Senior VAPT Engineer – Cybersecurity

4 days ago


Cochin, Kerala, India Art Technology and Software Full time ₹ 7,00,000 - ₹ 12,00,000 per year

Position Overview
We are looking for a highly skilled and experienced Senior VAPT Engineer to join our cybersecurity team. The ideal candidate will lead vulnerability assessment and penetration testing activities, identify security weaknesses, and provide actionable recommendations to improve security posture. This role is critical in ensuring the resilience of our clients' applications, networks, and infrastructure against evolving cyber threats. The Senior VAPT Engineer will collaborate with cross-functional teams and deliver high-quality security assessments in a fast-paced, client-facing environment.

Key Responsibilities
Client Engagement & Leadership

  • Act as a trusted security advisor for multiple high-value clients.
  • Manage end-to-end security assessment projects, including scoping, execution, reporting,

and remediation guidance.

  • Conduct technical and executive-level briefings to communicate findings, risks, and strategic

recommendations clearly.

  • Translate complex technical vulnerabilities into business risk insights to help clients prioritize

actions.

  • Collaborate closely with client stakeholders to ensure security recommendations are

practical and actionable.

Advanced Threat Modelling & Risk Assessment

  • Design and maintain threat models tailored to client applications, networks, and cloud

environments.

  • Perform risk assessments focusing on business impact and likelihood of exploitation.
  • Develop attack scenarios based on the latest threat intelligence and real-world attacker

techniques.

  • Guide clients in integrating security into their software development lifecycle (SDLC) and

cloud infrastructure designs.

Penetration Testing & Red Team Operations

  • Lead advanced black-box, grey-box, and white-box penetration testing engagements for web

applications, APIs, networks, and cloud environments.

  • Conduct sophisticated Red Team exercises to simulate targeted attack campaigns.
  • Design and develop custom exploits and testing tools to replicate specific attacker

techniques.

  • Perform social engineering tests (phishing campaigns, physical security assessments) in

controlled and ethical scenarios.

  • Provide detailed post-exercise analysis, including actionable remediation strategies and long

term improvement plans.

Comprehensive Reporting & Documentation

  • Produce clear and technically thorough vulnerability assessment and penetration testing

reports.

  • Create executive-level summaries focused on business impact and compliance risks.
  • Maintain structured and up-to-date testing methodologies and playbooks.
  • Contribute to internal knowledge base, documenting research, custom tools, and successful

testing strategies.

Technical & Programming Expertise

  • Expert in vulnerability assessment and exploitation techniques across a wide range of

technologies.

  • Proficient in security testing tools such as Burp Suite, Nessus, Metasploit, Nmap, OpenVAS,

Cobalt Strike, Wireshark, and tcpdump.

  • Strong scripting and automation skills (Python, Bash, PowerShell) to automate repetitive

testing tasks and tool workflows.

  • Capable of custom tool development and advanced exploit research to target unique client

environments.

  • Strong knowledge of application security vulnerabilities (OWASP Top 10, SANS Top 25) and

attack surface analysis.

  • In-depth understanding of cloud security risks, identity and access management, and

container security (Docker, Kubernetes).

Social Engineering & OSINT Expertise

  • Design and execute social engineering and phishing simulations tailored to client

environments.

  • Perform physical security assessments through tactics like tailgating and badge cloning.
  • Apply Open Source Intelligence (OSINT) techniques to gather reconnaissance data for

assessments.

  • Provide training and awareness recommendations based on assessment outcomes.

Professional Attributes & Mindset

  • Strong analytical, problem-solving, and creative thinking skills.
  • Ethical hacker mindset with a continuous drive to research emerging threats, attack

techniques, and defense bypass methods.

  • Methodical and detail-oriented approach to testing with the ability to think like an attacker.
  • Strong communication and presentation skills, able to engage both technical teams and

business leadership.

  • Proactively innovate by developing new tools, scripts, or methodologies to improve testing

efficiency and depth.

Preferred Qualifications

  • Certifications such as OSCP, GPEN, CREST CRT, CRTO are highly desirable.
  • Experience in DevSecOps, CI/CD pipeline security, or automated security testing frameworks.
  • Familiarity with industry compliance frameworks like PCI-DSS, GDPR, HIPAA, SOC2, and ISO

27001.

  • Prior consulting experience in a service delivery or customer-facing environment.
  • Experience with threat intelligence platforms and indicators of compromise (IoCs).

Required Qualifications

  • 7+ years of hands-on experience in Vulnerability Assessment, Penetration Testing, and

security consulting.

  • Strong technical expertise in application security, network security, cloud security (AWS,

Azure, GCP), and infrastructure security testing.

  • Proven experience using VAPT tools such as Burp Suite, Nessus, Qualys, Nmap, Metasploit,

Nikto, OpenVAS, etc.

  • Solid knowledge of exploitation techniques, post-exploitation frameworks, and manual

testing methodologies.

