Security Testing Engineer

3 days ago


Mumbai, Maharashtra, India BNP Paribas Full time ₹ 12,00,000 - ₹ 24,00,000 per year

Responsibilities

Direct Responsibilities

  • To perform Penetration testing (Gray Box and/or Black Box) for Web applications, Mobile, API, and thick client applications.
  • Hands-on mobile penetration tester with strong knowledge and experience in Android and iOS application security testing (both static and dynamic), responsible for discovering, validating and reporting security issues in mobile applications.
  • Perform Static analysis (SAST) and Dynamic analysis (DAST) on Android APKs and iOS IPA to identify insecure storage, hardcoded secrets, insecure configurations, runtime hooking, parameter tampering etc
  • Conduct reverse engineering and protection bypass on mobile applications including decompiling /inspecting binaries, analyzing native libraries ) and bypassing client-side protections (root / jailbreak detection, SSL pinning, obfuscation, tamper checks etc.) using tools like Frida, objection magisk, cydia/selio/zebra and Xposed.
  • Strong research knowledge and should be updated with evolving mobile threats and industry standard (OWASP MASVS/MASTG)
  • To understand the applications security requirements and identify & document the scope of the test.
  • Ensure execution of the documented security scenarios for the application under test.
  • Document and report all findings.
  • Collaborate with the developers to help them understand the vulnerabilities reported in application.
  • Escalate issues to the local management and onshore stakeholders in case it affects the testing progress.
  • Ensure processes for the project is followed for the assessments.
  • Note: Mandatory requirement – Mobile, Web & API Penetration Testing
  • Optional: Experience in Source Code Assessment (SCA)/SAST.

Technical & Behavioral Competencies

  • Clear understanding of OWASP Top 10 - application security risks
  • Tools/OS: Burp Suite, OWASP ZAP, Kali Linux, mobsf, jadx, dex2jar, adb, xcode, Frida, objection, apktool, putil, otool.
  • Manual Security Testing & Analysis, Security Test Designing
  • Excellent Interpersonal and presentation skills
  • Strong in verbal and written communication
  • Good analytical skills
  • Strong Time Management
  • Must be flexible, independent, self-motivated.
  • Team player

Education Level: 

Bachelor's degree or equivalent.

Experience Level

At least 3 years of relevant experience.



  • Mumbai, Maharashtra, India Security Lit Full time ₹ 8,00,000 - ₹ 12,00,000 per year

    Job Description: Application Security Engineer (L1)Role OverviewWe are looking for an Application Security Engineer (L1) to join our security team. This is an entry-level position requiring at least 1 year of hands-on experience in application security testing. You will work on identifying and reporting vulnerabilities across web, mobile, API, and thick...


  • Mumbai, Maharashtra, India Security Lit Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Job Description: Application Security Engineer (L2)Role OverviewWe are seeking an experienced Application Security Engineer (L2) to take a lead role in our security testing team. This role requires of 3 year experience (first priority will be given to more than 4 year experience resources for selection) and mandates professional security certifications. You...


  • Mumbai, Maharashtra, India TAC Security Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    Job descriptionAs a Security Engineer - VAPT, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies. Leveraging your expertise in penetration testing and ethical hacking, you will play a key role in enhancing the security posture of our clients' systems and...


  • Mumbai, Maharashtra, India Sattrix Information Security Full time ₹ 4,00,000 - ₹ 12,00,000 per year

    Job Title:Network Security Engineers (L1 / L2 / L3)Location:Chennai / Mumbai / HyderabadEmployment Type:Full-time | Client RoleShifts: Rotational ShiftsWork Mode:Work from OfficeAbout the Role:We are looking for highly skilled and motivatedNetwork Security Engineers (L1, L2 & L3). You'll be responsible for managing, operating, and optimizing a wide range of...

  • QA Engineer

    19 hours ago


    Mumbai, Maharashtra, India Prescient Security Full time ₹ 80,00,000 - ₹ 1,50,00,000 per year

    QA ENGINEER – INDIA BASED, REMOTEAt Prescient Security, we are on a mission to simplify security and compliance.Our core values are: • Bring Order to Chaos• Be Accountable & See it Through• 1000% With You• Support & Collaborate• Think Outside the Box Summary:Here at Prescient Security, we're looking for a QA Engineer who is passionate about...


  • Navi Mumbai, Maharashtra, India Eventus Security Pvt Ltd Full time ₹ 8,00,000 - ₹ 24,00,000 per year

    Job Title : Senior Security EngineerExperience Range: 4-8 yearsJob Location : Sanpada, Navi MumbaiJob Summary:Key Responsibilities:Provide Tier 1 and Tier 2 technical support for Trend Micro products, including but not limited to:Trend Micro Apex One and Vision One.Deep Security and Vision One Pro.Cloud App Security and Email Security for...


  • Mumbai, Maharashtra, India Impeccable HR Consulting Pvt. Ltd. Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Job Description : Information Security - SOC and Security Testing Lead Role and Responsibilities : - Participate in information Security Risk Management initiatives - Lead the Security Testing program (VA/PT, Red Team, DFRA etc) and achieve regulatory compliance. - Present Security Dashboard to respective stake holder on periodic basis -...

  • PSAT test engineer

    3 days ago


    Mumbai, Maharashtra, India ServQual Full time ₹ 6,00,000 - ₹ 12,00,000 per year

    Company DescriptionServQual Security specializes in Cyber Security Discovery Workshops, Enterprise Security Transformations, and GRC automation through our AI-powered platform, SUSAN. SUSAN is designed to bridge the gap between cybersecurity leadership and engineering teams, offering continuous GRC, automated risk assessments, and real-time control...


  • Mumbai, Maharashtra, India Zorba Consulting Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Description : As a Principal Security Engineer, you will be the ultimate owner of our application and cloud security posture. You will drive the implementation of security-by-design principles across all engineering teams, performing code reviews, architecture assessments, and leading incident response for critical vulnerabilities. This is a...

  • Security Engineer ll

    19 hours ago


    Mumbai, Maharashtra, India Kroll Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    DescriptionWe are seeking to hire a Security Engineer II in our InfoSec team at Mumbai. This role will be instrumental in coordinating and managing penetration tests to ensure the security and integrity of our systems. This role involves close collaboration with penetration testing vendors, tracking ongoing projects, and supporting the Information Security...