Breach and Attack Simulation

3 days ago


Bengaluru Hyderabad Pune, India Infosys Full time US$ 1,04,000 - US$ 1,30,878 per year

JD Breach and Attack Simulation (BAS role)

The Cyber security Principal Engineer (Breach and Attack Simulation) is responsible for designing, implementing, and maturing advanced security validation capabilities to safeguard enterprise systems and applications. This role focuses on continuous security validation through Breach and Attack Simulation (BAS) tools, integration with existing security infrastructure, and providing actionable insights to strengthen the firms cyber resilience. Engineer partners with cross-functional teams simulate real-world adversarial tactics, techniques, and procedures (TTPs), evaluate control effectiveness, and recommend enhancements that align with enterprise risk management and regulatory standards.

ESSENTIAL DUTIES AND RESPONSIBILITIES

The following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

  • Design and Execute BAS Scenarios: Plan and conduct realistic cyberattack simulations that mirror real-world threat actor TTPs across enterprise environments.
  • Analyze Simulation Results: Assess BAS outcomes to identify security control gaps, vulnerabilities, and opportunities for improved detection and response.
  • Provide Actionable Recommendations: Develop and communicate prioritized recommendations to strengthen security policies, procedures, and technical controls.
  • Integrate BAS with Security Infrastructure: Connect BAS platforms with SIEM, SOAR, EDR, and other security tools to optimize detection engineering and response workflows.
  • Collaborate Across Teams: Work with red, blue, and purple teams, as well as incident response and threat intelligence groups, to adjust alerts, rules, and detection logic.
  • Threat Hunting and Intelligence: Leverage threat intelligence to inform BAS scenarios and proactively address emerging threats.
  • Vulnerability Management Support: Contribute to the identification, prioritization, and remediation of vulnerabilities based on simulation and testing results.
  • Project Leadership: Lead small-to-large scale security validation initiatives with manageable risks and play significant roles in larger, complex security projects.
  • Documentation and Reporting: Maintain detailed documentation of BAS methodologies, procedures, and findings; communicate technical results clearly to both technical and non-technical stakeholders

Apply here:

218424



  • Pune, India Outworx Solutions Full time

    Level : - L1+L2+L3 Job Role : - L1 : - Conduct red team tasks as per simulation plan Assist with log collection, TTP mapping, and report development Monitor exploitation success and align findings to risk scenarios Provide support for follow-up remediation verification L2 : - Build/redesign red team labs and attack paths Execute hands-on exploitation and...


  • Hyderabad, Telangana, India AT&T Full time

    About the Company Join AT T and reimagine the communications and technologies that connect the world Our Chief Security Office ensures that our assets are safeguarded through truthful transparency enforce accountability and master cybersecurity to stay ahead of threats Bring your bold ideas and fearless risk-taking to redefine connectivity and transform...

  • Lead-Red team

    1 week ago


    Hyderabad, India NopalCyber Full time

    About NopalCyberNopalCyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Through Managed Extended Detection and Response (MXDR), Attack Surface Management (ASM), Breach and Attack Simulation (BAS), and Advisory Services, we fortify our clients’ cybersecurity across both offense and...

  • Lead-Red team

    1 week ago


    Hyderabad, India NopalCyber Full time

    About NopalCyberNopalCyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Through Managed Extended Detection and Response (MXDR), Attack Surface Management (ASM), Breach and Attack Simulation (BAS), and Advisory Services, we fortify our clients’ cybersecurity across both offense and...

  • Python AWS Lead

    1 week ago


    Hyderabad, India NopalCyber Full time

    About NopalCyber NopalCyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Through Managed Extended Detection and Response (MXDR), Attack Surface Management (ASM), Breach and Attack Simulation (BAS), and Advisory Services, we fortify our clients’ cybersecurity across both offense...


  • Hyderabad, Telangana, India AT&T Full time

    About the Company Join AT T and reimagine the communications and technologies that connect the world Our Chief Security Office ensures that our assets are safeguarded through truthful transparency enforce accountability and master cybersecurity to stay ahead of threats Bring your bold ideas and fearless risk-taking to redefine connectivity and transform...


  • Hyderabad, India NopalCyber Full time

    About NopalCyber NopalCyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Through Managed Extended Detection and Response (MXDR), Attack Surface Management (ASM), Breach and Attack Simulation (BAS), and Advisory Services, we fortify our clients’ cybersecurity across both offense...

  • Lead-red team

    1 week ago


    Hyderabad, India NopalCyber Full time

    About Nopal Cyber Nopal Cyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Through Managed Extended Detection and Response (MXDR), Attack Surface Management (ASM), Breach and Attack Simulation (BAS), and Advisory Services, we fortify our clients’ cybersecurity across both offense...


  • Bengaluru, Karnataka, India H&M Group Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    Job Description WHAT YOU'LL DOWe are seeking a skilled and experienced Attack Surface Reduction Analyst with a strong background in penetration testing to join our cybersecurity team. The successful candidate will be responsible for identifying potential security risks and vulnerabilities in our organization's systems, applications, and networks, performing...

  • Lead-Red team

    1 week ago


    Hyderabad, India NopalCyber Full time

    About NopalCyberNopalCyber makes cybersecurity manageable, affordable, reliable, and powerful for companies that need to be resilient and compliant. Through Managed Extended Detection and Response (MXDR), Attack Surface Management (ASM), Breach and Attack Simulation (BAS), and Advisory Services, we fortify our clients’ cybersecurity across both offense and...