Cybersecurity Analyst – VAPT

6 days ago


Mumbai, Maharashtra, India ShieldByte Infosec Pvt. Ltd. Full time ₹ 8,00,000 - ₹ 24,00,000 per year

Location:
Ghatkopar, Mumbai (Onsite)

Department:
Information Security / Offensive Security

Experience:
2–8 Years

Certifications Preferred:
OSCP, CEH, eCPPT, eJPT, GWAPT, or equivalent

About the Role

We are seeking a highly skilled
Cybersecurity Analyst (Vulnerability Assessment & Penetration Testing)
specializing in both
Static Application Security Testing (SAST)
and
Dynamic Application Security Testing (DAST)
. The ideal candidate will have hands-on experience performing end-to-end security testing across web applications, mobile apps (Android/iOS), APIs, networks, Active Directory environments, and source code.

This role requires a strong understanding of offensive security, exploit development, red teaming methodologies, and secure coding practices to identify, exploit, and document vulnerabilities with actionable recommendations.

Key Responsibilities

  • Conduct
    Vulnerability Assessments and Penetration Tests (VAPT)
    across:
  • Web applications, APIs, and backend services
  • Android and iOS mobile applications
  • Corporate and cloud networks
  • Active Directory and internal infrastructure
  • Perform
    SAST & DAST
    on custom applications using manual and automated tools.
  • Analyze
    source code (Java, Python, PHP, .NET, etc.)
    to identify logic flaws and insecure coding practices.
  • Execute
    Red Team exercises
    , simulate attack chains, and evaluate defense mechanisms.
  • Generate detailed
    technical reports
    with PoC evidence, exploit steps, risk severity, and remediation guidance.
  • Collaborate with development and DevSecOps teams to verify fixes and retests.
  • Maintain up-to-date knowledge of the latest vulnerabilities, exploits, and security tools.
  • Support compliance assessments and cybersecurity trends.

Required Skills and Expertise

  • Strong knowledge of
    OWASP Top 10
    ,
    SANS CWE 25
    , and
    MITRE ATT&CK
    frameworks.
  • Hands-on experience with tools like
    Burp Suite, ZAP, Metasploit, Nmap, Nessus, Nikto, MobSF, Frida, Drozer, Postman, SQLMap
    , etc.
  • Deep understanding of
    authentication flaws, insecure direct object references, API abuse, and privilege escalation.
  • Practical experience with
    Active Directory attacks
    (Kerberoasting, Pass-the-Hash, LLMNR poisoning, etc.)
  • Proficiency in scripting languages (Python, Bash, PowerShell) and code review.
  • Excellent analytical, reporting, and communication skills.

Certifications (Preferred but not Mandatory)

  • Offensive Security Certified Professional (OSCP)
  • Certified Ethical Hacker (CEH)
  • eLearnSecurity Certified Professional Penetration Tester (eCPPT)
  • GIAC Penetration Tester (GPEN)
  • eWPT / eWPTX / eJPT

Educational Qualification

  • Bachelor's or Master's degree in Computer Science, Cybersecurity, or related field.
  • Equivalent hands-on experience may be considered as a substitute for formal education.

Why Join Us

  • Opportunity to work on
    real-world red teaming engagements
    and advanced VAPT projects.
  • Exposure to
    global clients
    in the BFSI, IT, and healthcare domains.
  • Continuous learning through
    internal labs, CTFs, and tool research.
  • Competitive pay, certification sponsorship, and a growth-oriented culture.

  • VAPT Intern

    1 week ago


    Mumbai, Maharashtra, India CyRAACS™ Full time ₹ 2,40,000 - ₹ 7,20,000 per year

    We're Hiring: VAPT Interns – Dombivli, Mumbai (On-site)Are you passionate about cybersecurity and eager to get hands-on experience in Vulnerability Assessment and Penetration Testing (VAPT)?We're on the lookout for sharp, curious, and drivenVAPT Internsto join our cybersecurity team inMumbai. This is an exciting opportunity to work alongside experienced...


  • Mumbai, Maharashtra, India Cubical Operations LLP Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Title:Senior Consultant – VAPTLocation:Mumbai, IndiaExperience:Minimum 3 YearsJob Type:Full-TimeDepartment:Cybersecurity / Information SecurityJob Summary:We are looking for a highly skilled and motivatedSenior Consultant – VAPTto join our cybersecurity team in Mumbai. The ideal candidate will have a solid background inVulnerability Assessment and...


  • Mumbai, Maharashtra, India Ankura Full time ₹ 8,00,000 - ₹ 24,00,000 per year

    Ankura is a team of excellence founded on innovation and growth.Ankura's Cyber & Privacy practice is part of the Data & Technology business group - one of six practices dedicated to client delivery services across the firm.Ankura Consulting India is part of Ankura Global network which is present across more than 35 countries. In India, Globally, Ankura is...


  • Mumbai, Maharashtra, India Terralogic Full time ₹ 3,00,000 - ₹ 6,00,000 per year

    Overview:We are looking for dynamic and self-motivated interns to join our Sales & Business Development team. This internship provides hands-on experience in cybersecurity sales, business growth strategies and client engagement. You will work closely with our sales teams to generate leads, pitch cybersecurity solutions and contribute to revenue growth.Total...


  • Mumbai, Maharashtra, India CoreIT Services Pvt. Ltd. Full time ₹ 45,00,000 - ₹ 75,00,000 per year

    Key Responsibilities:· Conduct VAPT (Vulnerability Assessment & Penetration Testing)· Perform Web, Mobile, and API Application Security Testing· Execute Network VAPT and Configuration Audits· Identify, assess, and document security risks with actionable remediation stepsRequirements:· Strong understanding of cybersecurity frameworks· Hands-on...


  • Mumbai, Maharashtra, India NeerInfo Solutions Full time ₹ 20,00,000 - ₹ 60,00,000 per year

    About the Role:We are seeking a dynamic and entrepreneurial leader to head ourCybersecurity Business in India. This role has full P&L responsibility for the India Cybersecurity business and is responsible for driving profitable revenue growth across new logo sales, farming strategic accounts, leading presales, strengthening sales operations, and ensuring...

  • Senior Analyst

    12 hours ago


    Mumbai, Maharashtra, India Accelya Group Full time ₹ 6,00,000 - ₹ 12,00,000 per year

    For more than 40 years, Accelya has been the industry's partner for change, simplifying airline financial and commercial processes and empowering the air transport community to take better control of the future. Whether partnering with IATA on industry-wide initiatives or enabling digital transformation to simplify airline processes, Accelya drives the...


  • Mumbai, Maharashtra, India SecureLayer7 Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    About the CompanyAt SecureLayer7, we aim to solve challenging cybersecurity problems faced by organizations. We bring bright minds together to provide a seamless experience in cybersecurity and achieve our vision of making organizations secure from cyber-attacks. Our skilled pentesters and security engineers work on projects ranging from cryptocurrency...


  • Mumbai, Maharashtra, India Ares Management Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Over the last 20 years, Ares' success has been driven by our people and our culture. Today, our team is guided by our core values – Collaborative, Responsible, Entrepreneurial, Self-Aware, Trustworthy – and our purpose to be a catalyst for shared prosperity and a better future. Through our recruitment, career development and employee-focused programming,...


  • Mumbai, Maharashtra, India LRN Corporation Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Position: Information Security AnalystLocation: Mumbai, IndiaAbout LRN:LRN is the world's leading dedicated ethics and compliance SaaS company, helping more than 30 million people every year navigate complex regional and global regulatory environments and build ethical, responsible cultures. With over 3,000 clients across the US, EMEA, APAC, and Latin...