
Pen Tester
6 days ago
About the Role:
Duration: 6 months
Notice Period: (Immediate Joiner - Only)
(General Shift & UK shift), 5days work from the Office, a Cab facility is there.
Job responsibilities:
Conducting and coordinating comprehensive Attack Surface Discovery, Penetration tests, and Cloud on system and network levels, employing advanced ethical hacking techniques.
Application Penetration Testing (Browser-based, API, Mobile, IoT)
Threat Modeling
Source Code Review
Perform penetration testing on web applications and APIs (internal and external) to identify, assess, and report on vulnerabilities in their applications.
Perform red team exercises to determine weaknesses in the clients infrastructure and how it should be remediated.
Organizing and delivering technical security operational briefings for both technical and non-technical audiences.
Set scope, objectives, and timelines for penetration testing engagements and leverage data to create useful metrics.
Dynamic application security testing (DAST) scans on the identified targets without credentials.
Perform credentialed DAST scans on known client URLs.
Research to identify new attack vectors.
Review and provide feedback for all Security Artifacts.
Play a critical role in building an AppSec program that has a wide scope and impact.
Researching open-source emerging technologies, developing required frameworks and capabilities to perform red team exercises on new technologies adopted by clients.
Preparing and delivering clear, accurate, and concise written and oral technical reports for management.
Job specifications:
Qualification:
Bachelors degree in Engineering or closely related coursework in technology development disciplines
Certifications like OSCP, CEH, OSCE, OSWE, GPEN, GCIH, GWAPT, or GXPN are desirable
Experience:
Total Experience 4+ years
Desired Skills:
Knowledge and Experience:
Offensive Security Certified Professional (OSCP) and/or Offensive Security Certified Expert (OSCE).
A thorough understanding of the Secure Development Life Cycle
Have comprehensive knowledge of common vulnerabilities (e.g., OWASP Top 10), diverse application attack vectors, security testing processes, and both wired and wireless network security protocols.
Have familiarity with common threat tactics and tools (Nmap, Metasploit, Kali Linux, Burp Suite Pro, CobaltStrike, App Detective, Web Inspect, etc.)
Cloud Service penetration testing tradecraft and methodologies across one or more service providers (e.g., AWS, GCP, etc.)
Mobile platform penetration testing tradecraft and methodologies across widely-used platforms (iOS and/or Android).
Microservices testing
Ability to find and exploit bugs in:
C++, Java, JavaScript, Go, and Python
Kubernetes, AWS, GCP, or Azure
Memory management, namespaces, cgroups, etc.
Passion for writing code to solve problems, combined with an interest in Offensive Security.
Ability to demonstrate a strong background in one of the following languages:
Golang, Python, Java, JavaScript, C++, C
Personal Attributes:
Self-starter and quick learner requiring minimal ramp-up
Excellent analytical, written, oral, and interpersonal communication skills
Highly self-motivated, self-directed, and attentive to detail
Ability to effectively prioritize and execute tasks in a high-pressure environment
Strong communications skills to comfortably work cross-functionally across the organization.
-
Penetration Tester
1 week ago
Hyderabad, Telangana, India Castellum Labs Full timeJob Description This position is for Network and Infrastructure Penetration Testing, NOT AppSec, NOT Web VAPT Castellum Labs is a next-generation cybersecurity technology venture based in Hyderabad, India, with global set of customer base and global ambitions. Our vision is to change the cybersecurity value model in the industry by using custom designed...
-
Penetration Tester
6 days ago
Hyderabad, Telangana, India Experian Full time ₹ 9,00,000 - ₹ 12,00,000 per yearCompany DescriptionJob DescriptionJob descriptionScope of Work:Infrastructure Assessment: The Penetration Tester will analyze a variety of systems within Experian, spanning from external-facing applications to internal networks or cloud environments, ensuring all potential vectors of attack are considered. Regular Deliverables: Meeting targets is crucial....
-
Pen Tester/Security Tester
1 day ago
Hyderabad, Telangana, India APAC Full time ₹ 1,04,000 - ₹ 1,30,878 per yearAbout XebiaXebia is a trusted advisor in the modern era of digital transformation, serving hundreds of leading brands worldwide with end-to-end IT solutions. The company has experts specializing in technology consulting, software engineering, AI, digital products and platforms, data, cloud, intelligent automation, agile transformation, and industry...
-
Cyber Security Engineer
3 weeks ago
Hyderabad, Telangana, India Go IT Builders Software Solutions Full timeWe are looking for a Principle/Senior Product Security Engineer located in Hyderabad. The ideal candidate will have the following experience/skillsets but not limited to:Previous experience as a developer preferred "Not a pen tester"Deep understanding of Application securityDeep understanding of securing CI/CD pipelinesExperience with Cloud to include...
-
Senior Applications Security Manager
1 week ago
Hyderabad, Telangana, India Experian Full time ₹ 15,00,000 - ₹ 20,00,000 per yearJob description :The Application Security Manager will be part of a team of Information Security Application Engineers and Penetration Testers tasked with advancing and maturing Application Attack Surface Management Program and Application Security Posture at Experian. You will build and foster the team's abilities to collaborate and achieve security...
-
Application Security Manager
1 week ago
Hyderabad, Telangana, India Experian Full time ₹ 15,00,000 - ₹ 20,00,000 per yearCompany DescriptionJob DescriptionYou will be #LI-hybrid based in Hyderabad and reporting to Director. This is a Managerial role Summary of Primary ResponsibilitiesOversee and deliver Application Security Assessment services. Lead, mentor, and manage a team of application security engineers and penetration testers, ensuring effective daily operations. ...
-
Senior DevSecOps Engineer
1 week ago
Hyderabad, Telangana, India TriNet Full time ₹ 15,00,000 - ₹ 20,00,000 per yearJob DescriptionTriNet is a leading provider of comprehensive human resources solutions for small to midsize businesses (SMBs). We enhance business productivity by enabling our clients to outsource their HR function to one strategic partner and allowing them to focus on operating and growing their core businesses. Our full-service HR solutions include...
-
Penetration Tester
1 week ago
Hyderabad, Telangana, India Experian Full time**Company Description** Experian unlocks the power of data to create opportunities for consumers, businesses and society. During life’s big moments - from buying a home or car, to sending a child to college, to growing a business exponentially by connecting it with new customers - we empower consumers and our clients to manage data with confidence so they...
-
Security and Pen Tester
1 day ago
Hyderabad, India Capgemini Full timeRoles & Responsibilities: ? Conduct vulnerability assessments of applications using various open source and commercial tools ? Conduct penetration test and launch exploits using Burpsuite Nessus Metaspoilt Backtrack penetration testing distribution tools sets ? To carry out advanced manual technical analysis on application intrusions ? Analyze scan reports...
-
Recruiter
1 day ago
Hyderabad, India Claranet Full time**About The Role**: Supporting the recruitment process for a diverse range of roles (predominantly technical - AWS/Azure, Cloud, Cyber security, SQL etc) - Co-ordinate the entire interview and selection process working closely with the technical panel, hiring manager, and the applicants. - Co-ordinate the selection and onboarding process in line with the...