REF45531B-VAPT - Senior Analyst - Security Specialist

3 weeks ago


Mumbai, India WNS Global Services Full time
Job Description
  • Core Responsibilities of Conduct comprehensive security assessments of web applications to identify vulnerabilities such as SQL injection, XSS, CSRF, and other OWASP
  • Top 10 vulnerabilities. + With bypass methods o Work closely with developers to provide actionable recommendations for mitigating identified issues.
  • Perform security assessments on RESTful and SOAP APIs to identify security flaws, including improper authentication, authorization, and data exposure.
  • Ensure APIs are securely integrated with other systems and follow best security practices.
  • Conduct security testing on mobile applications (iOS and Android) to detect vulnerabilities like insecure storage, weak encryption, and insecure communication.
  • Collaborate with mobile development teams to provide secure coding practices and remediation guidance.
  • Perform penetration tests on thick client applications, focusing on client-server communication, application logic, and security controls.o Identify weaknesses and recommend appropriate security enhancements.

Required Skills:

• Extensive experience in Web Application Security and penetration testing.

• Strong expertise in API Security with knowledge of common vulnerabilities and attack vectors.

• Hands-on experience with Mobile Application Security testing (iOS and Android).

• Proficiency in Thick Client Security assessment.

• Familiarity with tools such as Burp Suite, OWASP ZAP, Postman, Frida, Qualys, and other relevant penetration testing tools.

• Knowledge of OWASP, SANS, and other relevant security frameworks.

• Strong analytical skills and attention to detail.

• Vulnerability Management skills with experience using tools like Qualys would be a plus point.

 

Additional Skills:

• Excellent communication skills (written and verbal) for preparing and delivering security reports.

• Ability to work independently and as part of a team.

• Strong problem-solving skills and a proactive approach to identifying security risks.

• Continuous learning mindset with a passion for staying ahead in the field of cybersecurity.

Preferred Qualifications:

• We prefer candidates with certifications such as OSCP, EWPTX, CRTP, CRTE, or CPTS.


Qualifications

1. Bachelors Degree 2. Candidates with either of certifications such as OSCP, EWPTX, CRTP, CRTE, or CPTS would be preferred.


Additional Information


  • Mumbai, India WNS Global Services Full time

    Job DescriptionCore Responsibilities of Conduct comprehensive security assessments of web applications to identify vulnerabilities such as SQL injection, XSS, CSRF, and other OWASPTop 10 vulnerabilities. + With bypass methods o Work closely with developers to provide actionable recommendations for mitigating identified issues.Perform security assessments on...

  • Vapt

    4 months ago


    Mumbai, India Maple CloudTechnologies Full time

    **Job Title**: Vulnerability Assessment and Penetration Tester (VAPT) **Job Summary**: We are seeking a highly skilled Vulnerability Assessment and Penetration Tester (VAPT) to join our team. As a VAPT, you will be responsible for conducting comprehensive security assessments of our information systems, identifying vulnerabilities, and providing effective...

  • Vapt

    3 months ago


    Mumbai, India Tech Turmeric IT Services Full time

    A. VAPT Job description 1. To carry out secure code reviews and to find out critical security flaws in the code 3. Conduct penetration test and launch exploits using Burpsuite, Nessus, Metaspoilt, Backtrack penetration testing distribution tools sets 5. Analyze scan reports and suggest remediation / mitigation plan 6. Providing rich client specific...


  • Mumbai, Maharashtra, India Aatish Management Consultants (OPC) Pvt Ltd Full time

    TestingVAPT/Security Testing: **Job Types**: Full-time, Permanent Pay: ₹110,000.00 - ₹150,000.00 per year **Experience**: - VAPT/Security testing: 4 years (preferred) Work Location: In person **Speak with the employer** +91 9336885946

  • Vapt

    3 months ago


    Mumbai, India Tech Turmeric IT Services Full time

    A. VAPT Job description 1. To carry out secure code reviews and to find out critical security flaws in the code 3. Conduct penetration test and launch exploits using Burpsuite, Nessus, Metaspoilt, Backtrack penetration testing distribution tools sets 5. Analyze scan reports and suggest remediation / mitigation plan 6. Providing rich client specific...

  • Vapt

    4 months ago


    Mumbai, India Maple CloudTechnologies Full time

    **Experience :1-4 years** **Location:Mumbai** **Job Description: VAPT** **Key Responsibilities**: - Thorough and practical knowledge of OWASP Top 10, OWASP API Security top 10, SANS 25. - Hands on experience with popular security tools - Burp suite, Metasploit, KALI Linux, Nessus - Analyze data and prepare reports on security vulnerabilities, including...

  • Cyber-DM-VAPT- Mumbai

    4 weeks ago


    Mumbai, India Deloitte Full time

    Risk Advisory | Cyber| VAPT| Thane-Mumbai CEC What impact will you make? Every day, your work will make an impact that matters, while you thrive in a dynamic culture of inclusion, collaboration and high performance. As the undisputed leader in professional services, Deloitte is where you’ll find unrivaled opportunities to succeed and realize...

