Vulnerability Management and Pentration Testing

1 month ago


noida, India Coforge Full time

Job Description

Role: Analyst-VAPT (Vulnerability Management and Pentration Testing)--Cybersecurity Job Location: Greater Noida Required Skills: ? Hands on experience in Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST). ? Demonstrated experience with a variety of vulnerability scanning, assessment, and management technologies (e.g. Nessus, Tenable, Qualys, etc.) ? Should have experience on Tenable OT Security ? identify assets in your OT environment, communicate risk, prioritize action and enable your IT and OT security teams to enhance the security. ? Plan the penetration test. ? Proficient in Web application penetration testing including APIs ? Skilled in manual testing and using Burp Suite Pro, WebInspect, Acunetix, Postman ? Expertise in setting up DAST tools, scan configuration, troubleshooting. ? Very good knowledge on OWASP security standards. Deep understanding of common security vulnerabilities. ? Gather the data intelligence not only from the output of the automated penetration tools but also from information gathered from interaction with product teams, previous results, threat model and source code scanning inputs. ? Should be able to configure automated scanner (such as Login sequence, manually exploring critical flaws, Policy customization, scan throttling, etc) to perform successful scan. ? Flaws like, Authentication (session management) testing, CSRF, business logic testing which are not detected by an automated scanner must be identified using manual testing. ? Understanding of the workflow of the application and identifying the entry points to detect possible vulnerabilities. ? Knowledge of Static Application Security Testing (SAST) integration into the build process ? Should be capable of understanding customer requirement for security testing. ? Capable of providing security solutions to the customer for complex security testing/risk requirement. ? Good presentation skills, Strong communication and good customer handling skill. ? Should be capable of handling escalations." ? Tools : GitLab, SonarQube, Burpsuite, Postman, Acunetix, Kali Linux, Wireshark, Tenable One, Tenable.ot, Tenable.io, Python, Bash. ? Certifications : Certifications such as OSCP, CEH.CHFI would be an added advantage including the OEM(Tenable) specific. Qualifications: ? BE / B Tech / MCA or equivalent Experience: 7-12 years

Posted On

Role: Analyst-VAPT (Vulnerability Management and Pentration Testing)--Cybersecurity Job Location: Greater Noida Required Skills: ? Hands on experience in Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST). ? Demonstrated experience with a variety of vulnerability scanning, assessment, and management technologies (e.g. Nessus, Tenable, Qualys, etc.) ? Should have experience on Tenable OT Security ? identify assets in your OT environment, communicate risk, prioritize action and enable your IT and OT security teams to enhance the security. ? Plan the penetration test. ? Proficient in Web application penetration testing including APIs ? Skilled in manual testing and using Burp Suite Pro, WebInspect, Acunetix, Postman ? Expertise in setting up DAST tools, scan configuration, troubleshooting. ? Very good knowledge on OWASP security standards. Deep understanding of common security vulnerabilities. ? Gather the data intelligence not only from the output of the automated penetration tools but also from information gathered from interaction with product teams, previous results, threat model and source code scanning inputs. ? Should be able to configure automated scanner (such as Login sequence, manually exploring critical flaws, Policy customization, scan throttling, etc) to perform successful scan. ? Flaws like, Authentication (session management) testing, CSRF, business logic testing which are not detected by an automated scanner must be identified using manual testing. ? Understanding of the workflow of the application and identifying the entry points to detect possible vulnerabilities. ? Knowledge of Static Application Security Testing (SAST) integration into the build process ? Should be capable of understanding customer requirement for security testing. ? Capable of providing security solutions to the customer for complex security testing/risk requirement. ? Good presentation skills, Strong communication and good customer handling skill. ? Should be capable of handling escalations." ? Tools : GitLab, SonarQube, Burpsuite, Postman, Acunetix, Kali Linux, Wireshark, Tenable One, Tenable.ot, Tenable.io, Python, Bash. ? Certifications : Certifications such as OSCP, CEH.CHFI would be an added advantage including the OEM(Tenable) specific. Qualifications: ? BE / B Tech / MCA or equivalent Experience: 7-12 years

Skills Required

QUALYS

Posted On QUALYS Location

Greater Noida

Posted On Greater Noida Desirable Skills

TENABLE

Posted On TENABLE

  • Greater Noida, India Coforge Full time

    Job Description Role: Analyst-VAPT (Vulnerability Management and Pentration Testing)--Cybersecurity Job Location: Greater Noida Required Skills: ? Hands on experience in Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST). ? Demonstrated experience with a variety of vulnerability scanning, assessment, and...

  • IT Security Engineer

    1 month ago


    noida, India Nanohawk Technology Pvt. Ltd. Full time

    Responsibilities : Conduct Comprehensive Penetration Tests: Plan, execute, and document penetration tests on web applications to identify vulnerabilities and weaknesses. Utilize both manual and automated testing techniques to ensure thorough coverage. Vulnerability Analysis : Analyze and assess the impact of identified vulnerabilities, providing clear and...

  • IT Security Engineer

    4 weeks ago


    Noida, India Nanohawk Technology Pvt. Ltd. Full time

    Responsibilities :Conduct Comprehensive Penetration Tests:Plan, execute, and document penetration tests on web applications to identify vulnerabilities and weaknesses.Utilize both manual and automated testing techniques to ensure thorough coverage.Vulnerability Analysis :Analyze and assess the impact of identified vulnerabilities, providing clear and...

  • IT Security Engineer

    4 weeks ago


    Noida, India Nanohawk Technology Pvt. Ltd. Full time

    Responsibilities : Conduct Comprehensive Penetration Tests: Plan, execute, and document penetration tests on web applications to identify vulnerabilities and weaknesses. Utilize both manual and automated testing techniques to ensure thorough coverage. Vulnerability Analysis : Analyze and assess the impact of identified vulnerabilities, providing clear and...