  • In-depth knowledge of web application vulnerabilities (OWASP Top 10) and network protocol

analysis.

  • Experience conducting cloud security assessments, including misconfigurations, IAM

permissions analysis, and container security.

  • Proficiency in scripting and automation (Python, Bash, PowerShell) to customize tests and

tools.

  • Familiarity with security frameworks and standards such as NIST, ISO 27001, MITRE ATT&CK.
  • Strong reporting and documentation skills, able to translate technical findings into business

friendly recommendations.

  • Excellent communication and stakeholder management skills, able to lead client-facing

engagements.

  • Relevant certifications are a strong plus (e.g., OSCP, CREST, CISSP, CEH, GIAC GPEN).

Skills: python,burp suite,cloud security,security



  • Cochin, Kerala, India beBeeCybersecurity Full time ₹ 20,00,000 - ₹ 25,00,000

    Senior Cybersecurity Manager Job SummaryWe are seeking a seasoned Senior Cybersecurity Manager to lead our Vulnerability Assessment and Penetration Testing (VAPT) program. This role is responsible for developing and executing a comprehensive VAPT strategy, managing a team of security analysts and penetration testers, and ensuring the use of industry-standard...


  • Cochin, Kerala, India beBeeCybersecurity Full time ₹ 15,00,000 - ₹ 20,00,000

    Seeking Cybersecurity Consultant">We are looking for an experienced and skilled cybersecurity professional to join our team. As a Vulnerability Assessment and Penetration Testing (VAPT) consultant, you will be responsible for identifying and mitigating potential security risks across various systems and applications.">Conduct comprehensive vulnerability...


  • Cochin, Kerala, India beBeecybersecurity Full time ₹ 10,00,000 - ₹ 16,00,000

    Job OverviewWe are seeking a seasoned Cybersecurity Expert to lead our team in conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies.About the RolePerform end-to-end Vulnerability Assessment and Penetration Testing (VAPT) for clients' IT infrastructure, applications, and networks.Conduct...


  • Cochin, Kerala, India Quest Global Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    Job Requirements We are looking for a skilled Cybersecurity Engineer to join our IVI team. The engineer will be responsible for ensuring the security, integrity and resilience of IVI systems throughout the development lifecycle from requirements and architecture to validation. The role involves close collaboration with system engineers, software teams and...


  • Cochin, Kerala, India beBeeCybersecurity Full time ₹ 60,00,000 - ₹ 1,20,00,000

    Job Title: Cybersecurity EngineerJob Description:As a Cybersecurity Engineer, you will be responsible for designing and implementing security solutions to protect our infrastructure from cyber threats. This role requires strong knowledge of cybersecurity tools and technologies, as well as excellent problem-solving skills.You will work closely with the IT...


  • Cochin, Kerala, India beBeeCybersecurity Full time ₹ 15,00,000 - ₹ 17,00,000

    Job Title:Cybersecurity Solutions ExpertJob SummaryWe are seeking a highly skilled Cybersecurity Solutions Expert to join our team. As a Senior Network Security Engineer, you will be responsible for ensuring the security and integrity of our network infrastructure. You will work closely with our team to identify and implement solutions to infrastructure and...


  • Cochin, Kerala, India People Konnect Full time

    Role: Senior Product Cybersecurity – Penetration Testing (Embedded only)Client: Global Electrical Product CompanyExperience: 5 -12 yearsLocation: Bengaluru – HybridCTC: 25-35 LacsEmail: careers@peoplekonnect.co.inRequirements:• Ideally more than 5 years of experience in Penetration Testing, Application Security, QA, Network/IoT, or Offer Testing...


  • Cochin, Kerala, India beBeeCybersecurity Full time ₹ 1,80,00,000 - ₹ 2,00,00,000

    **Cyber Security Engineer Role Overview**Key Responsibilities:Define, build, and shape the future of cybersecurity and risk posture.Collaborate across business, IT, and client environments to secure cloud and data center infrastructure.Strengthen defense mechanisms and enhance compliance posture through vulnerability risk reduction and continuous...


  • Cochin, Kerala, India beBeeCybersecurity Full time ₹ 19,98,000 - ₹ 24,99,500

    Cybersecurity ProfessionalJob Summary:We are seeking an experienced Cybersecurity professional to assess and improve the cybersecurity maturity of our organization using industry-recognized frameworks.About the Role:Bachelor's degree in Computer Science, Engineering or similar field (completed and verified prior to start)Six years of general Cybersecurity...


  • Cochin, Kerala, India beBeeCybersecurity Full time ₹ 12,60,000 - ₹ 18,24,000

    Secure Your Future with Cybersecurity ExpertiseWe're seeking an experienced cybersecurity professional to lead and deliver engaging training sessions for working professionals. As a cybersecurity instructor, you'll be responsible for designing and delivering course content, mentoring learners, and ensuring high-quality learning outcomes.The ideal candidate...