Security Testing Engineer
3 days ago
Responsibilities
Direct Responsibilities
- To perform Penetration testing (Gray Box and/or Black Box) for Web applications, Mobile, API, and thick client applications.
- Hands-on mobile penetration tester with strong knowledge and experience in Android and iOS application security testing (both static and dynamic), responsible for discovering, validating and reporting security issues in mobile applications.
- Perform Static analysis (SAST) and Dynamic analysis (DAST) on Android APKs and iOS IPA to identify insecure storage, hardcoded secrets, insecure configurations, runtime hooking, parameter tampering etc
- Conduct reverse engineering and protection bypass on mobile applications including decompiling /inspecting binaries, analyzing native libraries ) and bypassing client-side protections (root / jailbreak detection, SSL pinning, obfuscation, tamper checks etc.) using tools like Frida, objection magisk, cydia/selio/zebra and Xposed.
- Strong research knowledge and should be updated with evolving mobile threats and industry standard (OWASP MASVS/MASTG)
- To understand the applications security requirements and identify & document the scope of the test.
- Ensure execution of the documented security scenarios for the application under test.
- Document and report all findings.
- Collaborate with the developers to help them understand the vulnerabilities reported in application.
- Escalate issues to the local management and onshore stakeholders in case it affects the testing progress.
- Ensure processes for the project is followed for the assessments.
- Note: Mandatory requirement – Mobile, Web & API Penetration Testing
- Optional: Experience in Source Code Assessment (SCA)/SAST.
Technical & Behavioral Competencies
- Clear understanding of OWASP Top 10 - application security risks
- Tools/OS: Burp Suite, OWASP ZAP, Kali Linux, mobsf, jadx, dex2jar, adb, xcode, Frida, objection, apktool, putil, otool.
- Manual Security Testing & Analysis, Security Test Designing
- Excellent Interpersonal and presentation skills
- Strong in verbal and written communication
- Good analytical skills
- Strong Time Management
- Must be flexible, independent, self-motivated.
- Team player
Education Level:
Bachelor's degree or equivalent.
Experience Level
At least 3 years of relevant experience.
-
Application Security Engineer
3 days ago
Mumbai, Maharashtra, India Security Lit Full time ₹ 8,00,000 - ₹ 12,00,000 per yearJob Description: Application Security Engineer (L1)Role OverviewWe are looking for an Application Security Engineer (L1) to join our security team. This is an entry-level position requiring at least 1 year of hands-on experience in application security testing. You will work on identifying and reporting vulnerabilities across web, mobile, API, and thick...
-
Application Security Engineer
7 days ago
Mumbai, Maharashtra, India Security Lit Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJob Description: Application Security Engineer (L2)Role OverviewWe are seeking an experienced Application Security Engineer (L2) to take a lead role in our security testing team. This role requires of 3 year experience (first priority will be given to more than 4 year experience resources for selection) and mandates professional security certifications. You...
-
Senior Security Engineer
2 weeks ago
Mumbai, Maharashtra, India TAC Security Full time ₹ 6,00,000 - ₹ 18,00,000 per yearJob descriptionAs a Security Engineer - VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies. Leveraging your expertise in penetration testing and ethical hacking, you will play a key role in enhancing the security posture of our clients' systems and...
-
Network Security Engineer
2 weeks ago
Mumbai, Maharashtra, India Sattrix Information Security Full time ₹ 4,00,000 - ₹ 12,00,000 per yearJob Title:Network Security Engineers (L1 / L2 / L3)Location:Chennai / Mumbai / HyderabadEmployment Type:Full-time | Client RoleShifts: Rotational ShiftsWork Mode:Work from OfficeAbout the Role:We are looking for highly skilled and motivatedNetwork Security Engineers (L1, L2 & L3). You'll be responsible for managing, operating, and optimizing a wide range of...
-
QA Engineer
19 hours ago
Mumbai, Maharashtra, India Prescient Security Full time ₹ 80,00,000 - ₹ 1,50,00,000 per yearQA ENGINEER – INDIA BASED, REMOTEAt Prescient Security, we are on a mission to simplify security and compliance.Our core values are: • Bring Order to Chaos• Be Accountable & See it Through• 1000% With You• Support & Collaborate• Think Outside the Box Summary:Here at Prescient Security, we're looking for a QA Engineer who is passionate about...
-
Senior Security Engineer
3 days ago
Navi Mumbai, Maharashtra, India Eventus Security Pvt Ltd Full time ₹ 8,00,000 - ₹ 24,00,000 per yearJob Title : Senior Security EngineerExperience Range: 4-8 yearsJob Location : Sanpada, Navi MumbaiJob Summary:Key Responsibilities:Provide Tier 1 and Tier 2 technical support for Trend Micro products, including but not limited to:Trend Micro Apex One and Vision One.Deep Security and Vision One Pro.Cloud App Security and Email Security for...
-
Security Testing Lead
1 week ago
Mumbai, Maharashtra, India Impeccable HR Consulting Pvt. Ltd. Full time ₹ 15,00,000 - ₹ 25,00,000 per yearJob Description : Information Security - SOC and Security Testing Lead Role and Responsibilities : - Participate in information Security Risk Management initiatives - Lead the Security Testing program (VA/PT, Red Team, DFRA etc) and achieve regulatory compliance. - Present Security Dashboard to respective stake holder on periodic basis -...
-
PSAT test engineer
3 days ago
Mumbai, Maharashtra, India ServQual Full time ₹ 6,00,000 - ₹ 12,00,000 per yearCompany DescriptionServQual Security specializes in Cyber Security Discovery Workshops, Enterprise Security Transformations, and GRC automation through our AI-powered platform, SUSAN. SUSAN is designed to bridge the gap between cybersecurity leadership and engineering teams, offering continuous GRC, automated risk assessments, and real-time control...
-
Principal Security Engineer
22 hours ago
Mumbai, Maharashtra, India Zorba Consulting Full time ₹ 12,00,000 - ₹ 36,00,000 per yearDescription : As a Principal Security Engineer, you will be the ultimate owner of our application and cloud security posture. You will drive the implementation of security-by-design principles across all engineering teams, performing code reviews, architecture assessments, and leading incident response for critical vulnerabilities. This is a...
-
Security Engineer ll
19 hours ago
Mumbai, Maharashtra, India Kroll Full time ₹ 12,00,000 - ₹ 36,00,000 per yearDescriptionWe are seeking to hire a Security Engineer II in our InfoSec team at Mumbai. This role will be instrumental in coordinating and managing penetration tests to ensure the security and integrity of our systems. This role involves close collaboration with penetration testing vendors, tracking ongoing projects, and supporting the Information Security...