  • noida, India FCM Travel Full time

    Job Purpose: The End User Compute (EUC) Vulnerability Management Engineer role is crucial to the support of Global Security and Device Management services across Enterprise Technology Services (ETS). This role has specialised knowledge in workstation patching and device application management technologies and enjoys solving problems in collaboration...


  • noida, India FCM Full time

    Job Purpose: The End User Compute (EUC) Vulnerability Management Engineer role is crucial to the support of Global Security and Device Management services across Enterprise Technology Services (ETS). This role has specialised knowledge in workstation patching and device application management technologies and enjoys solving problems in collaboration...


  • Noida, India FCM Travel Full time

    Job Purpose: The End User Compute (EUC) Vulnerability Management Engineer role is crucial to the support of Global Security and Device Management services across Enterprise Technology Services (ETS). This role has specialised knowledge in workstation patching and device application management technologies and enjoys solving problems in collaboration...


  • Noida, India FCM Full time

    Job Purpose: The End User Compute (EUC) Vulnerability Management Engineer role is crucial to the support of Global Security and Device Management services across Enterprise Technology Services (ETS). This role has specialised knowledge in workstation patching and device application management technologies and enjoys solving problems in collaboration with...


  • Noida, India exl Full time

    Job Description Essential Functions • To Perform Web, Mobile, Thick client, API Penetration Testing and releasing reports to stakeholders.  •To test and research for new vulnerabilities •Risk analysis and manual assessment of vulnerabilities, Execution of internal and external penetration tests. •Tracking Closure of Vulnerabilities. ...


  • noida, India exl Full time

    Job Description Essential Functions • To Perform Web, Mobile, Thick client, API Penetration Testing and releasing reports to stakeholders.  •To test and research for new vulnerabilities •Risk analysis and manual assessment of vulnerabilities, Execution of internal and external penetration tests. •Tracking Closure of...

  • Senior Manager

    4 weeks ago


    Greater Noida/Noida, India Winfort services Full time

    Senior Manager - Application Security - DevSecOpsJob Description, Position Title, Responsibility Level:- Senior Manager - Application Security & DevSecOPS Function- Information Security, Data Privacy and Business Continuity Reports to AVP- Permanent/ Temporary Permanent Span of Control- NA Location NoidaBasic Function:- Primarily responsible for Managing the...

  • Test Professional

    1 week ago


    noida, India Siemens Technology and Services Private Limited Full time

    Dear Aspirant! We empower ourpeople to stay resilient and relevant in a constantly changing world. We’relooking for people who are always searching for creative ways to grow andlearn. People who want to make a real impact, now and in the future. Does thatsound like you? Then it seems like you’d make a great addition to our vibrantinternational...

  • Test Professional

    1 week ago


    Noida, India Siemens Technology and Services Private Limited Full time

    Dear Aspirant! We empower ourpeople to stay resilient and relevant in a constantly changing world. We’relooking for people who are always searching for creative ways to grow andlearn. People who want to make a real impact, now and in the future. Does thatsound like you? Then it seems like you’d make a great addition to our vibrantinternational team. ...


  • Noida, India Birlasoft Full time

    Test Program management Office – TPMO lead15 + years of experience.Job Location: Noida (preferred)ResponsibilitiesManaging TPMO functions for a large TCOEShould have experience setting up process standardization across teamsManaging Quality KPIs and metrics (Test Effectiveness, Defect Density, Defect Leakage)Should have Knowledge Management set up...


  • Noida, India Birlasoft Full time

    Test Program management Office – TPMO lead15 + years of experience.Job Location: Noida (preferred)ResponsibilitiesManaging TPMO functions for a large TCOEShould have experience setting up process standardization across teamsManaging Quality KPIs and metrics (Test Effectiveness, Defect Density, Defect Leakage)Should have Knowledge Management set up...


  • noida, India Nucleus Software Exports Ltd. Full time

    Job Description Position Title:Program Test ManagerSupervisor Title:Cluster Head/ BU HeadDepartmentQuality Control & TestingSub - DepartmentNAGrade : Job Code/ Req #: Role Purpose:To lead the definition of testing strategy, plans and execution till release across multiple product modules, ensure stakeholder management, build team capabilities and provide...


  • Noida, India Nucleus Software Exports Ltd. Full time

    Position Title:Program Test ManagerSupervisor Title:Cluster Head/ BU HeadDepartmentQuality Control & TestingSub - DepartmentNAGrade : Job Code/ Req #: Role Purpose:To lead the definition of testing strategy, plans and execution till release across multiple product modules, ensure stakeholder management, build team capabilities and provide guidance for...


  • Noida, India ValueSec Technology and Consulting Pvt Ltd Full time

    About the CompanyValuesec supports companies with highly personalized, niche and custom cyber security services primarily in four key domains i.e., offensive security, defensive security, managed services and compliances.Valuesec is driven by a mission to make every part of our client business more resilient & help them to discover new capabilities by using...


  • Noida, India ValueSec Technology and Consulting Pvt Ltd Full time

    About the CompanyValuesec supports companies with highly personalized, niche and custom cyber security services primarily in four key domains i.e., offensive security, defensive security, managed services and compliances.Valuesec is driven by a mission to make every part of our client business more resilient & help them to discover new capabilities by using...


  • Noida, India WishFin Full time

    **REPORTS TO**: AVP/ CEO **OVERVIEW**: **Key Responsibilities** - Configure and execute vulnerability scans enumerating vulnerabilities within the internal and external network. - Analyze, enrich and prioritize specific activities designed to remediate discovered vulnerabilities such as patch deployment or configuration hardening. - Conduct information...