST, ISO 27001, MITRE ATT&CK.
- Strong reporting and documentation skills, able to translate technical findings into business friendly recommendations.
- Excellent communication and stakeholder management skills, able to lead client-facing engagements.
- Relevant certifications are a strong plus (e.g., OSCP, CREST, CISSP, CEH, GIAC GPEN).
Preferred Qualifications:
- Certifications such as OSCP, GPEN, CREST CRT, CRTO are highly desirable.
- Experience in DevSecOps, CI/CD pipeline security, or automated security testing frameworks.
- Familiarity with industry compliance frameworks like PCI-DSS, GDPR, HIPAA, SOC2, and ISO 27001.
- Prior consulting experience in a service delivery or customer-facing environment.
- Experience with threat intelligence platforms and indicators of compromise (IoCs).
-
Sr Engineer- Advanced Battery Testing
1 week ago
Kochi, Kerala, India, Ernakulam V-Guard Full timeJOB DESCRIPTIONDEPARTMENT: R&D ElectronicsPOSITION: Senior Engineer – Advanced Battery Testing (Product Validation Lab)JOB STATUS: Full timeLOCATION: Kochi, HOResponsibilities:• Develop and execute Design Verification Plans & Reports (DVP&R) for advanced chemistry battery packs.• Conduct pack-level performance validation using pack testers, inverters,...
-
Security Operations Center Analyst
1 week ago
Kochi, Kerala, India, Ernakulam Soffit Infrastructure Services Ltd Full timeJob briefThe Security Operation Centre (SOC) Information Security Analyst are the first level responsible for ensuring the protection of digital assets from unauthorized access, identify security incidents and report to customers for both online and on-premises. The position monitors and responds to security events from managed customer security systems as...
-
Senior Financial Specialist
3 days ago
Kochi, Kerala, India, Ernakulam Santamonica Tours and Travels Full timeJob Title: Senior Finance ExecutiveDepartment: Finance & Accounts Location: Cochin Reporting To: Head of FinanceJob Summary:The Senior Finance Executive will be responsible for managing the financial operations of the organization with a focus on the travel industry domain. The role involves handling daily accounting activities, vendor payments,...
-
Automation Test Engineer
1 week ago
Kochi, Kerala, India, Ernakulam DBiz.ai Full timeJob Title: Sr Automation Test Engineer/Lead (WebdriverIO / Playwright/cypress using Javascript) Location: KochiExperience: 6+ Years & 10+ years Job Description: We are looking for an experienced and highly motivated Senior Automation Test Engineer/Lead with proven expertise in WebdriverIO / Playwright using JavaScript. You will be responsible for creating...
-
Senior Automation QA Engineer
3 days ago
Kochi, Kerala, India, Ernakulam SS Consulting Kochi Full timeSenior Automation QA Engineer (Networking/Telecom Domain)Experience: 4+ yearsLocation: Kochi/Thirivanathapuram, Hybrid- 4-day office 1 1-day WFH This is a critical role for our client with a strong background as an Automation QA Engineer or Software Developer in Test (SDET), who is passionate about building, maintaining, and scaling robust automated test...
-
Senior Back End Developer
1 week ago
Kochi, Kerala, India, Ernakulam Admaren Tech Private Limited Full timeJob Title: Senior Backend DeveloperSeniority Level: SeniorYears of Relevant Experience: 5+ YearsDepartment: Software-COEMS/Secure LoadReporting Organization: Our Company Employment Type: Full-timeLocation: CochinJob SummaryAs a Senior Backend Developer, you will be responsible for designing, developing, and maintaining back-end systems that support our...
-
Senior Developer
1 week ago
Kochi, Kerala, India, Ernakulam G10X Full timeRole: Senior PIMCore Developer Primary Technology: PIMCore, PHP Symfony Work Location: Cochin/Remote Work Timings: 1:00 PM – 10:00 PM IST Mandatory SkillsStrong hands-on experience with PIMCore and PHP SymfonyAbility to design and implement PIMCore solutions to meet client requirementsEnd-to-end architecture management of PIMCore implementationsDuties &...
-
Senior DFT and Post-Silicon Lead-Barcelona
1 week ago
Kochi, Kerala, India, Ernakulam Geesesquads Full timeDescriptionWe are hiring! Are you passionate about Design for Testability (DFT) for complex SoCs and SoC chiplets in package? We need you! As a Senior DFT and Post-Silicon Lead, you will own the DFT implementation process, ensuring seamless integration with test and post-silicon validation teams. You will work with cutting-edge technology, collaborating...
-
Governance, Risk, and Compliance Lead
1 week ago
Kochi, Kerala, India, Ernakulam Art Technology and Software Full timeThe GRC Lead will be responsible for overseeing the governance, risk management, and compliance functions within the organization.ResponsibilitiesStrategic Governance & LeadershipLead the design, execution, and maturation of the organization’s comprehensive GRC strategy, encompassing policy governance, risk management frameworks, compliance programs, and...
-
Kochi, Kerala, India, Ernakulam Tata Consultancy Services Full timeJob Title: AWS Senior Data Engineer with Pyspark, AWS, GlueLocation: KochiExperience: 6 to 10 YearsNotice Period: 30-45 daysJob Description:Must: PySpark, AWS[ETL Concepts, S3, Glue, EMR, Redshift, DMS, AppFlow] ,Qlik Replicate, Data TestingNice To Have: Hadoop, Teradata Background, IaC[Cloud Formation / Terraform], GitKind Regards,Priyankha M