
Lead VAPT
2 days ago
Job Title: Lead Offensive Security and Vulnerability Management
Location: Gurugram
Job Type: Full-Time
Role Overview: We are seeking a highly skilled Lead VAPT to lead offensive security and vulnerability management across Airtel's telecom ecosystem, spanning 2G, 4G, 5G SA/NSA, Fixed Wireless Access (Consumer & Enterprise Services), Wi-Fi, Homes & Broadband, NLD/ILD, DTH, Enterprise, and Transport.
This role will oversee telecom protocol penetration testing, attack surface management, red teaming, and vulnerability assessments, while also leading the vulnerability management lifecycle (VM) end-to-end — from discovery and risk rating to closure governance with managed service partners (MSS), OEMs, and domain owners.
This role works independently, owning the Offensive Security and Vulnerability Management vertical end-to-end, while leading MSS teams for delivery and collaborating with other Leads as part of a unified security leadership team.
Key Responsibilities:
Strategic Impact
- Define and execute Airtel's VAPT and vulnerability management strategy aligned with business and regulatory objectives.
- Build an attack surface management program covering telecom networks, enterprise IT, and customer-facing platforms.
- Enhance offensive security practices with protocol-level testing and red team simulations.
Operational Excellence
- Lead periodic vulnerability scans Airtel's telecom ecosystem, spanning 2G, 4G, 5G SA/NSA, Fixed Wireless Access (Consumer & Enterprise Services), Wi-Fi, Homes & Broadband, NLD/ILD, DTH, Enterprise, and Transport
- Conduct telecom protocol penetration testing eg. SS7, Diameter, SIP, and GTP.
- Manage new node VA scans before deployment to production.
- Perform application security assessments for Airtel's consumer/enterprise apps and APIs.
- Conduct cloud-native security testing for 5G core CNFs/VNFs and enterprise workloads.
- Develop custom scripts and tools to automate protocol fuzzing, exploit validation, and attack simulations
- Oversee red team exercises and adversary simulations to validate SOC detection and IR readiness.
- Lead the end-to-end vulnerability lifecycle: identification, prioritization, remediation tracking, exception management, and closure.
- Deliver risk-based reports with actionable remediation guidance for technical teams and leadership.
Leadership & Collaboration
- Lead and manage the MSS Vulnerability Assessment team and ensure timely deliverables.
- Govern risk closure with domain owners, OEMs, and managed service partners through structured governance.
- Work with SOC, Build, and GRC teams to ensure detection coverage, policy compliance, and risk governance.
- Engage in executive-level governance reporting on vulnerability posture, remediation SLAs, and red team outcomes.
- Work as the single point of accountability for VM lifecycle management.
Required Skills and Experience:
- 8+ years of experience in VAPT, offensive security, and vulnerability management leadership.
- Strong expertise in telecom network protocol testing
- Hands-on with VA/PT tools (eg. Tenable SC, Nessus, Nexpose, Burp Suite, Metasploit, custom telecom fuzzers, Wireshark).
- Experience in vulnerability lifecycle governance (tracking, closure, exception handling, SLA reporting).
- Knowledge of attack surface management, red teaming, adversary simulations, and hands-on.
- Strong understanding of network stack – Mobility, Transport, Broadband, Enterprise, Wi-Fi, Homes, DTH.
- Proven ability to work with OEMs, MSSPs, and internal domain owners for coordinated remediation.
Preferred Qualifications:
- Certifications: OSCP, OSWE, GPEN, GXPN, CEH (Practical), CISA/CISM for risk governance.
- Experience in telecom security testing or managed security service delivery.
- Familiarity with 3GPP, GSMA FS.11, ISO 27011, and NESAS/SCAS frameworks.
- Exposure to cloud-native 5G security testing (CNFs, VNFs, API security).
Why Join Us?
- Lead the entire VAPT and vulnerability management function for one of the leading telecommunications companies globally.
- Drive both offensive security (protocol/PT, red team) and defensive risk closure governance.
- Collaborate with OEMs, MSSPs, and regulators to strengthen Airtel's cyber resilience.
-
Lead VAPT
16 hours ago
DoubleTree by Hilton Hotel Gurgaon - New Delhi NCR, India Airtel Full timeJob Title: Lead Offensive Security and Vulnerability Management Location: Gurugram Job Type: Full-Time Role Overview: We are seeking a highly skilled Lead VAPT to lead offensive security and vulnerability management across Airtel's telecom ecosystem, spanning 2G, 4G, 5G SA/NSA, Fixed Wireless Access (Consumer & Enterprise Services), Wi-Fi, Homes & Broadband,...
