Senior Security Consultant

18 hours ago


Bengaluru, Karnataka, India Payatu Full time ₹ 12,00,000 - ₹ 36,00,000 per year

Are you a skilled penetration tester looking for an exciting new opportunity to take your career to the next level? Join our dynamic cybersecurity team, where you'll have the chance to work on cutting-edge projects, including cloud security, reverse engineering, threat modelling, and product security
.

Who we are?

Payatu is an ISO certified company where we strive to create a culture of excellence, growth and innovation that empowers our employees to reach new heights in their careers. We are young and passionate folks driven by the power of the latest and innovative technologies in IoT, AI/ML, Blockchain, and many other advanced technologies. We are on the mission of making Cyberworld safe for every organization, product, and individual.

About the Role

We are seeking an experienced and highly skilled
Senior Security Consultant - Penetration Tester
to join our growing cybersecurity team. The ideal candidate will possess a strong background as a security researcher with deep expertise in cloud security, thick client applications, threat modelling, reverse engineering, and product security. As a Senior Security Consultant, you will lead the discovery and mitigation of security vulnerabilities in client applications, infrastructure, and systems, delivering actionable insights to enhance security posture.

You will play a critical role in both offensive security testing and strategic security consulting, collaborating with clients and internal teams to ensure secure product development, infrastructure, and cloud environments.

Key Responsibilities

·     
Penetration Testing
: Lead penetration tests on a variety of environments including cloud infrastructures (AWS, Azure, GCP), thick client applications, and enterprise systems.

·      
Cloud Security Research
: Conduct advanced security research, vulnerability assessments, and exploitation testing for cloud platforms and services.

·    
Threat Modelling
: Work closely with product teams and clients to create comprehensive threat models, identifying potential risks, vulnerabilities, and attack vectors.

·    
Reverse Engineering
: Perform reverse engineering of binaries, software, and applications to identify vulnerabilities, develop exploits, and enhance product security.

·  
Security Advising
: Provide security advisories and recommendations for improving secure coding practices, hardening systems, and adopting secure development lifecycles.

·   
Product Security
: Assess and advise on the security posture of software products, focusing on security from design to deployment and beyond.

·   
Client Interaction
: Serve as a trusted advisor to clients, offering detailed reports and presentations on penetration test results, security findings, and mitigation strategies.

·   
Team Leadership
: Mentor and guide junior team members, helping to foster a strong security culture within the organization.

·   
Tool Development & Research
: Develop custom security tools, scripts, and exploits to address new vulnerabilities and improve penetration testing efficiency.

·  
Continuous Learning
: Stay up to date with emerging security threats, attack techniques, and security research in various domains, particularly cloud and product security.

You Have All Our Desired Qualities, if:

·      Minimum 3+ years of hands-on experience in penetration testing, security research, or related fields.

·      Proven track record in performing complex security assessments on cloud environments (AWS, Azure, GCP), thick client applications, and enterprise systems.

·      Strong experience with reverse engineering (static and dynamic analysis) of software and binaries.

·      Expertise in threat modelling, risk assessment, and security design for software products.

·      Extensive experience in vulnerability analysis and exploitation techniques across diverse platforms.

You are a perfect technical fit if:

·      Advanced knowledge of common penetration testing tools (Burp Suite, Metasploit, Wireshark, etc.).

·      Deep understanding of cloud-native security issues and technologies (containers, Kubernetes, serverless, etc.).

·      Strong knowledge of application security principles, including OWASP Top 10, secure coding practices, and common vulnerabilities.

·      Understanding of product security practices and secure software development life cycles.

·      Familiarity with common protocols (HTTP, SSL/TLS, DNS, etc.), encryption algorithms, and web security mechanisms.

·      Experience with programming/scripting languages such as Python, Go, or C/C++.

Certifications
:

·      Offensive Security Certified Professional (OSCP) or similar certifications such as CEH, CRTP, OSCE, or CISSP.

·      Additional certifications or training in cloud security, reverse engineering, or product security are a plus.

Soft Skills:

·      Excellent communication skills to present findings and security concepts clearly to both technical and non-technical stakeholders.

·      Strong problem-solving skills with the ability to think creatively and develop solutions to complex security challenges.

