Posted:5 days ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

We are looking for a skilled VAPT Consultant with 2-3 years of experience to assist us with his/her
expertise. Consultant must have a strong background in vulnerability assessment and penetration testing, with a keen eye for identifying security risks and implementing effective solutions. Also, hands-on experience in identifying and exploiting vulnerabilities in web applications, APIs, and mobile platforms, network is required. A thorough knowledge of cloud security (AWS, Azure, GCP) and a proper understanding of secure development life cycle (SDLC) practices are a must. Static and Dynamic testing (SAST & DAST) of Thick clients / applications. Develop Proof-of-Concept (PoC) for the identified vulnerabilities. Key Responsibilities:
Vulnerability Assessment :
Perform regular all types of vulnerability scans on applications, networks, and systems. Identify, analyze, and classify security vulnerabilities. Penetration Testing : Conduct internal & external penetration tests to simulate cyberattacks and assess system security. Exploit vulnerabilities to validate their impact. Reporting : Prepare detailed vulnerability assessment and penetration testing reports. Provide actionable recommendations to mitigate risks. Compliance and Standards: Ensure adherence to industry standards (OWASP, SANS, NIST, etc.). Collaboration: Work closely with development, IT, and security teams to remediate vulnerabilities. Provide guidance on secure coding practices and system hardening. Continuous Improvement: Stay updated on OWASP Top 10 and CWE/SANS 25 vulnerability categories. Stay updated on the latest security trends, tools, and techniques. Recommend enhancements to existing security protocols. Tool Expertise : Use tools such as Nessus, Qualys, Owasp-Zap, Burp Suite, Metasploit, Kali Linux, nexpose, wireshark, sqlmap and others for VAPT tools as well.
Scope of work:
Perform Internal & external penetration testing exercises for the APIs, Web Dashboards, VMs and any other endpoints exposed to the internet or intranet. Perform Grey, White Box Application Security assessment for the backend APIs, Web Applications (Internal/External). Perform simulation attacks to identify how security controls are catching the attacks simulated internally.
Qualifications :
Bachelor s degree in Computer Science, Information Technology, or a related field (preferred but not compulsory) 2-3 years of experience in Vulnerability Assessment and Penetration Testing. Strong understanding of network protocols, operating systems, cloud infrastructure and web applications. Excellent problem-solving skills and attention to detail. Relevant certifications such as CEH, OSCP, or CISSP, GIAC Certified Penetration Tester (GPEN) or Offensive Security Experienced Penetration Tester (OSEP) are a plus Strong communication skills Written & Verbal in English language Ability to work collaboratively in a team environment is a must

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now
Response Informatics logo
Response Informatics

Information Technology

Data City

RecommendedJobs for You

kolkata, mumbai, new delhi, hyderabad, pune, chennai, bengaluru

pune, bengaluru, mumbai (all areas)

Noida, Chennai, Bengaluru

Noida, Uttar Pradesh, India