API Security Penetration Tester

4 weeks ago


Gurugram, India Aceseekers Full time

Job Description :


We are seeking a highly skilled and experienced API Security Penetration Tester to join our cybersecurity team. The ideal candidate will have 3-4 years of hands-on experience conducting penetration testing on APIs and a strong background in cybersecurity. In this role, you will be responsible for assessing the security of our organization's APIs, identifying vulnerabilities and weaknesses, and recommending remediation measures to mitigate risks.

Responsibilities :

- Conduct thorough penetration testing on APIs to identify security vulnerabilities, misconfigurations, and weaknesses.

- Perform security assessments and code reviews of APIs to ensure compliance with security best practices and industry standards.

- Develop and execute comprehensive test plans and methodologies for API security testing.

- Utilize a variety of tools and techniques, including automated scanning tools and manual testing methods, to assess API security posture.

- Analyze and interpret testing results to identify security risks and prioritize remediation efforts.

- Prepare detailed reports documenting findings, including identified vulnerabilities, potential impact, and recommended remediation measures.

- Collaborate with cross-functional teams, including developers and system administrators, to implement security controls and patches to address identified vulnerabilities.

- Stay up-to-date on the latest API security threats, vulnerabilities, and industry trends.

Qualifications :

- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or related field.

- 3-4 years of hands-on experience conducting penetration testing on APIs, including RESTful APIs and SOAP web services.

- Strong understanding of API security principles, protocols, and technologies, including OAuth, JWT, SSL/TLS, and JSON Web Tokens.

- Experience using penetration testing tools such as Burp Suite, OWASP ZAP, or Nessus.

- Familiarity with programming languages such as Python, JavaScript, or Ruby for scripting and automation.

- Excellent analytical and problem-solving skills with a keen attention to detail.

- Strong communication and interpersonal skills with the ability to effectively communicate technical findings to non-technical stakeholders.

- Relevant certifications such as Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), or GIAC Web Application Penetration Tester (GWAPT) are preferred but not required.

(ref:hirist.tech)

  • Mumbai/Bangalore/Gurgaon/Gurugram/Hyderabad/Pune/Kolkata/Chennai, IN Aceseekers Full time

    Job Description : We are seeking a highly skilled and experienced API Security Penetration Tester to join our cybersecurity team. The ideal candidate will have 3-4 years of hands-on experience conducting penetration testing on APIs and a strong background in cybersecurity. In this role, you will be responsible for assessing the security of our...


  • Mumbai/Bangalore/Gurgaon/Gurugram/Hyderabad/Pune/Kolkata/Chennai, India Aceseekers Full time

    Job Description : We are seeking a highly skilled and experienced API Security Penetration Tester to join our cybersecurity team. The ideal candidate will have 3-4 years of hands-on experience conducting penetration testing on APIs and a strong background in cybersecurity. In this role, you will be responsible for assessing the security of our...

  • Penetration Tester

    1 month ago


    Gurugram, India Soffit Infrastructure Services (P) Ltd Full time

    Apply Job Summary: As a Penetration Tester, you will play a pivotal role in identifying vulnerabilities, assessing security measures, and enhancing the overall cybersecurity posture of our clients. Your expertise in testing applications, network infrastructure, and mobile apps will be instrumental in uncovering potential weaknesses and recommending robust...

  • Penetration Tester

    1 month ago


    Gurugram, India Soffit Infrastructure Services (P) Ltd Full time

    ApplyJob Summary:As a Penetration Tester, you will play a pivotal role in identifying vulnerabilities, assessing security measures, and enhancing the overall cybersecurity posture of our clients. Your expertise in testing applications, network infrastructure, and mobile apps will be instrumental in uncovering potential weaknesses and recommending robust...

  • Penetration Tester

    1 month ago


    Gurugram, India Soffit Infrastructure Services (P) Ltd Full time

    ApplyJob Summary:As a Penetration Tester, you will play a pivotal role in identifying vulnerabilities, assessing security measures, and enhancing the overall cybersecurity posture of our clients. Your expertise in testing applications, network infrastructure, and mobile apps will be instrumental in uncovering potential weaknesses and recommending robust...


  • Gurugram, India Home Credit India Full time

    Key Responsibilities• Identify and exploit security vulnerabilities in a wide array of systems. (Such as web/mobile application and Networks)• Thoroughly document all activities conducted and prepare quality report.• Create post-assessment reporting that describes findings and their risks, exploitation procedures, and remediation’s.• Map out a...


  • Gurugram, India Home Credit India Full time

    Key Responsibilities• Identify and exploit security vulnerabilities in a wide array of systems. (Such as web/mobile application and Networks)• Thoroughly document all activities conducted and prepare quality report.• Create post-assessment reporting that describes findings and their risks, exploitation procedures, and remediation’s.• Map out a...


