Jobs
Interviews

1268 Nessus Jobs - Page 3

Setup a job Alert
JobPe aggregates results for easy application access, but you actually apply on the job portal directly.

0.0 - 31.0 years

1 - 1 Lacs

ballygunge, kolkata/calcutta

On-site

Qualification: B.Tech / B.Sc in Computer Science, IT, or related field Key Responsibilities: Perform network security monitoring, incident detection, and response. Conduct vulnerability assessments and penetration testing on systems, networks, and applications. Ensure compliance with security policies, standards, and regulatory requirements. Assist in deploying and maintaining firewalls, IDS/IPS, and endpoint protection. Prepare security audit reports and recommend mitigation measures. Work with senior engineers on risk assessments and security hardening projects. Required Skills: Knowledge of networking fundamentals (TCP/IP, Firewalls, VPNs, IDS/IPS). Hands-on exposure to penetration testing tools (Nmap, Metasploit, Burp Suite, Nessus, etc.). Understanding of compliance frameworks (ISO 27001, GDPR, PCI-DSS preferred). Strong problem-solving and analytical skills. Good communication and documentation skills. Certifications (Preferred): CYBER SECURITY

Posted 5 days ago

Apply

5.0 - 10.0 years

0 Lacs

navi mumbai, maharashtra, india

Remote

Mizuho Global Services Pvt Ltd (MGS) is a subsidiary company of Mizuho Bank, Ltd, which is one of the largest banks or so called Mega Banks of Japan. MGS was established in the year 2020 as part of Mizuhos long-term strategy of creating a captive global processing centre for remotely handling banking and IT related operations of Mizuho Banks domestic and overseas offices and Mizuhos group companies across the globe. At Mizuho we are committed to a culture that is driven by ethical values and supports diversity in all its forms for its talent pool. Direction of MGSs development is paved by its three key pillars, which are Mutual Respect, Discipline and Transparency, which are set as the baseline of every process and operation carried out at MGS. 1) VAPT SME About the Role: We are seeking a highly skilled and experienced Vulnerability Assessment SME to join our dynamic team. You will play a critical role in safeguarding our organization&aposs information assets by identifying, assessing, and mitigating vulnerabilities. Roles and Responsibilities: Conduct vulnerability assessments using industry-leading tools (e.g., Nessus, Tenable, Qualys). Analyze vulnerability assessment results to identify and prioritize risks. Develop and maintain vulnerability management processes and procedures. Coordinate vulnerability remediation activities with relevant stakeholders. Perform penetration testing to assess the effectiveness of security controls. Stay up-to-date on the latest security threats and vulnerabilities. Relevant Skills and Experience: 5-10 years of experience in vulnerability assessment, penetration testing, or a related field. Strong understanding of vulnerability management concepts, principles, and best practices. Proficiency in using vulnerability assessment tools (e.g., Nessus, Tenable, Qualys). Experience in conducting penetration testing using various methodologies (e.g., black box, gray box, white box). Knowledge of common security threats, vulnerabilities, and attack vectors. Experience with network and system security tools (e.g., firewalls, intrusion detection systems, antivirus). Experience with scripting languages (e.g., Python, PowerShell). Experience with cloud security (e.g., AWS, Azure, GCP). Qualifications: Bachelor&aposs degree in computer science, information technology, or a related field. Security certifications (e.g., CISSP, CISM, CEH, OSCP). Strong problem-solving and analytical skills. Excellent communication and interpersonal skills. Ability to work independently and as part of a team. Additional Skills (Preferred): Experience with source code analysis tools. Experience with web application security testing. Experience with mobile application security testing. Experience with security incident response. 2) Architecture About the Role: We are looking for professionalsa Senior Architect to join our team focused on application and infrastructure security hardening. These individuals will play a crucial role in enhancing the security posture of the organization&aposs platforms by providing actionable hardening guidance, assisting with remediation efforts, and collaborating with teams to ensure compliance with security standards. Roles and Responsibilities: Application and Infrastructure Security Hardening: Deliver clear and practical security hardening guidance for various platforms, including Web Servers, Databases, Operating Systems, and Infrastructure components. Document security hardening processes comprehensively to ensure clarity and repeatability. Provide remediation support to address vulnerabilities identified during hardening audits. Collaborate with application and infrastructure teams to implement security configurations based on identified hardening requirements. Conduct periodic reviews of platforms to detect deviations from the hardening benchmarks and facilitate immediate rectifications. Scope of Work: Coordinate efforts with offshore teams to research optimal security configurations tailored to the organizations needs. Partner with infrastructure and application teams to apply updated system configurations and monitor adherence to security guidance. Assist in periodic assessments of system platforms, ensuring that deviations from security standards are promptly addressed. Recommend and implement best practices to maintain a secure environment across multiple system layers. Relevant Skills and Experience: For Senior Architecture Resource: 57 years of experience in application and infrastructure security domains. Expertise in documenting and guiding application/system hardening processes. Proven track record of implementing security configurations across complex platforms. Strong ability to coordinate remediation tasks with diverse teams. Qualifications: Bachelors degree in Computer Science, Cybersecurity, Information Systems, or a related field. Relevant certifications in security hardening or infrastructure hardening are preferred. Proven experience in identifying vulnerabilities and collaborating on remediation efforts. Additional Skills (Preferred): Familiarity with automated tools and frameworks for ensuring compliance with hardening standards. Strong communication skills to simplify security configurations for diverse teams while maintaining technical accuracy. Adaptable research capabilities to align hardening recommendations with industry best practices. Address : Address: Mizuho Global Services India Pvt. Ltd, 11th Floor, Q2 Building Aurum Q Park, Gen 4/1, Ttc, Thane Belapur Road, MIDC Industrial Area, Ghansoli, Navi Mumbai- 400710. Please Note : Candidates residing within 20 KMs will be preferred. Shortlisted candidates will be invited for an interview F2F at office on 13th September, Saturday. Show more Show less