·      Leadership capabilities to mentor and guide junior security consultants and researchers.

·      Ability to work independently and manage multiple projects effectively under tight deadlines.

Preferred Qualifications:

·      Experience in developing custom security tools or exploits.

·      Experience with threat hunting or advanced adversarial techniques.

·      Familiarity with advanced attack frameworks like MITRE ATT&CK.

Job Location: Bangalore/Pune



  • Bengaluru, Karnataka, India Black Duck Software Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Black Duck Software, Inc. helps organizations build secure, high-quality software, minimizing risks while maximizing speed and productivity. Black Duck, a recognized pioneer in application security, provides SAST, SCA, and DAST solutions that enable teams to quickly find and fix vulnerabilities and defects in proprietary code, open source components, and...


  • Bengaluru, Karnataka, India TWO95 International, Inc Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Title: Senior SAP Security ConsultantJob Type: Full TimeLocation: 100% Remote Work(India)Salary: Open (Base)We are seeking a highly skilled and experienced SAP Security Consultant to join our team. The SAP Security Consultant will play a critical role in ensuring the security and compliance of our SAP systems. The ideal candidate will have a deep...


  • Bengaluru, Karnataka, India RedHunt Labs Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Company DescriptionRedHunt Labs is a cybersecurity company focused on Attack Surface Management (ASM) and Penetration Testing. We help mid to large enterprises across the UK, US, India, and SE Asia discover unknown assets, monitor exposure, and validate risk. Our CTEM platform unifies ASM with vendor and subsidiary risk, Shadow SaaS discovery, risk rating,...

  • Security Consultant

    4 days ago


    Bengaluru, Karnataka, India NTT Ltd. Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Make an impact with NTT DATAJoin a company that is pushing the boundaries of what is possible. We are renowned for our technical excellence and leading innovations, and for making a difference to our clients and society. Our workplace embraces diversity and inclusion – it's a place where you can grow, belong and thrive. Your day at NTT DATAThe Senior...

  • Camunda Consultant

    13 hours ago


    Bengaluru, Karnataka, India Corporate Security Services Full time ₹ 90,00,000 - ₹ 1,20,00,000 per year

    Company DescriptionCorporate Security Services, based in Ghaziabad, specializes in providing a range of professional software security solutions, including experienced security guards The company is dedicated to ensuring safety and security for businesses and organizations. They pride themselves on reliability and professionalism, consistently delivering...

  • Field Consultant

    1 week ago


    Bengaluru, Karnataka, India Rubrik Security Cloud Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    About the role:As a Professional Services Field Consultant (FC), you will join our team as an essential contributor, helping our strategic customers successfully deploy and adopt Rubrik's data security and cyber resilience platform. This is a crucial, customer-facing role designed for a motivated individual ready to rapidly build expertise in modern hybrid...


  • Bengaluru, Karnataka, India Oscillix Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Responsibilities:Senior SAP GRC AC & IAG Consultant. Configure GRC (ARA/ARM/EAM/BRM), IAG + Bridge, BTP IAS/IPS; design S/4HANA & Fiori security; set up SAML/OAuth; deliver projects & support with clients. Bangalore | Join in 1530 days.

  • Security Consultant

    6 days ago


    Bengaluru, Karnataka, India GERALD US, Inc. Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    As a Security Consultant, you will play a key client-facing role, engaging directly with stakeholders across German-speaking markets. You will provide advisory, implementation, and project delivery support to help clients strengthen their security posture, achieve compliance, and align with international standards. Your ability to communicate effectively in...


  • Bengaluru, Karnataka, India UltraViolet Cyber Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Experience: 2 to 4 yrsPosition: Senior Consultant (Application Security Testing) In this role, you need to go beyond traditional testing services to help our clients identify, remediate, and prevent vulnerabilities in the applications that power their business. You need to have a holistic approach to application security offers a balance of managed and...


  • Bengaluru, Karnataka, India UltraViolet Cyber Full time ₹ 20,00,000 - ₹ 25,00,000 per year

    Experience: 2 to 4 yrs Position: Senior Consultant (Application Security Testing)  In this role, you need to go beyond traditional testing services to help our clients identify, remediate, and prevent vulnerabilities in the applications that power their business. You need to have a holistic approach to application security offers a balance of managed and...