Penetration Tester Associate

1 month ago


Hyderabad, Telangana, India Claranet Full time
About the Role

The Continuous Security Testing service is a consultant-led vulnerability identification and verification service that utilizes automated vulnerability scanning and significant manual testing against a broad scope in a continuous engagement. The purpose of the service is to continually monitor a customer's external attack surface for new vulnerabilities, changes in the scope of the attack surface, and proactively inform customers of discovered issues along with recommended remediation, with the overall aim of reducing the lifetime of each vulnerability.

Key Responsibilities
  • Manual identification and exploitation of vulnerabilities.
  • Manual verification and exploitation of scanner findings.
  • Detailed analysis of issues identified and exposure for the customer, including proof of concept, reproduction steps, and recommended remediation.
  • Communication of findings to the customer in a detailed, accurate, and manageable manner both orally and through written vulnerability/scope notifications and periodic summaries.
  • Continual professional development to maintain and develop knowledge and technical competencies.
  • Maintain professional technical qualifications to demonstrate competency to our clients.
  • Undertaking projects and support tasks as appropriate to the role.
Progression

During mentoring and experience progression, the Associate Penetration Tester will be tasked with

  • Pre-engagement activities, including scoping of assessments and statements of work, and determining customer requirements and restrictions.
  • Onboarding customers into the service, including configuration of continual scanning and liaising with customer to resolve issues which may reduce the effectiveness of scanning.
  • Monitoring of the customers' external perimeter for changes, and proactive discovery of new targets to include within the customer's scope.
About You

Essential:

  • Excellent written and spoken English, including presentation, structure, spelling, and grammar, along with experience conveying technical information in an accessible manner.
  • Core computing skills, including but not limited to:
  • Networking fundamentals – understanding of OSI Model, TCP/IP, HTTP, DNS, SMB, SMTP, and relevant tools.
  • Microsoft Windows and Office proficiency, along with proficiency in one or more Linux distributions.
  • Good knowledge of web application technologies and security assessment, including but not limited to:
  • REST APIs, XML, and JSON formats.
  • Vulnerability identification and exploitation (not limited to OWASP Top 10).
  • Experience with common assessment tools, such as MITM proxies (e.g. Burp Suite Pro and SQLMap).
  • General knowledge of internal and external infrastructure technologies and security assessment, including but not limited to:
  • Identification and exploitation of misconfigurations or known vulnerabilities in common enterprise infrastructure and services (Windows Domains, Linux servers, virtualisation, databases, switches/routers, etc).
  • Knowledge of a scripting language, such as Python (preferred), Ruby, PowerShell, or Bash, for the development of new, or editing existing, tools.
  • Evidence of rapidly and confidently gaining and knowledge of emerging technologies, vulnerabilities, and penetration testing tools and techniques.
  • Excellent time management, including setting priorities and goals to complete assigned and arising tasks.

Desirable:

  • CPSA - CREST Practitioner Security Analyst (or above).
  • Public speaking experience.
  • A related Bachelor's degree.
  • Experience with live bug bounties, particularly where automation has been implemented.
  • Knowledge of Open Source Intelligence gathering techniques, including but not limited to use of Google dorks, DNS, domain registration, certificate transparency, and other public sources of information.


  • Hyderabad, Telangana, India Claranet Full time

    About the RoleThe CST team at Claranet is seeking a skilled Associate Penetration Tester to join our team of experts in continuous security testing.This role is perfect for someone with a passion for security and a keen eye for detail, who is looking to develop their skills in manual penetration testing.As an Associate Penetration Tester, you will work...


  • Hyderabad, Telangana, India Tata Consultancy Services Full time

    About the RoleWe are seeking an experienced Cyber Security Specialist to join our team as a Vulnerability Assessment and Penetration Tester. The successful candidate will be responsible for conducting thorough vulnerability assessments and penetration testing of our clients' systems to identify and mitigate potential security risks.


  • Hyderabad, Telangana, India Carrier Full time

    Role OverviewWe are seeking a highly skilled Penetration Tester to join our engineering team at Carrier. As a Penetration Tester, you will play a critical role in strengthening our security posture and driving the competitive advantage of our comprehensive product portfolio.Key Responsibilities:Conduct hands-on penetration testing activities of products,...


  • Hyderabad, Telangana, India Strobes Security Full time

    Job Title: Senior Security Consultant - Penetration Testing ExpertAt Strobes Security, we are seeking a highly skilled Senior Security Consultant to join our team of expert penetration testers. As a Senior Security Consultant, you will be responsible for conducting qualitative and quantitative analysis across various projects to optimize company growth and...


  • Hyderabad, Telangana, India Castellum Labs Full time

    Cybersecurity Role at Castellum LabsCastellum Labs is a next-generation cybersecurity technology venture based in Hyderabad, India, with a global customer base and ambitions. Our vision is to change the cybersecurity value model in the industry by using custom-designed in-house technologies for service delivery.Our primary focus areas in cybersecurity are...


  • Hyderabad, Telangana, India Claranet Full time

    About UsClaranet is a leading provider of network, hosting, and managed application services. We are recognized for our expertise in cloud services in Europe.About The RoleThe Continuous Security Testing service is a consultant-led vulnerability identification and verification service. It uses automated vulnerability scanning and manual testing to monitor a...