Posted 5 days ago

Apply

3.0 - 5.0 years

12 - 15 Lacs

pune

Work from Office

Technical capability: We are seeking a talented and highly motivated Cybersecurity Engineer to join our Information Security team. The ideal candidate will possess strong communication skills, hold relevant security certifications, and have proven expertise in penetration testing and implementing robust cybersecurity solutions. This role involves protecting our organizations systems, networks, and data against evolving security threats while ensuring compliance with industry standards. Role & Responsibilities: Design, implement, and maintain security solutions to safeguard the organizations infrastructure, applications, and data. Perform comprehensive penetration testing of networks, applications, and systems to identify vulnerabilities and assess risk exposure. Monitor and analyze security events and incidents using Security Information and Event Management (SIEM) tools. Conduct vulnerability assessments and work with teams to remediate identified risks. Collaborate with cross-functional teams to integrate security best practices into system architecture and application development. Respond to security incidents, perform root cause analysis, and recommend corrective actions. Manage security tools and technologies. Support compliance initiatives, ensuring adherence to regulatory requirements like GDPR, HIPAA, or PCI-DSS. Provide security awareness training to employees to foster a strong culture of cybersecurity. Stay updated on emerging threats, vulnerabilities, and security technologies to ensure proactive protection measures. Preferences and qualifications: Bachelors degree in computer science, Information Technology, Cybersecurity, or a related field (or equivalent experience). Proven experience in cybersecurity engineering or related roles, with a focus on penetration testing (PT). Strong verbal and written communication skills, with the ability to explain technical concepts to non-technical stakeholders. Relevant security certifications such as CISSP, CISM, CEH, OSCP, CompTIA Security+, or equivalent. Proficiency in penetration testing tools such as Metasploit, Burp Suite, Nessus, Kali Linux, or similar. Hands-on experience with security technologies, including firewalls, SIEM, IDS/IPS, endpoint protection, and DLP solutions. Knowledge of cloud security practices across platforms like AWS, Azure, or GCP. Familiarity with scripting or automation tools (e.g., Python, PowerShell) for improving security processes. Solid understanding of network protocols, system architecture, and security principles. Experience with incident response and forensic analysis. Familiarity with zero-trust architectures and advanced authentication methods.

