
Engineer – VAPT
1 week ago
Description
As an IT/OT Vulnerability Assessment and Penetration Testing (VAPT) Engineer, you will be engaged in identifying and mitigating security vulnerabilities across IT systems, Industrial Control Systems (ICS), and Industrial Internet of Things (IIoT) environments. Your work will involve rigorous security assessments of critical infrastructure, SCADA systems, PLCs, field devices, gateways, and cloud-connected IIoT platforms. You will simulate advanced adversary tactics to expose vulnerabilities and provide strategic remediation guidance. The role is suited for professionals with a deep understanding of both enterprise IT security and industrial/embedded system ecosystems.
Responsibilities
Vulnerability Assessment & Penetration Testing (IT + ICS/IIoT):
- Perform black-box, grey-box, and white-box VAPT on enterprise IT assets (servers, databases, web/mobile apps, Active Directory, cloud), OT/ICS assets (PLCs, RTUs, HMIs, engineering workstations, protocol gateways), and IIoT platforms (MQTT/CoAP-based telemetry, edge gateways, cloud dashboards).
- Emulate APT-level attacks across air-gapped, segmented, or hybrid IT-OT architectures.
- Execute Red Team scenarios to simulate insider threats or supply chain compromise.
ICS Protocol & Field Device Security Testing:
- Analyze and exploit vulnerabilities in ICS protocols (Modbus TCP, DNP3, IEC 104, OPC-UA, S7comm, Profinet, BACnet, CIP, MQTT, CoAP).
- Perform live traffic analysis, packet manipulation, and protocol fuzzing to test resilience.
- Evaluate control logic vulnerabilities in ladder logic, structured text, and function blocks.
Firmware & Hardware Exploitation (IIoT/ICS Devices):
- Extract and analyze firmware using JTAG, UART, SPI.
- Perform static/dynamic analysis with Ghidra, Binwalk, Radare2, IDA Pro.
- Reverse engineer file systems (squashfs, cramfs), analyze backdoors, insecure bootloaders.
Network Architecture & Segmentation Testing:
- Review and test IT-OT segmentation, DMZ, firewall ACLs, VLANs.
- Assess trust relationships, insecure remote access, weak credentials, bridging of air-gapped networks.
Cloud & IIoT Platform Security:
- Evaluate MQTT brokers, edge-to-cloud telemetry, and analytics pipelines.
- Test REST APIs, cloud misconfigurations, insecure mobile app integrations.
- Identify insecure certificate handling, weak encryption, default API tokens.
Reporting & Mitigation:
- Develop technical and executive-level reports with CVSS scoring, attack paths, exploitation evidence.
- Recommend hardening measures for IT and OT systems.
- Coordinate with ICS engineers, IT admins, SOC teams for patch validation and monitoring upgrades.
Compliance & Framework Alignment:
- Ensure assessments comply with industry standards: NIST SP 800-82, ISA/IEC 62443, ISO 27001, NERC CIP.
- Map findings to MITRE ATT&CK for ICS and track new CVEs in industrial products.
Eligibility:
Educational Background:
- Bachelor's or Master's in Cybersecurity, Computer Science, Industrial Automation, Electronics, or related field.
Technical Skills:
- Deep knowledge of ICS/SCADA systems, embedded architectures, and real-time OS (VxWorks, QNX, FreeRTOS).
- Hands-on with VAPT tools (Nessus, Burp Suite, Metasploit, Nmap, SQLMap, etc.), ICS tools (Wireshark, PLCScan, ICSFuzz, S7comm Tools, etc.), Firmware tools (Binwalk, Ghidra, Radare2), IIoT security (Shodan, MQTTX, Postman, OWASP ZAP).
Desired Eligibility:
Certifications (Preferred):
- OSCP, GRID, GICSP, CRT, CRTP, CEH, CISSP.
- Participation in ICS/IoT CTFs or open-source contributions is a plus.
Travel:
As and when required, across the country for project execution and monitoring, as well as for coordination with geographically distributed teams.
Communication:
- Submit a cover letter summarising your experience in relevant technologies and software, along with a resume and the Latest passport-size photograph.
-
Cybersecurity Expert
6 days ago
Kanpur, Uttar Pradesh, India beBeeSecurity Full time ₹ 15,00,000 - ₹ 20,00,000Job DescriptionWe are seeking a highly skilled Security Engineer to join our team. As a Security Engineer, you will be responsible for conducting comprehensive security assessments, identifying vulnerabilities, and implementing effective remediation strategies.You will perform end-to-end Vulnerability Assessment and Penetration Testing (VAPT) for clients' IT...
-
Cybersecurity Specialist
1 week ago
Kanpur, Uttar Pradesh, India beBeeVulnerability Full time ₹ 9,00,000 - ₹ 12,00,000We are currently seeking a seasoned VAPT Engineer to join our organization in Mumbai/Hyderabad.Key Qualifications:4+ years of experience in penetration testing and vulnerability managementProven track record of accurately identifying and mitigating false positives from tool-generated reportsStrong analytical and communication skills to effectively convey...
-
Advanced Application Security Specialist
1 week ago
Kanpur, Uttar Pradesh, India beBeeApplication Full time ₹ 90,00,000 - ₹ 1,20,00,000Secure Applications with ExpertiseWe seek an accomplished Security Professional to lead our security efforts, encompassing testing, vulnerability management, and threat mitigation.This role involves securing applications, mobile platforms, APIs, and cloud environments while ensuring compliance with industry standards and regulations. The ideal candidate will...
-
Cybersecurity Specialist
2 weeks ago
Kanpur, Uttar Pradesh, India beBeeCybersecurity Full time ₹ 9,00,000 - ₹ 12,00,000Job Title: Cybersecurity Professional">As a Vulnerability Assessment and Penetration Testing (VAPT) Engineer, you will play a crucial role in evaluating and strengthening the security posture of our organization's IT infrastructure, applications, and networks.Key Responsibilities:">">Perform detailed vulnerability assessments on internal and external...
-
Enterprise Linux Automation Expert
6 days ago
Kanpur, Uttar Pradesh, India beBeeLinuxAutomation Full time ₹ 1,20,00,000 - ₹ 1,50,00,000About Our OpportunityWe are seeking a highly skilled Linux Automation Engineer to lead the design, deployment, and operation of automated patch, vulnerability, and configuration compliance frameworks across Red Hat Enterprise Linux (RHEL) endpoints.The ideal candidate will have experience in scripting, integration, compliance reporting, and collaboration...
-
Kanpur, Uttar Pradesh, India beBeeQuality Full time ₹ 9,00,000 - ₹ 12,00,000Job OverviewWe are seeking a diligent Quality Assurance Specialist to ensure the quality and functionality of software products by conducting thorough testing procedures. As a key member of our development team, you will work closely with us to identify and resolve defects, ensuring that the final product meets the highest standards of quality and user...