Security Consultant

3 days ago


Bengaluru, Karnataka, India Payatu Full time ₹ 20,00,000 - ₹ 25,00,000 per year

Role Overview

We are looking for a hands‑on Security Consultant with strong red‑team / penetration‑testing expertise to perform advanced assessments across enterprise environments. You will be responsible for identifying vulnerabilities, attempting controlled exploits, evaluating resilience, and helping our clients remediate weaknesses. Your work will span Active Directory (on‑prem, Azure AD), internal/external networks, wireless, file sharing systems, web applications, and more.

Key Responsibilities:

  • Design and execute
    advanced penetration tests
    , vulnerability assessments, and simulated attack scenarios to uncover security weaknesses in systems, networks, applications, and infrastructure.
  • Conduct comprehensive assessments of
    Active Directory environments
    (on‑prem, Azure), including lateral movement, privilege escalation, persistence, and other AD‑exploitation techniques.
  • Perform internal and external network penetration testing, wireless network security assessments, and evaluations of file sharing systems.
  • Simulate threat actor tactics, techniques, and procedures (TTPs) to test the organization's resilience and to push its detection, prevention, and response capabilities.
  • Plan and execute social engineering attacks (e.g., phishing, pretexting, baiting, tailgating) to test human and insider threat vectors.
  • Perform web application security testing: OWASP Top 10, logic flaws, custom code reviews, exploitation, etc.
  • Suggest optimum security improvements to application components, architectures, and configurations.
  • Collect evidence, develop proof‑of‑concept exploits, and maintain detailed write‑ups of findings.
  • Deliver clear, actionable reports (technical + non‑technical) with findings, risk evaluations, and remediation recommendations.
  • Work closely with client teams (developers, QA, infrastructure, operations) to explain vulnerabilities and support remediation.
  • Keep up to date with emerging threats, tools, exploits, and attack vectors; develop or customize tools, scripts, and techniques to enhance the red team/assessment capabilities.
  • Occasionally mentor or provide guidance to more junior team members.

Required Qualifications & Experience:

  • Minimum
    3 years' experience
    in penetration testing, red teaming, or similar offensive security roles, with strong focus on Active Directory environments.
  • Deep hands‑on expertise in AD exploitation: lateral movement, privilege escalation, persistence, etc.
  • Solid fundamentals of network and application protocols: TCP/IP, DNS, DHCP, SMB, LDAP, etc.
  • Strong web application security knowledge: OWASP Top 10, logic flaws, secure coding concerns.
  • Experience in wireless network attacks and assessments.
  • Proficient with at least one programming or scripting language (e.g. Python, PowerShell, etc.).
  • Familiarity with red‑teaming and penetration‐testing tools: Burp Suite, evilginx, C2, bloodhound, etc.
  • Excellent report writing, presentation, and communication skills—ability to communicate both with technical teams and non‑technical stakeholders.
  • Strong problem solving, analysis, troubleshooting skills; ability to work independently and under deadlines.
  • Good planning and execution capabilities: organizing assessments, coordinating with teams, scoping.

Desirable / Nice to Have:

  • Certifications: CRTP,CARTP, CRTE, CRTO, CARTE or equivalent.
  • Experience working in the financial services domain, or other highly regulated industries.
  • History of publishing, presenting or otherwise contributing to the security community (blogs, talks, advisories).

What Your Day Might Look Like"

  • Beginning with a scoping meeting with the client & internal teams to define targets and scope of the assessment.
  • Running network scans, enumeration, exploitation (internal and external).
  • Breaking into AD, exploiting trust relationships, escalating privileges.
  • Testing web applications: fuzzing, manual code review, logic flaws, session management, etc.
  • Using C2 to evade existing security mechanism. (EDR, XDR etc)
  • Conducting mock phishing or other social engineering attacks.
  • Writing proof‑of‑concepts and collecting evidence of vulnerabilities.
  • Documenting all findings and preparing a detailed report with remediation steps.
  • Presenting results to client technical teams and leadership.
  • Continuous self‑learning: staying updated with latest vulnerabilities, tools, threat actor TTPs, etc.