Posted 5 days ago

Apply

3.0 - 7.0 years

7 - 11 Lacs

bengaluru

Work from Office

Will be working on Application security testing Skills. Strategize and plan static and dynamic application security testing (SAST/DAST / SCA) tools. Will be responsible for Secure Coding Practices Required education Bachelor's Degree Preferred education Master's Degree Required technical and professional expertise BE / B Tech in any stream, M.Sc. (Computer Science/IT) / M.C.A, with Minimum 4 plus years of experience Application Security TestingExperience with static and dynamic application security testing (SAST/DAST/ SCA) tools. Secure Coding PracticesKnowledge of secure coding standards (e.g., OWASP Top Ten) and experience in reviewing code for security vulnerabilities. Threat ModellingAbility to conduct threat modelling sessions to identify and mitigate security risks Preferred technical and professional experience Vulnerability AssessmentExperience in conducting vulnerability assessments and penetration testing Application Security TestingExperience with static and dynamic application security testing (SAST/DAST) tools. Security ToolsProficiency in using security tools like Burp Suite, Nessus, or Fortify

Posted 5 days ago

Apply

3.0 - 7.0 years

7 - 11 Lacs

bengaluru

Work from Office

Will be working on Application security testing Skills. Strategize and plan static and dynamic application security testing (SAST/DAST / SCA) tools. Will be responsible for Secure Coding Practices. Required education Bachelor's Degree Preferred education Master's Degree Required technical and professional expertise BE / B Tech in any stream, M.Sc. (Computer Science/IT) / M.C.A, with Minimum 5 plus years of experience Application Security TestingExperience with static and dynamic application security testing (SAST/DAST/ SCA) tools. Secure Coding PracticesKnowledge of secure coding standards (e.g., OWASP Top Ten) and experience in reviewing code for security vulnerabilities. Threat ModellingAbility to conduct threat modelling sessions to identify and mitigate security risks Preferred technical and professional experience Vulnerability AssessmentExperience in conducting vulnerability assessments and penetration testing Application Security TestingExperience with static and dynamic application security testing (SAST/DAST) tools. Security ToolsProficiency in using security tools like Burp Suite, Nessus, or Fortify.

Posted 5 days ago

Apply

15.0 - 20.0 years

10 - 14 Lacs

bengaluru

Work from Office

About The Role Project Role : Application Lead Project Role Description : Lead the effort to design, build and configure applications, acting as the primary point of contact. Must have skills : Spring Boot Good to have skills : NA Minimum 7.5 year(s) of experience is required Educational Qualification : 15 years full time education Summary :As an Application Lead, you will lead the effort to design, build, and configure applications, acting as the primary point of contact. Your typical day will involve collaborating with various teams to ensure project milestones are met, facilitating discussions to address challenges, and guiding your team in implementing effective solutions. You will also engage in strategic planning sessions to align project goals with organizational objectives, ensuring that all stakeholders are informed and involved in the development process. Your role will be pivotal in driving innovation and efficiency within the application development lifecycle, fostering a collaborative environment that encourages team growth and success. Roles & Responsibilities:- Expected to have hands on and deep expertise in Microservices, Spring boot, Kafka, Rest APIs, Cloud - AWS, Jenkins , Agile, - Should have hands on in Design and architecture in Microservices using Spring boot and above technologies.- Responsible for team decisions.- Engage with multiple teams and contribute on key decisions.- Provide solutions to problems for their immediate team and across multiple teams.- Facilitate knowledge sharing sessions to enhance team capabilities.- Monitor project progress and implement necessary adjustments to meet deadlines. Professional & Technical Skills: - Must To Have Skills: Proficiency in Microservices, Spring boot, Rest APIs, Cloud - AWS, Jenkins , Agile, Kafka- Experience with microservices architecture and RESTful APIs.- Strong understanding of application security best practices.- Familiarity with cloud platforms such as AWS or Azure.- Ability to work with databases, including SQL and NoSQL technologies. Additional Information:- The candidate should have minimum 7.5 years of experience in Spring Boot.- This position is based at our Bengaluru office.- A 15 years full time education is required. Qualification 15 years full time education