-
VAPT OSCP
4 days ago
Delhi, India Cubical Operations LLP Full timeJob Description: VAPT (OSCP) Manager / Senior ManagerLocation:Remote (India) | Frequent Travel to the Middle EastExperience:6+ YearsPosition Level:Manager / Senior ManagerEmployment Type:Full-TimeAbout the RoleWe are seeking an experiencedVulnerability Assessment & Penetration Testing (VAPT)professional with a strong background in offensive security...
-
Full-Stack Application Development Lead
2 weeks ago
Delhi, NCR, gurgoan, India MC Placement Services Full time ₹ 15,00,000 - ₹ 25,00,000 per yearRole & responsibilitiesLead enterprise web and mobile application development.Manage application lifecycle and ensure VAPT compliance.Collaborate with ERP, CRM, HRMS, and Logistics teams.Drive SAP/Oracle integrations and ETL automation initiatives.Support Power BI reporting and digital transformation projects.Mentor and manage developer teams (backend,...
-
Cyber Security Consultant
2 weeks ago
Delhi, NCR, India Dataconfiance Full time ₹ 9,00,000 - ₹ 12,00,000 per yearDataConfiance seeks experienced Cyber Security Consultant (CISSP, 6+ yrs). Lead assessments, design security frameworks, and guide teams across industries. Learn More: Required Candidate profileCISSP required, 6+ yrs cybersecurity. Acumen in ISO 27001, NIST, PCI DSS, SOC2, SIEM, IAM, cloud security, VAPT, SAST/DAST tools. Skilled in app security, threat...
-
Cyber Security Consultant
16 hours ago
NCR, India Dataconfiance Full timeDataConfiance seeks experienced Cyber Security Consultant (CISSP, 6+ yrs). Lead assessments, design security frameworks, and guide teams across industries. Learn More: Required Candidate profile CISSP required, 6+ yrs cybersecurity. Acumen in ISO 27001, NIST, PCI DSS, SOC2, SIEM, IAM, cloud security, VAPT, SAST/DAST tools. Skilled in app security, threat...
-
Cyber Security Expert
5 days ago
Delhi, Delhi, India beBeePenetration Full time ₹ 12,00,000 - ₹ 36,00,000Job Description:We are seeking a skilled Vulnerability Assessment and Penetration Testing (VAPT) Consultant to join our team.The successful candidate will be responsible for planning, coordinating, and executing VAPT activities to identify and remediate security vulnerabilities in Bank applications.This role requires a comprehensive understanding of OWASP...
-
Senior Manager
16 hours ago
Gurugram, India Valvoline Cummins Full timeJob Overview Drive the organization's security strategy and operations. Oversee cybersecurity initiatives, network security, license and AMC management. Ensure robust data protection through DLP and proxy and other security solutions. Combine technical expertise with leadership skills to safeguard digital assets and infrastructure. Develop and maintain a...
-
IT Auditor
14 hours ago
Gurugram, India Valuedrive Technologies Full timeIT Audit and Compliance Program Manager We are seeking an experienced IT Audit and Compliance Program Manager to lead our financial audit initiatives, emphasizing IT controls, compliance frameworks, and risk management. In this role, you will ensure our IT operations meet industry compliance standards and regulatory requirements, safeguarding the integrity...
-
Penetration Tester
2 days ago
Delhi, India SUVIKSAN TECHNOLOGIES PRIVATE LIMITED Full timePenetration Tester | 3-5 Years | Permanent Work From HomeThis role is strictly forVAPT Consultantswith aminimum of 3–5 years of extensive experienceinVulnerability Assessments and Penetration Testing (VAPT) of Web Applications and APIs ..About Organization:Suviksan Technologies is a leading technology services and consulting company, specializing in...
-
Lead Security Architecture
13 hours ago
Gurugram, India Airtel Full timeLead Security Architecture & SOC Engineering Role Overview: We are seeking a highly skilled Lead Security Architecture & SOC Engineering to design, build, and mature Airtel's threat detection and cyber defense capabilities. This critical role spans Airtel's telecom ecosystem — 2G, 4G, 5G SA/NSA, Fixed Wireless Access (Consumer & Enterprise Services),...