  • Gurugram, India Home Credit India Full time

    Key Responsibilities • Identify and exploit security vulnerabilities in a wide array of systems. (Such as web/mobile application and Networks) • Thoroughly document all activities conducted and prepare quality report. • Create post-assessment reporting that describes findings and their risks, exploitation procedures, and remediation’s. • Map out a...


  • Gurugram, India Soffit Infrastructure Services (P) Ltd Full time

    Job Summary:As a Penetration Tester, you will play a pivotal role in identifying vulnerabilities, assessing security measures, and enhancing the overall cybersecurity posture of our clients. Your expertise in testing applications, network infrastructure, and mobile apps will be instrumental in uncovering potential weaknesses and recommending robust solutions...


  • Gurugram, India Soffit Infrastructure Services (P) Ltd Full time

    Job Summary:As a Penetration Tester, you will play a pivotal role in identifying vulnerabilities, assessing security measures, and enhancing the overall cybersecurity posture of our clients. Your expertise in testing applications, network infrastructure, and mobile apps will be instrumental in uncovering potential weaknesses and recommending robust solutions...

  • API Automation Tester

    2 weeks ago


    gurugram, India Magic EdTech Full time

    API Automation Tester Location –  Noida or Gurgaon Experience –  5 – 8 years Job Description At Magic, we have multiple openings for skilled professionals in API Automation Testing. Apply to join our engineering team! Essential Job Requirements Experience working in prior API testing projects with tools...


  • gurugram, India Milliman Full time

    Job Summary: We are seeking a highly skilled Vulnerability Assessment and Penetration Testing (VAPT) Analyst in a GCS India IT team with a minimum of 4 years of experience in the Application Security field. The ideal candidate will possess a comprehensive understanding of application penetration testing, secure Software Development Life Cycle (SDLC)...


  • Gurugram, India Milliman Full time

    Job Summary: We are seeking a highly skilled Vulnerability Assessment and Penetration Testing (VAPT) Analyst in a GCS India IT team with a minimum of 4 years of experience in the Application Security field. The ideal candidate will possess a comprehensive understanding of application penetration testing, secure Software Development Life Cycle (SDLC)...


  • gurugram, India Cvent Full time

    Overview: Cvent’s Information Security team seeks Application Security Engineer II to support delivery of secure cloud-based software platforms and applications. As an Application Security Engineer II, you will closely partner with Cvent product, engineering, and the application security team. You will be responsible for applying your cloud and web...

  • Lead Engineer

    4 weeks ago


    gurugram, India Silverskills Private Limited Full time

    Job Description of the role : - Leads the implementation and delivery of VA/PT tools and services for our global clients.Responsibilities : - Daily assessment of vulnerabilities identified by infrastructure scan.- Assist in the responsibility for the reviewing vulnerabilities' data from multiple sources (i.e., external / internal penetration testing,...

  • Lead Engineer

    4 weeks ago


    Gurugram, India Silverskills Private Limited Full time

    Job Description of the role : - Leads the implementation and delivery of VA/PT tools and services for our global clients.Responsibilities :- Daily assessment of vulnerabilities identified by infrastructure scan.- Assist in the responsibility for the reviewing vulnerabilities' data from multiple sources (i.e., external / internal penetration testing,...


  • gurugram, India GEMINI Full time

    Department : Information Security In the emerging industry of digital assets, there is nothing more important than trust. The Gemini security team forms the backbone of trust. In fact, Gemini’s very first hires were security specialists and we continue to tackle unique challenges in the crypto space. Our team ensures that our customers, clients,...


  • Gurugram, India GEMINI Full time

    Department : Information Security In the emerging industry of digital assets, there is nothing more important than trust. The Gemini security team forms the backbone of trust. In fact, Gemini’s very first hires were security specialists and we continue to tackle unique challenges in the crypto space. Our team ensures that our customers, clients, and...

  • Lead Engineer

    1 month ago


    Gurgaon/Gurugram, IN Silverskills Private Limited Full time

    Job Description of the role : - Leads the implementation and delivery of VA/PT tools and services for our global clients.Responsibilities :- Daily assessment of vulnerabilities identified by infrastructure scan.- Assist in the responsibility for the reviewing vulnerabilities' data from multiple sources (i.e., external / internal penetration testing,...

  • Lead Engineer

    4 weeks ago


    Gurgaon/Gurugram, India Silverskills Private Limited Full time

    Job Description of the role : - Leads the implementation and delivery of VA/PT tools and services for our global clients.Responsibilities : - Daily assessment of vulnerabilities identified by infrastructure scan.- Assist in the responsibility for the reviewing vulnerabilities' data from multiple sources (i.e., external / internal penetration...