Posted 5 days ago

Apply

0 years

0 Lacs

gurugram, haryana, india

On-site

Looking for challenging role? If you really want to make a difference - make it with us Can we energize society and fight climate change at the same time? At Siemens Energy, we can. Our technology is key, but our people make the difference. Brilliant minds innovate. They connect, create, and keep us on track towards changing the world’s energy systems. Their spirit fuels our mission. Our culture is defined by caring, agile, respectful, and accountable individuals. We value excellence of any kind. Sounds like you? Your new role – challenging and future- oriented: Security Implementation and Management: Implementing and maintaining security controls, including firewalls, intrusion detection systems, and data encryption. Hands On Experience in Fortigate & Checkpoint Firewalls. Expert knowledge of FW clustering, HA, Traffic Filtering, Defining Network & Security policies, Network Segmentations (VLAN), IDS/IPS, NGFW Concepts. Log Management & Forwarding over Syslog. Vulnerability Assessment and Mitigation: Identifying and addressing potential vulnerabilities in systems and networks. Practical knowledge of VAPT tools like NESSUS Professional. Incident Response: Investigating and responding to security incidents, including breaches and attacks. Risk Management: Assessing and mitigating cybersecurity risks to the organization. Security Awareness and Training: Providing training and education to project customer on cybersecurity best practices. Disaster Recovery and Business Continuity: -Contributing to the development and maintenance of disaster recovery and business continuity plans. Communication Focused: Reporting and Communication: Preparing reports and communicating security status to management and other stakeholders. Vendor Management: Managing relationships with IT service providers and vendors to ensure security standards are met. Collaboration and Liaison: Collaborating with other departments and teams to ensure security policies are followed. Technical Support and Advice: Providing technical support and advice on security-related issues. Documentation: Documenting security processes, policies, and procedures. Other Important Responsibilities: Staying Up to Date: Keeping abreast of the latest cybersecurity trends, threats, and technologies. Problem Solving: Identifying and resolving security-related issues and problems. Compliance: Ensuring the organization complies with relevant cybersecurity regulations and standards. We’ve got quite a lot to offer. How about you? This role is based at Site (Gurgaon). You’ll also get to visit other locations in India and beyond, so you’ll need to go where this journey takes you. In return, you’ll get the chance to work with teams impacting entire cities, countries – and the shape of things to come. We’re Siemens. A collection of over 379,000 minds building the future, one day at a time in over 200 countries. We're dedicated to equality, and we welcome applications that reflect the diversity of the communities we work in. All employment decisions at Siemens are based on qualifications, merit and business need. Bring your curiosity and imagination and help us shape tomorrow.

Posted 5 days ago

Apply

3.0 - 7.0 years

3 - 7 Lacs

hyderabad

Work from Office

Job Purpose An ICE Application Security Engineer is part of a team responsible for ensuring that ICE produces and maintains secure applications. This team member influences secure design, performs code analysis, identifies vulnerabilities through hands-on penetration testing, assists developers in remediation efforts, and communicates findings to developers, QA teams and management. Responsibilities Application Identification and Review - Operates the Application Development Security Lifecycle from design review through automated and hands-on testing. Standards and Policies - Maintains and contributes to Application Development Security Policies and standards by keeping up with industry trends and publications from organizations such as NIST, OWASP, and SANS. Secure Design Works with development teams to establish security requirements early in the SDLC and contributes security subject matter expertise during the development of new projects and releases. Tool Management Focuses on automation while implementing, maintaining and integrating cutting-edge technologies to assess an applications security with static code analyzers (SAST), dynamic testing (DAST) tools, software composition scanners, Web Application Firewall (WAF) and bug bounty programs. Developer Education Keeps software engineers apprised of secure coding practices and builds strong rapport and respect with the ICE application development community via training sessions, one-on-one education, Intranet blogs and other opportunities. Knowledge and Experience University degree in Computer Science, Engineering, MIS, CIS, or related discipline Software engineering experience in Java, C++, .NET and/or related languages Expert at deploying, configuring, and using SAST, DAST, and Software Composition in large environments Experience designing solutions to integrate transparently with the CI/CD pipeline Familiarity with application development in large cloud environments

