Vulnerability Researcher/Ethical Hacker

12 hours ago


Bengaluru, Karnataka, India Aspire Talent Innovations Full time ₹ 8,00,000 - ₹ 20,00,000 per year

Description :

About the role :

We are hiring a hands-on Vulnerability Researcher and Ethical Hacker to find real security weaknesses before attackers do. You will run offensive security research across web, APIs, cloud, containers, binaries, and firmware. Your work will produce reproducible exploit proofs of concept, high quality vulnerability reports, risk-based remediation guidance, and periodic threat briefs for product and engineering teams.

What you will do :

- Perform proactive offensive security testing of web applications, APIs, microservices, mobile apps, server software, containers, and cloud environments.

- Discover, verify, and exploit vulnerabilities to produce clear proof of concept exploits and remediation steps.

- Triage and validate incoming findings from scanners, bug bounty programs, and automated tools to reduce false positives and prioritize actionable issues.

- Reverse engineer binaries, libraries, and firmware to identify logic flaws, memory corruption, or insecure assumptions.

- Develop and run fuzzers, custom scanners, and automated test harnesses to surface hard to find issues.

- Build and maintain internal tooling, scripts, and exploit frameworks using Python, Go, or other appropriate languages.

- Collaborate with engineering to reproduce bugs, explain attack chains, and help implement fixes and mitigations.

- Produce clear, evidence-based vulnerability reports suitable for developers, security leadership, and compliance auditors.

- Participate in responsible disclosure, coordinate CVE submissions, and engage with third parties as needed.

- Keep current on attacker techniques, public advisories, and exploit trends. Share findings via internal training, playbooks, and red team exercises.

Required skills and experience :

or more years of hands-on offensive security, vulnerability research, or penetration testing experience.

- Strong web and API security skillset including common vulnerability classes such as authentication and authorization flaws, BOLA/IDOR, injection, SSRF, deserialization, and auth misuse.

- Solid experience with exploit development, proof of concept creation, and vulnerability triage.

- Proficiency in scripting and tooling. Python required. Experience with Go, Bash, or JavaScript is a plus.

- Familiarity with reverse engineering and binary analysis workflows. Comfortable with tools like Ghidra, IDA, radare2, or similar.

- Experience with fuzzing frameworks and techniques. Ability to design targeted fuzzers for complex code paths.

- Deep experience with security tooling : Burp Suite, ZAP, Wireshark, Metasploit, sqlmap, etc.

- Strong knowledge of cloud platforms and cloud security (AWS, GCP, or Azure) including common misconfigurations and identity issues.

- Comfortable working with containerized environments and Kubernetes security concepts.

- Excellent written and verbal communication. Able to produce developer friendly remediation steps and concise vulnerability reports.

- Strong ethical mindset and understanding of legal and disclosure boundaries.



  • Bengaluru, Karnataka, India MARMON HOLDINGS Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Marmon Technologies India Private LimitedAs a part of the global industrial organization Marmon Holdings—which is backed by Berkshire Hathaway— you'll be doing things that matter, leading at every level, and winning a better way. We're committed to making a positive impact on the world, providing you with diverse learning and working opportunities, and...


  • Bengaluru, Karnataka, India Endor Labs Full time ₹ 12,00,000 - ₹ 24,00,000 per year

    Who we areEndor Labs is building the Application Security platform for the software development revolution. Modern software is complex and dependency-rich, making it increasingly difficult to pinpoint the risks that truly matter. Endor Labs solves this challenge by building a call graph of your entire software estate—enabling teams to clearly identify,...

  • Growth Hacker

    2 weeks ago


    Bengaluru, Karnataka, India Flash AI Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    About Flash AIFlash AI, a first-of-its-kind AI Shopping Assistant, designed to enhance the shopping experience for the 1 billion+ active & growing ecommerce shoppers in the world. Shoppers today spend hours validating a purchase - researching pros/cons, reading reviews across platforms, figuring out best prices etc. Flash AI is designed to help shoppers...


  • Bengaluru, Karnataka, India Schneider Electric Full time ₹ 4,00,000 - ₹ 8,00,000 per year

    Job Description:In today's rapidly evolving digital landscape, the ability to effectively manage cybersecurity vulnerabilities and incidents is critical to maintaining organizational trust and operational integrity. We are seeking a highly skilled Vulnerability & Incident Handler to serve as the coordinator for all cybersecurity incident and vulnerability...

  • Associate SME

    2 weeks ago


    Bengaluru, Karnataka, India Microland Full time ₹ 5,00,000 - ₹ 12,00,000 per year

    Job Description:Education Qualification :Any Graduate Skills :Primary -> Technology | Cybersecurity | SOC Alert Management | 4 - AdvancedPrimary -> Technology | Cybersecurity | SOC Monitoring | 4 - AdvancedSecondary -> Technology | Cybersecurity | Cloud Security | 2 - KnowledgeableSecondary -> Technology | Cybersecurity | Vulnerability Management | 2 -...


  • Bengaluru, Karnataka, India Zybisys Consulting Services Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    Job Role: Offensive Security EngineerLocation: BangaloreJob Type: Full-timeExperience: 3+ years in Offensive Security / Penetration TestingAbout ZybisysAt Zybisys, we are committed to securing digital ecosystems by proactively identifying and mitigating cyber threats. As we expand our security team, we are looking for a highly skilled Offensive Security...


  • Bengaluru, Karnataka, India MATEX HACKER PLAYGROUND | By Matex Consultancy Full time ₹ 6,00,000 - ₹ 12,00,000 per year

    Company DescriptionMATEX HACKER PLAYGROUND | By Matex Consultancy is a team of passionate Bug Bounty Hunters, Testers, Consultants, and Security Trainers. We are dedicated to the field of cybersecurity and provide a supportive environment for security enthusiasts. If you are interested in joining a team of Red Teamers, MATEX is the ideal place to further...


  • Bengaluru, Karnataka, India Com Olho Full time ₹ 6,00,000 - ₹ 12,00,000 per year

    Company DescriptionAt Com Olho, we are at the forefront of cybersecurity innovation, bringing together ethical hackers, security researchers, and organisations to strengthen digital defenses. Our platform provides a dynamic space where security experts can identify, report, and remediate vulnerabilities using Generative AI across a diverse range of systems....


  • Bengaluru, Karnataka, India Dexcom Inc Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Meet the TeamJoin Dexcom's Product Security R&D department as a Senior Security Engineer specializing in penetration testing. Our team is dedicated to ensuring the security of our mobile and web applications, cloud infrastructure, APIs, and physical medical devices. You'll work closely with the Director of Cybersecurity Engineering to identify and exploit...


  • Bengaluru, Karnataka, India NewSpace Research and Technologies Full time ₹ 5,00,000 - ₹ 8,00,000 per year

    Who we are:We are a start-up based out of Bengaluru & Delhi NCR. We are engaged in development of next generation missions and technologies (NGM&T) towards future warfare needs of the Indian defence forces. It is undertaking research towards enhancing persistence and autonomy for unmanned vehicles and robotic swarms. NRT's product development portfolio...