Cybersecurity Analyst – VAPT

7 days ago


Mumbai, Maharashtra, India ShieldByte Infosec Pvt. Ltd. Full time ₹ 8,00,000 - ₹ 24,00,000 per year

Location:
Ghatkopar, Mumbai (Onsite)

Department:
Information Security / Offensive Security

Experience:
2–8 Years

Certifications Preferred:
OSCP, CEH, eCPPT, eJPT, GWAPT, or equivalent

About the Role

We are seeking a highly skilled
Cybersecurity Analyst (Vulnerability Assessment & Penetration Testing)
specializing in both
Static Application Security Testing (SAST)
and
Dynamic Application Security Testing (DAST)
. The ideal candidate will have hands-on experience performing end-to-end security testing across web applications, mobile apps (Android/iOS), APIs, networks, Active Directory environments, and source code.

This role requires a strong understanding of offensive security, exploit development, red teaming methodologies, and secure coding practices to identify, exploit, and document vulnerabilities with actionable recommendations.

Key Responsibilities

  • Conduct
    Vulnerability Assessments and Penetration Tests (VAPT)
    across:
  • Web applications, APIs, and backend services
  • Android and iOS mobile applications
  • Corporate and cloud networks
  • Active Directory and internal infrastructure
  • Perform
    SAST & DAST
    on custom applications using manual and automated tools.
  • Analyze
    source code (Java, Python, PHP, .NET, etc.)
    to identify logic flaws and insecure coding practices.
  • Execute
    Red Team exercises
    , simulate attack chains, and evaluate defense mechanisms.
  • Generate detailed
    technical reports
    with PoC evidence, exploit steps, risk severity, and remediation guidance.
  • Collaborate with development and DevSecOps teams to verify fixes and retests.
  • Maintain up-to-date knowledge of the latest vulnerabilities, exploits, and security tools.
  • Support compliance assessments and cybersecurity trends.

Required Skills and Expertise

  • Strong knowledge of
    OWASP Top 10
    ,
    SANS CWE 25
    , and
    MITRE ATT&CK
    frameworks.
  • Hands-on experience with tools like
    Burp Suite, ZAP, Metasploit, Nmap, Nessus, Nikto, MobSF, Frida, Drozer, Postman, SQLMap
    , etc.
  • Deep understanding of
    authentication flaws, insecure direct object references, API abuse, and privilege escalation.
  • Practical experience with
    Active Directory attacks
    (Kerberoasting, Pass-the-Hash, LLMNR poisoning, etc.)
  • Proficiency in scripting languages (Python, Bash, PowerShell) and code review.
  • Excellent analytical, reporting, and communication skills.

Certifications (Preferred but not Mandatory)

  • Offensive Security Certified Professional (OSCP)
  • Certified Ethical Hacker (CEH)
  • eLearnSecurity Certified Professional Penetration Tester (eCPPT)
  • GIAC Penetration Tester (GPEN)
  • eWPT / eWPTX / eJPT

Educational Qualification

  • Bachelor's or Master's degree in Computer Science, Cybersecurity, or related field.
  • Equivalent hands-on experience may be considered as a substitute for formal education.

Why Join Us

  • Opportunity to work on
    real-world red teaming engagements
    and advanced VAPT projects.
  • Exposure to
    global clients
    in the BFSI, IT, and healthcare domains.
  • Continuous learning through
    internal labs, CTFs, and tool research.
  • Competitive pay, certification sponsorship, and a growth-oriented culture.


  • Mumbai, Maharashtra, India NuSummit Cybersecurity Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Key Responsibilities & Strategic Impact Areas:Business Leadership & Strategy.Define and execute the India Cybersecurity growth strategy aligned to company objectives.Own full P&L responsibility for the Cybersecurity India business.Drive revenue growth across new client acquisition, existing account expansion, andpartnerships.Own the India cybersecurity...


  • Mumbai, Maharashtra, India, Maharashtra Cubical Operations LLP Full time

    Job Title: Senior Consultant – VAPTLocation: Mumbai, IndiaExperience: Minimum 3 YearsJob Type: Full-TimeDepartment: Cybersecurity / Information SecurityJob Summary:We are looking for a highly skilled and motivated Senior Consultant – VAPT to join our cybersecurity team in Mumbai. The ideal candidate will have a solid background in Vulnerability...