Posted 6 days ago

Apply

5.0 years

0 Lacs

hyderabad, telangana, india

On-site

Job Title: L2 Sr.Analyst - Vulnerability Assessment & Penetration Testing JobLocation: Hyderabad RoleOverview: The L2 Sr.Analyst for Vulnerability Assessment and Penetration Testing (VA/PT) will beresponsible for conducting in-depth vulnerability scans, analyzing results, andassisting in securing enterprise systems, applications, and networks. The rolerequires expertise in tools like Nessus, Tenable SC, and HCL AppScan, alongwith a strong understanding of VA/PT methodologies. KeyResponsibilities: Perform scheduled and ad-hoc vulnerability assessments using tools like Nessus and Tenable.sc. Conduct application security testing using HCL AppScan for web and mobile applications. Configure and optimize scanning tools for efficient and accurate results. Analyze scan results to identify vulnerabilities and their impact on business systems. Prioritize vulnerabilities based on criticality and risk to the organization. Generate detailed VA/PT reports and dashboards for stakeholders. Perform manual and automated penetration testing on applications, networks, and systems. Simulate real-world attacks to identify security gaps and potential exploits. Document findings with proof-of-concept (PoC) evidence. Work with development, infrastructure, and security teams to validate and remediate identified vulnerabilities. Provide technical guidance and recommendations to mitigate security risks. Ensure assessments comply with industry standards (OWASP, NIST, ISO 27001) and regulatory requirements. Support audits and security assessments for internal and external stakeholders. Assist in developing VA/PT procedures, guidelines, and best practices. Keep tool configurations and asset inventories up-to-date. RequiredSkills & Qualifications: Hands-on experience with Nessus, Tenable SC, and HCL AppScan. Strong understanding of network and application security principles. Familiarity with vulnerability scoring systems (CVSS) and risk assessment frameworks. Knowledge of scripting and automation (Python, PowerShell) is a plus. Proven track record of identifying and mitigating vulnerabilities in enterprise environments. Certifications (Preferred): CEH, OSCP, GPEN, CISSP, or relevant certifications. Experience: 5+ years ofexperience in VA/PT or a similar cybersecurity role. SoftSkills: Strong analytical and problem-solving skills. Excellent communication and documentation abilities. Ability to work independently and as part of a team in a fast-paced environment.

Posted 6 days ago

Apply

6.0 years

0 Lacs

bangalore urban, karnataka, india

On-site

Job Title: Cyber Security Analyst – Pentesting Experience: 4 – 6 Years Location: Bangalore Open Positions: 1 Mandatory Skills Strong experience in Network Pentesting and Infrastructure Pentesting. Hands-on expertise in Active Directory (AD) Pentesting. Exposure to Red Teaming exercises and adversary simulation. Knowledge of security assessment methodologies, exploitation techniques, and post-exploitation strategies. Familiarity with industry-standard tools such as Burp Suite, Nmap, Metasploit, Cobalt Strike, Nessus, Qualys, BloodHound, etc. Responsibilities Conduct penetration tests on networks, infrastructure, and AD environments to identify vulnerabilities and misconfigurations. Simulate real-world attacks through Red Teaming engagements. Provide detailed technical reports and remediation guidance to stakeholders. Collaborate with security engineering teams to validate fixes and mitigations. Ensure compliance with internal security policies and external standards (ISO, NIST, PCI-DSS, etc.). Stay updated on the latest threats, exploits, and security research. Good to Have OSCP, CEH, CRTP, CRT, or Red Team certifications. Scripting knowledge in Python, PowerShell, or Bash for automation. Cloud pentesting exposure (AWS, Azure, GCP).

Posted 6 days ago

Apply

3.0 - 7.0 years

0 Lacs

navi mumbai, maharashtra

On-site

You have a strong knowledge and hands-on experience in conducting vulnerability assessments and penetration testing for web applications and devices. You are proficient in using security assessment tools like Nessus, NMAP, OWAPS, NICTO, KALI LINUX, etc. You excel in preparing detailed reports, submitting them, and ensuring follow-up for closure of security issues. Your expertise extends to understanding and working with SIEM, WAF, Firewall, log server, and Cloud Security. You are familiar with File Server, network devices, and Firewall access control lists. Knowledge of ISO27001 requirements will be an added advantage. Possessing certifications such as CEH and LA-ISMS showcases your commitment to security practices. Your skills include a strong understanding of Security audit questionnaires and actively participating in Security audits. You are well-versed in Business Continuity Planning (BCP) and Disaster Recovery (DR) processes. Acquaintance with DC, ADC, AD, Group Policy, IIS, DNS, DHCP, Mail Server, and Linux demonstrates your diverse expertise. You have a track record of completing tasks and projects within specified timelines. Ensuring meticulous documentation and knowledge sharing are part of your routine. Your ability to multitask, effective communication skills, teamwork, and ITIL knowledge make you a valuable asset to the organization. Your educational background includes a Graduate degree with 3-4 years of relevant experience. The job location for this opportunity is in Mahape, Navi Mumbai.,

