Penetration Tester

3 weeks ago


Mumbai India ISECURION Full time

Job Description

Job Title: Penetration Tester

Location: Thane Mumbai

Experience: 6+ Years in Information Security Department

Notice Period: Immediate

Job Summary:

We are seeking a highly skilled and creative Penetration Tester with over 6 years of experience to join our Offensive Security team. The successful candidate will have deep expertise in identifying vulnerabilities in enterprise infrastructure, web applications, Active Directory environments, and cloud platforms (AWS, Azure, GCP) all without prior internal knowledge of the systems being tested.

This role demands a think-outside-the-box mindset, capable of discovering novel attack vectors that others overlook, with a strong focus on making meaningful, measurable impacts on organizational security.

Key Responsibilities:

Perform comprehensive black box penetration testing of:

o Enterprise networks and internal infrastructure

o Web and mobile applications

o Active Directory environments (Kerberos, LDAP, domain trusts, etc.)

o Cloud platforms including AWS, Azure, and GCP

Identify and exploit misconfigurations, logic flaws, privilege escalations, and other high-impact vulnerabilities.

Simulate real-world attack scenarios such as credential attacks, lateral movement, and privilege escalation in AD/cloud hybrid environments.

Document detailed technical findings, risk ratings, proof-of-concept exploits, and remediation strategies.

Collaborate with internal teams to validate fixes and ensure secure configuration post-remediation.

Stay up to date with threat actor tactics, techniques, and procedures (TTPs).

Contribute to internal tooling, red team exercises, and security testing methodologies.

Mentor junior team members and assist in strategic planning of offensive security initiatives.

Required Skills and Qualifications:

6+ years of proven experience in black box penetration testing.

Strong expertise in Active Directory testing, including attack paths, domain privilege escalation, and lateral movement.

Experience in cloud security testing across AWS, Azure, and GCP environments (IAM roles, misconfigured services, metadata exploitation, etc.).

Solid understanding of network protocols, web application security, OWASP Top 10, and API exploitation.

Proficiency with tools such as Burp Suite, Nmap, Impacket, BloodHound, Mimikatz, Metasploit, and PowerView etc.

Scripting ability in Python, PowerShell, or Bash for exploit development and automation.

Strong analytical and creative problem-solving skills.

Excellent report writing and verbal communication abilities.

Preferred Certifications (Good to Have):

OSCP / OSEP / CRTP / CRTE / OSED / OSWE / GPEN / AZ-500 / AWS Security Specialty

Microsoft or cloud-specific red team certifications are a plus

What Were Looking For:

A strategic attackers mindset who can go beyond surface-level vulnerabilities.

A technical leader who can assess modern hybrid infrastructures with precision.

A contributor who can deliver real-world risk insights, not just findings.


  • Penetration Tester

    1 week ago


    India Vista Applied Solutions Group Inc Full time

    Job Summary Client is looking for Penetration Tester to support remotely from India. CTF (Capture The Flag) assessed. Certified would be plus : CTF (Capture The Flag)/Penetration Testing

  • Penetration Tester

    7 days ago


    India Vista Applied Solutions Group Inc Full time

    Job Summary Client is looking for Penetration Tester to support remotely from India. CTF (Capture The Flag) assessed. Certified would be plus : CTF (Capture The Flag)/Penetration Testing

  • Penetration Tester

    7 days ago


    India Vista Applied Solutions Group Inc Full time

    Job SummaryClient is looking for Penetration Tester to support remotely from India.CTF (Capture The Flag) assessed.Certified would be plus : CTF (Capture The Flag)/Penetration Testing

  • Penetration Tester

    3 weeks ago


    Delhi, India 3Columns Full time

    Job Description About the business We are a highly specialised Cybersecurity consulting firm based in theSydney CBD. We are looking for an experienced CEH / OSCP / OSCE certified Penetration tester or Pen Tester on a Permanent basis. About the role We are looking for a Security Consultant with multiple years of experience with Penetration testing and...

  • Penetration Tester

    2 weeks ago


    Mumbai, Maharashtra, India DigiFortex Full time ₹ 5,00,000 - ₹ 10,00,000 per year

    Company DescriptionDigiFortex is an emerging Cyber Security startup recognized by the Govt. of Karnataka and Silicon India. The company is ISO 27001 certified and empanelled by CERT-In for Information Security Auditing Services. DigiFortex operates globally, focusing on Advanced Penetration Testing (VA/PT), Managed Security Services (MSSP), Security...

  • Penetration Tester

    7 days ago


    India Vista Applied Solutions Group Inc Full time

    Job Summary - Client is looking for Penetration Tester to support remotely from India. - CTF (Capture The Flag) assessed. - Certified would be plus : CTF (Capture The Flag)/Penetration Testing

  • Penetration Tester

    1 week ago


    Ahmedabad, India Asite Full time

    Job Description Penetration Testers - Junior and Senior/Lead Location: In Office, Ahmedabad, Gujarat, India (not remote) Full-time Salary: Up to 12.5L (1,250,000) INR per year for Senior/Lead Must undergo background check and security clearance Candidates must already have the right to work and live in India About Asite Asite's vision is to connect...


  • Mumbai, India Suzva Software Technologies Full time

    Level 3 Resource Application Penetration Tester (APT) Skills: Advanced Application Penetration Testing (Web/Mobile/API), BurpSuite, MIS Reporting, Certifications (CEH/OSCP/SANS25/LPT/CEPT) Application Penetration Tester (APT)(Web/Mobile/API), BurpSuite, MIS Reporting, Certifications (CEH/OSCP/SANS25/LPT/CEPT)


  • Mumbai, Maharashtra, India Suzva Software Technologies Full time ₹ 9,00,000 - ₹ 12,00,000 per year

    Level 3 Resource Application Penetration Tester (APT) Skills: Advanced Application Penetration Testing (Web/Mobile/API), BurpSuite, MIS Reporting, Certifications (CEH/OSCP/SANS25/LPT/CEPT)Application Penetration Tester (APT)(Web/Mobile/API), BurpSuite, MIS Reporting, Certifications (CEH/OSCP/SANS25/LPT/CEPT)


  • Airoli, Mumbai, India Suzva Software Technologies Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Position - Application Penetration Tester (APT)(Web/Mobile/API), BurpSuite, MIS Reporting, Certifications (CEH/OSCP/SANS25/LPT/CEPT)Level 3 Resource Application Penetration Tester (APT)We are seeking an experienced Application Penetration Tester to identify, exploit, and clearly communicate security weaknesses in web, mobile, and API applicationsYou will run...