  • VAPT AM

    2 weeks ago


    Mumbai, Maharashtra, India Cubical Operations LLP Full time ₹ 15,00,000 - ₹ 25,00,000 per year

    Job Title:VAPT AMLocation:Bangalore / Mumbai (On-site/Hybrid as applicable)Experience:3+ YearsNotice Period:Immediate Joiners PreferredJob Summary:We are seeking a skilled and detail-orientedVulnerability Assessment and Penetration Testing (VAPT) Consultantto join our cybersecurity team. The ideal candidate will have hands-on experience in performing both...


  • Mumbai, Maharashtra, India Cubical Operations LLP Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Job Title:Senior Consultant – VAPTLocation:Mumbai, IndiaExperience:Minimum 3 YearsJob Type:Full-TimeDepartment:Cybersecurity / Information SecurityJob Summary:We are looking for a highly skilled and motivatedSenior Consultant – VAPTto join our cybersecurity team in Mumbai. The ideal candidate will have a solid background inVulnerability Assessment and...

  • Cybersecurity Risk

    2 weeks ago


    Mumbai, Maharashtra, India CoreIT Services Pvt. Ltd. Full time ₹ 6,00,000 - ₹ 6,60,000 per year

    A. ITGC / IS – IT AuditInfrastructure Security ControlsChange Management ControlsUser Access Management ControlsHR Security ControlsApplication ControlsIncident Management ControlsPatch Management ControlsBackup Management ControlsBCP ControlsDR ControlsSystem Development ControlsCommunication Security ControlOperational Security ControlsB. ISO 27001...


  • Mumbai, Maharashtra, India R.U.D.R.A Cybersecurity Full time ₹ 6,00,000 - ₹ 18,00,000 per year

    OVERVIEWRUDRA Cybersecurity Pvt. Ltd. is seeking aSecurity Engineerfor our Mumbai office, with deep technical expertise to lead and strengthen the security posture of our products and infrastructure. This role demands hands-on knowledge of cybersecurity tools, secure coding practices, system hardening and proactive threat hunting. You will work at the...


  • Mumbai, Maharashtra, India Baker Hughes Full time ₹ 10,00,000 - ₹ 25,00,000 per year

    Cybersecurity and Compliance AnalystAre you passionate about cybersecurity, risk & compliance?Would you like to be a part of successful team?Please Join usA leader in the Energy Technology Industry. Baker Hughes offers opportunities for qualified people who want to grow in our high-performance organization. Our leading technologies and our ability to apply...


  • Navi Mumbai, Maharashtra, India Mizuho Global Services Full time ₹ 2,00,000 - ₹ 6,00,000 per year

    Position :- VAPT Junior Security Analyst - 2+yrsJob location:- Ghansoli Work from officeShifts:- rotational shiftsNo of Vacancy :- 1Walkin for interview dated :- 11th sept & 12th sept between 2pm to 5pm.13th Sept at 9am to 12pmRoles and Responsibilities:-Conduct vulnerability assessments using industry-leading tools (e.g., Nessus, Tenable, Qualys).Analyze...

  • Technical Manager

    1 week ago


    Navi Mumbai, Maharashtra, India, Maharashtra Eventus Security Full time

    Eventus Security provides reliable and customized security solutions. With a trained team and a client-first approach, we ensure safety, trust, and peace of mind across corporate, residential, and industrial sectors.Job Title: Technical Manager - Cyber ResilienceExperience: 8yrs+Job Location: Navi MumbaiJob Role:Eventus Security requires a Technical Manager...

  • Technical Manager

    5 days ago


    Navi Mumbai, Maharashtra, India Eventus Security Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Eventus Securityprovides reliable and customized security solutions. With a trained team and a client-first approach, we ensure safety, trust, and peace of mind across corporate, residential, and industrial sectors.Job Title: Technical Manager - Cyber ResilienceExperience: 8yrs+Job Location: Navi MumbaiJob Role:Eventus Security requires a Technical Manager -...