Posted 6 days ago

Apply

2.0 - 4.0 years

2 - 6 Lacs

navi mumbai

Work from Office

Greetings from Osource Global Private Limited!!! Osource Global is where professionalism, modernity, and industry leadership converge in the realm of IT solutions and outsourcing. We are a leading platform-enabled business process management company, specializing in delivering end-to-end outsourcing solutions with our IT-products. Were pioneers and trusted partners who've been at the forefront of innovation for over two decades. Osource has a rich legacy of 20+ years, during which we've become industry leaders, serving as trusted partners to over 850 clients worldwide, with 1000+ live projects currently. With operations spanning India, the Middle East, and Australia, Osource Global boasts a team of over 2,200 professionals dedicated to achieving our clients' success. Our portfolio of cutting-edge IT products caters to a wide array of industries, including Banking, Hospitality, Pharma, Media, Healthcare, and more. With a global presence spanning 29+ countries, Osource is your global partner in technology solutions. Our expertise lies in F&A Outsourcing, HR Outsourcing, Payroll Management & Software Development, Accounts Payable, Fixed Assets Management, Leave & Attendance System, Document Management Solution, HRMS and HR Operations. What sets us apart Our commitment to professionalism and innovation. We're agile and forward-thinking, dedicated to providing high-quality products that drive transformation in businesses worldwide. Join us on this journey where the future meets expertise. Key Responsibilities: Vulnerability Assessment and Penetration Testing (VAPT): Conduct regular vulnerability scans and penetration tests across network, applications, and systems. Analyze findings and provide actionable remediation recommendations. Security Monitoring and Incident Response: Monitor, analyze, and respond to security alerts and incidents using SIEM tools. Investigate security breaches and prepare detailed incident reports. Threat Analysis and Mitigation: Stay updated on the latest security threats, vulnerabilities, and countermeasures. Implement and manage security measures to protect systems and data. Security Tools and Products Configure, manage, and optimize security tools such as firewalls, intrusion detection systems (IDS), endpoint protection, and DLP solutions Ensure seamless integration and operation of various security products. Compliance and Reporting: Support compliance initiatives by maintaining proper documentation and conducting regular audits. Generate detailed reports for management and stakeholders. Collaboration and Training: Work closely with IT, DevOps, and business teams to ensure security best practices are followed. Provide security awareness training to staff as needed. Interested candidates may share across their updated resume to me at harshali.saindane@osourceglobal.com Awaiting your revert at the earliest to grab this opportunity!!!