  • Senior Manager

    2 months ago


    Mumbai, India CORPORATE ACCESS Full time

    Job Role :- Leading a team that performs Application Security Testing, Server Configuration Audits and Vulnerability Assessments- Ensuring that VAPT for existing applications/systems are performed as per policy, track the compliance status, following up with application/system owners for closures of the security findings.- Releasing VAPT dashboards and...


  • Mumbai, India Black Box Full time

    **Responsibilities**: - Utilize various VAPT tools such as Nessus, Burp Suite, Nmap, Metasploit, and Wireshark to identify vulnerabilities, misconfigurations, and weaknesses in the target systems. - Collaborate with the team to develop detailed test plans and strategies for VAPT engagements. - Document and present findings, including vulnerability...


  • Navi Mumbai, India Jio Full time

    Jio is the new age technology company leading the Digital, Big Data and AI Revolution that is taking place in India. This revolution is going to impact the lives of 1.3 billion Indians and its our responsibility to cater to the needs of every rural and urban Indians by using every skill and technology that is available at our disposal.Jio has over 400...


  • Mumbai, India Cymune Full time

    Hi,We have an immediate requirement for SOC Analyst with Locuz Enterprise Solutions Pvt Ltd.Location : BKC, MumbaiPosition : SOC AnalystLooking for Male and Female candidates who can join with us Immediately.Please find below JD :-Around 2 -3 years working experience in SOCMust have experience in any SIEM Management tool Splunk, QRADAR, HP Arc sight,...


  • mumbai, India Evoke HR Solutions Pvt. Ltd. Full time

    Manage:Technical security compliance assessments like gray box, white box and black box for IT Applications undergoing major and minor changes and providing go ahead for production movePeriodic Technical security compliance assessments like gray box, white box (secure code review) and black box for IT ApplicationsComprehensive technical security compliance...


  • Navi Mumbai, India Eventus Security Full time

    Company DescriptionEventus Security is a cybersecurity service provider that offers custom-tailored solutions to ensure cyber resilience. The company has successfully carried out 100+ security testing and consulting projects, catering to different industries using its unique blend of offerings in Cyber Resilience, Managed SOC.Become a part of Eventus...


  • mumbai, India Evoke HR Solutions Pvt. Ltd. Full time

    Manage: Technical security compliance assessments like gray box, white box and black box for IT Applications undergoing major and minor changes and providing go ahead for production move Periodic Technical security compliance assessments like gray box, white box (secure code review) and black box for IT Applications Comprehensive technical security...


  • Navi Mumbai, India Eventus Security Full time

    Company DescriptionEventus Security is a cybersecurity service provider that offers custom-tailored solutions to ensure cyber resilience. The company has successfully carried out 100+ security testing and consulting projects, catering to different industries using its unique blend of offerings in Cyber Resilience, Managed SOC.Become a part of Eventus...


  • Navi Mumbai, India Eventus Security Full time

    Company DescriptionEventus Security is a cybersecurity service provider that offers custom-tailored solutions to ensure cyber resilience. The company has successfully carried out 100+ security testing and consulting projects, catering to different industries using its unique blend of offerings in Cyber Resilience, Managed SOC.Become a part of Eventus...


  • Navi Mumbai, India Eventus Security Full time

    Company Description Eventus Security is a cybersecurity service provider that offers custom-tailored solutions to ensure cyber resilience. The company has successfully carried out 100+ security testing and consulting projects, catering to different industries using its unique blend of offerings in Cyber Resilience, Managed SOC. Become a part of Eventus...

  • Security Consultant

    3 weeks ago


    Mumbai, India IBM Full time

    Introduction Information and Data are some of the most important organizational assets in today's businesses. As a Security Consultant, you will be a key advisor for IBM's clients, analyzing business requirements to design and implement the best security solutions for their needs. You will apply your technical skills to find the balance between enabling...


  • Mumbai, India Cymune Full time

    Hi,We have an immediate requirement for SOC Analyst with Locuz Enterprise Solutions Pvt Ltd.Location : BKC, MumbaiPosition : SOC AnalystLooking for Male and Female candidates who can join with us Immediately.Please find below JD :-Around 2 -3 years working experience in SOCMust have experience in any SIEM Management tool Splunk, QRADAR, HP Arc sight,...


  • Mumbai, India Cymune Full time

    Hi,We have an immediate requirement for SOC Analyst with Locuz Enterprise Solutions Pvt Ltd.Location : BKC, MumbaiPosition : SOC AnalystLooking for Male and Female candidates who can join with us Immediately.Please find below JD :-Around 2 -3 years working experience in SOCMust have experience in any SIEM Management tool Splunk, QRADAR, HP Arc sight,...