Soft Skills & Attributes:

  • Ability to articulate technical findings in business‑friendly language.
  • Strong ownership, self‑motivation, and ability to work both independently and collaboratively.
  • Adaptability—able to shift focus depending on client environment or threat model.
  • Good stakeholder management and ability to deliver under tight deadlines.

  • Security Consultant

    1 week ago


    Bengaluru, Karnataka, India GERALD US, Inc. Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    As a Security Consultant, you will play a key client-facing role, engaging directly with stakeholders across German-speaking markets. You will provide advisory, implementation, and project delivery support to help clients strengthen their security posture, achieve compliance, and align with international standards. Your ability to communicate effectively in...


  • Bengaluru, Karnataka, India SR consultant Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Description : - Operate a hands-on role involving penetration testing and vulnerability assessment activities of complex applications, operating systems, wired and wireless networks, and mobile applications/devices - Develop and maintain security testing plans for internal environments and vendors - Automate penetration and other security testing on...


  • Bengaluru, Karnataka, India Infosys Full time ₹ 48,00,000 - ₹ 1,20,00,000 per year

    IT Consulting• Primary skills:Infrastructure Security->Email Security,Network Security,Network Security->Firewalls->Checkpoint,Network Security->Firewalls->Juniper-Firewalls,Network Security->Firewalls->Palo Alto,Network Security->Firewalls->Web Application Firewall(WAF),Network Security->Load Balancer->F5,Network Security->Proxy->Blue Coat,OT Security,OT...


  • Bengaluru, Karnataka, India Payatu Security Consulting Pvt. Full time ₹ 10,00,000 - ₹ 25,00,000 per year

    Role Overview : We are looking for a hands-on Security Consultant with strong red-team / penetration-testing expertise to perform advanced assessments across enterprise environments. You will be responsible for identifying vulnerabilities, attempting controlled exploits, evaluating resilience, and helping our clients remediate weaknesses. Your work...


  • Bengaluru, Karnataka, India Payatu Security Consulting Pvt. Full time ₹ 1,20,000 - ₹ 3,00,000 per year

    Are you interested in automating the build and deployment process of the application while ensuring application security If yes, then Payatu is the place for you. We are always in search of passionate people to expand our renowned Bandit family at Payatu. In the quest for Bandits, here is an excellent opportunity we would like to share with you. Who...


  • Bengaluru, Karnataka, India Infosys Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Azure AD/AWS• Primary skills:AWS DevOps,Cloud Security->AWS Security,Cloud Security->Azure Security,GRC,IDAM->Cyberark,Infrastructure Security->Email Security,Technology->Enterprise Mobility Solution->MS Azure AD, MS Azure RMS, MS Intune,Technology->Finacle-Core-RAS->CASA TD->Advance,Technology->Identity Management->Identity Governance Framework,...


  • Bengaluru, Karnataka, India NTT DATA Global Delivery Services Ltd Full time ₹ 8,00,000 - ₹ 18,00,000 per year

    Business Consulting-Cloud Security Consultant (Azure) Req ID: 341316 NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now. We are currently seeking a Business Consulting-Cloud Security Consultant (Azure) to...


  • Bengaluru, Karnataka, India Infosys Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Cyber Security - Firewall (Palo Alto/Fortigate)• Primary skills:Network Security->Firewalls->Checkpoint,Network Security->Firewalls->Juniper-Firewalls,Network Security->Firewalls->Palo Alto,Network Security->Firewalls->Web Application Firewall(WAF),Technology->Finacle-Core-Payments->Mandates->Master,Technology->Identity Management->IDAM-Design , work flow...


  • Bengaluru, Karnataka, India NTT DATA Global Delivery Services Ltd Full time ₹ 10,00,000 - ₹ 25,00,000 per year

    Sr. SAP Security Consultant NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now. We are currently seeking a Sr. SAP Security Consultant to join our team in Bengaluru, Karnataka, India. At NTT DATA, we know...


  • Bengaluru, Karnataka, India Version 1 Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Company DescriptionVersion 1 has celebrated over 28 years in Technology Services and continues to be trusted by global brands to deliver solutions that drive customer success. Version 1 has several strategic technology partners including Microsoft, AWS, Oracle, Red Hat, OutSystems and Snowflake. We're also an award-winning employer reflecting how employees...