Posted 6 days ago

Apply

7.0 - 12.0 years

14 - 19 Lacs

bengaluru

Work from Office

About The team As a member of the Device Trust Assurance team, you will have a substantial impact on the security of millions of Cisco devices all around the world. We are looking for people who are passionate about security and eager to learn the ropes of vulnerability management (reporting, triaging and driving remediation). About The Role The Vulnerability Management Engineer plays a critical role in ensuring the security of our systems by managing and mitigating vulnerabilities. Key responsibilities include reviewing vulnerability scanning reports, assessing severity, and triaging vulnerabilities, along with efficiently managing Jira tickets to facilitate timely remediation or mitigation. This role requires utilizing tools such as Vigiles, yocto CVE scanner to conduct vulnerability scanning and analysis, and implementing a risk-based prioritization method for effective management. Leading process optimization efforts by identifying gaps in the vulnerability management workflow and enhancing program efficiency is also essential. Collaboration with international security organizations as well as engineering teams is necessary to provide guidance on mitigating and remediating vulnerabilities, identify and report automation bugs, and contribute to solutions that reduce manual workload in the vulnerability management lifecycle. The role involves investigating vulnerability alerts, assessing their impact, and calculating severity scores based on attack complexity. Additional duties include maintaining scanning tools, reviewing CVEs for potential risk exceptions, and guiding teams on security best practices and patch management standards. Flexibility to work across different time zones is crucial for effective global collaboration and system security focusing on vulnerability management across Cisco's core platforms including but not limited to IOS-XE network operating systems SD-WAN infrastructure and controllers Meraki cloud-managed devices IIoT/Industrial IoT solutions Qualifications 7+ years in vulnerability management or network security with strong focus on Cisco technologies Experiences in Cisco IOS-XE architecture, including kernel components and security mechanisms In-depth knowledge of common Security vulnerabilities (OWASP Top 10, CWE Top 25) Proficiency with vulnerability scanning tools (Semgrep, blackduck, vigiles, yocto cve scanner) and firmware analysis Experience with SBOM (Software Bill of Materials) analysis Ability to trace through Linux kernel configuration systems (KCONFIG) and interpret Makefiles Strong C programming skills and understanding of conditional code compilation Experience with scripting languages (Python, Bash) and network analysis tools (Wireshark) Proven ability to collaborate effectively across global teams and multiple time zones Consistent track record to ship in a dynamic environment Experience using Jira and other Atlassian software Bonus points Cisco security certifications (CCNA/CCNP Security) and cybersecurity credentials (CISSP, CEH) preferred Experience with industrial/OT security standards (IEC 62443, NIST Cybersecurity Framework) Bachelor's degree in Computer Science, IT, or related field

Posted 6 days ago

Apply

5.0 - 10.0 years

17 - 20 Lacs

bengaluru

Work from Office

Educational Requirements Bachelor of Engineering,Master Of Engineering Service Line Cyber Security Responsibilities Approx 5 years' experience as a Security Architect Bachelor's degree in information technology, security, or similar Experience in providing security architecture support to a large development organization Information security credentials such as IGP, CISSP or similar Well versed in cloud security on a generic level as well as AWSSecondary Skills:SAST and DASTSolid diplomatic and communication skills in EnglishThe candidate will primary work with security assessments and as part of that also be able to provide guidance on how to close security gaps The candidate will also be part of "shift left" for assessments to automate and minimize the manyal work involved It is also expected that the candidate will assist in creating an assessment " factory" with a streamlined process for approaching assessments Preferred Skills: Technology->Enterprise Architecture->Data / Information Architecture