  • Sales Associate

    3 weeks ago


    Hyderabad, Telangana, India Repos Energy India Pvt Ltd. Full time

    Job OverviewWe are seeking a highly motivated and results-driven Sales Associate to join our team at Repos Energy India Pvt Ltd.As a Sales Associate, you will be responsible for identifying and tapping into the potential of assigned markets, providing solutions to partners, and promoting new innovations in the energy sector.Key Responsibilities:Analyze...

  • Software Tester

    3 weeks ago


    Hyderabad, Telangana, India QNX Software Systems Full time

    Synopsis:The QNX Software Systems Embedded Tester will be responsible for system level integration and testing of complex automotive infotainment software systems.Hands-on configuration, integration, and system testing of complex software systems, including virtual frameworks, target hardware, and associated BSPs.Collaboration with cross-functional teams to...

  • Sales Associate

    1 month ago


    Hyderabad, Telangana, India Repos Energy India Pvt Ltd. Full time

    Unlock Your Potential as a Sales Associate at Repos Energy India Pvt Ltd.Are you a driven and self-motivated individual with a passion for sales and customer relationships? Do you thrive in a fast-paced environment where no two days are the same? If so, we want to hear from you!About the Role:As a Sales Associate at Repos Energy India Pvt Ltd, you will be...


  • Hyderabad, Telangana, India ValueLabs Full time

    TOSCA Automation TesterJob Summary: We are seeking a skilled TOSCA Automation Tester to join our team at ValueLabs.About the Role: As a TOSCA Automation Tester, you will be responsible for designing and developing robust test automation suites using Tricentis Tosca automation tool for TOSCA API and UI Automation.Key Responsibilities:Develop automated test...


  • Hyderabad, Telangana, India Applause Full time

    About the RoleApplause, a world leader in digital quality testing, is seeking a detail-oriented Associate Quality Assurance Support Specialist to join our dedicated team.Key ResponsibilitiesTicket Triage and Prioritization: Analyze submitted tickets from testers regarding platform functionality, payment inquiries, and technical challenges.Escalation and...


  • Hyderabad, Telangana, India KPMG India Full time

    About KPMG in India KPMG entities in India are professional services firms. These Indian member firms are affiliated with KPMG International Limited. Established in India in August 1993, our professionals leverage the global network of firms, conversant with local laws, regulations, markets, and competition. KPMG has offices across India in various...

  • Sales Professional

    3 weeks ago


    Hyderabad, Telangana, India Repos Energy India Pvt Ltd. Full time

    Role OverviewThe Sales Associate role at Repos Energy India Pvt Ltd is designed for individuals who thrive in a fast-paced, dynamic environment and are passionate about delivering exceptional results. As a Sales Associate, you will be responsible for analyzing assigned territories and market potential, providing tailored solutions to partners, and promoting...


  • Hyderabad, Telangana, India RSM Full time

    RSM is a leading provider of professional services to the middle market globally. Our purpose is to instill confidence in a world of change, empowering our clients and people to realize their full potential.We're seeking an experienced Performance Quality Assurance Senior Associate to join our team.As a key member of our team, you'll be responsible for...


  • Hyderabad, Telangana, India HTC Global Services Full time

    **Job Summary:**We seek a Junior Salesforce QA Tester to ensure the quality of our Salesforce applications. An individual should collaborate with the development team to create and execute test cases, identify defects, and support testing efforts.Key Responsibilities:Develop and execute test cases for Salesforce applications.Perform manual testing and assist...


  • Hyderabad, Telangana, India DBS Bank Full time

    Job SummaryDBS Bank is seeking a skilled Senior Associate, SDET Automation Testing, Consumer Banking to join our team. As a key member of our Group Technology and Operations, you will play a crucial role in enabling and empowering the bank with an efficient, nimble, and resilient infrastructure.Key Responsibilities• Design and develop UI & API Test...


  • Hyderabad, Telangana, India HSBC Full time

    Unlock Your Potential in CybersecurityHSBC is a global banking and financial services organization with operations in 64 countries and territories. We're seeking an experienced professional to join our team as a Lead Consultant Specialist in Cybersecurity.Key Responsibilities:Hunt for malicious or anomalous activity across the enterprise, using existing...


  • Hyderabad, Telangana, India OSI Systems, Inc Full time

    About the RoleCybersecurity is a critical component of our company’s success, and we are seeking a highly skilled Sr. Cyber Security Engineer to join our team. As a key member of our cybersecurity team, you will be responsible for ensuring the security of our products and cloud services. This includes providing technical expertise and guidance to R&D and...


  • Hyderabad, Telangana, India CHUBB Full time

    Job DescriptionAs a key member of the CHUBB team, the Project Delivery Manager will play a crucial role in facilitating software releases for our Australian Digital Insurance business. This position will be responsible for ensuring the successful delivery of software releases, working closely with software engineers, testers, and business stakeholders to...


  • Hyderabad, Telangana, India HSBC Full time

    Advanced Threat HunterHSBC is seeking an experienced professional to join our team in the role of Advanced Threat Hunter. As a key member of our Cybersecurity Operations team, you will be responsible for hunting for malicious or anomalous activity across the enterprise, using existing tools. You will act in coordination with GCO staff to lead the development...