Posted 6 days ago

Apply

7.0 - 11.0 years

5 - 11 Lacs

guwahati

Work from Office

Position: VAPT Engineer Reporting to: Platform Lead Infrastructure Security Employment Type: Employee - Full Time Work Location: Guwahati Key Focus area: Infrastructure Penetration Tester Key Responsibilities: Identification and remediation of new vulnerabilities and risk analysis for Infrastructure is a key responsibility. Identifying and maintaining Key metrics and SLA on Infrastructure Security. Ensure that vulnerability assessments are performed to evaluate effectiveness of security controls in applications, middleware, databases, network and operating systems. Thorough experience in configurations reviews against CIS benchmarks and security standards. Ensure all Hardening and Patching activities are conducted and tracked as per defined policies. Create/Update hardening documents and build audit file for automated testing. Knowledge of current and emerging security threats and techniques for exploiting security vulnerabilities. Conduct security penetration testing to identify vulnerabilities and potential security risks along with designing and implement security solutions to protect enterprise systems, applications, data, assets, and people. Collaborate with cross-functional teams to ensure security measures are integrated into all aspects of the organization's operations. Perform Internal/ External Penetration Testing on Jio Infrastructure and producing reports with recommendations for detailed penetration testing findings. Sound understanding of Azure/GCP/AWS environment activities and Perform Vulnerability Assessment & Penetration Testing for networks (internal & external), applications, APIs & cloud assets along with Red & Purple Team assessments. Safeguarding information, infrastructures, applications, and business processes against cyber threats. Proactively create, share, and read reports as part of the penetration testing activities. Responsible for utilizing threat intelligence to identify new threats in our environment, coordinating with stakeholders to remediate identified vulnerabilities, and ensuring closure through thorough cross-validation. Qualification and Work Experience Qualification: BE / BTech (Similar Education Background) Work experience: 7-15 Years 7+ years of experience in Infrastructure Penetration Testing and Vulnerability Management including practical experience with Linux and Windows operating systems. Thorough understanding of Application and Infrastructure Architectures, and related vulnerabilities. Ability to interpret and prioritize vulnerability scan results into remediation actions and tracking those actions through to completion. Working knowledge of ORACLE DB, MS SQL DB, MYSQL DB & Network Devices is required. Ability to analyse vulnerabilities to appropriately characterize threats and provide remediation advice. Familiarity with classes of vulnerabilities, appropriate remediation, and industry-standard classification schemes (CVE, CVSS, CPE). Extensive experience in vulnerability management, including the ability to forecast potential threats and develop proactive mitigation plans. Hands on experience in testing diverse infra components including various enterprise platforms such as private clouds, OpenShift infra, dockers/container infra etc. The candidate should be able to perform manual & automated penetration testing for internal, external perimeter, web applications, IT infrastructure, end-points, cloud etc. using hacking tools; e.g. Nuclei, Acunetix, BURP, Wireshark, Nmap, netcat, Firebug, Nessus, Kali OS, Parrot, Metasploit, Aircrack-ng. Preferred: Security related professional certification (e.g. CEH, CPENT, OSCP, OSCE, OSWE, GPEN, GWAPT or similar certifications) Preferred: Script writing skills (Python/Ruby/bash/PowerShell). Experience with security standards and frameworks such as ISO 27001, NIST, and PCI DSS. Preferred: Security solutions technologies such as IPS, firewalls, endpoint protection, web/email filtering, DLP, Digital rights management, encryption, SEIM, and virtualization platforms. Expertise in performing grey box/Black box testing. Experience devising methods to automate testing activities and streamline testing processes. Proven ability to develop and test Proof of Concept (PoC) exploits as part of vulnerability assessment and penetration testing exercises. Competencies / Expertise Required (Functional & Behavioral) Systematic strong analytical thinking and problem-solving skills. Excellent in analytical thinking for translating data into informative visuals and reports. Adaptable to change. Quick Learner Open learn and work on new technologies and products. If you're interested, please share below mention details for the same. Location Preferred location Current Co Experience Current CTC Expected CTC Notice Period Offer in Hand Highest Education SSC % HSC % Graduation % University Name Regards, Ashwini Chakor

Posted 6 days ago

Apply

6.0 years

0 Lacs

india

Remote

Job Description: VAPT (OSCP) Manager / Senior Manager Location: Remote (India) | Frequent Travel to the Middle East Experience: 6+ Years Position Level: Manager / Senior Manager Employment Type: Full-Time About the Role We are seeking an experienced Vulnerability Assessment & Penetration Testing (VAPT) professional with a strong background in offensive security and OSCP-certified expertise . As a Manager or Senior Manager, you will lead end-to-end VAPT engagements, manage client relationships, and provide expert guidance on cybersecurity posture improvements. This role involves working remotely from India, with periodic travel to the Middle East for client engagements. Key Responsibilities Lead and manage VAPT engagements across web, mobile, network, APIs, and cloud environments. Perform advanced penetration testing, exploit development, and vulnerability research. Conduct red teaming exercises and simulate real-world attack scenarios. Review security architectures, assess risks, and provide actionable remediation strategies. Prepare comprehensive technical reports and executive summaries for client stakeholders. Collaborate with cross-functional teams to design and implement security solutions . Mentor and guide junior team members on security testing methodologies and tools. Stay updated on the latest cybersecurity trends, vulnerabilities, exploits, and tools. Act as the primary point of contact for clients, ensuring smooth delivery of projects. Ensure compliance with relevant security standards and frameworks. Required Skills & Qualifications 6+ years of hands-on experience in VAPT, red teaming, and offensive security testing . OSCP certification is mandatory (OSCE, OSEP, or similar certifications are a plus). Expertise in security testing tools such as Burp Suite, Metasploit, Nmap, Nessus, Wireshark, OWASP ZAP , etc. Strong knowledge of web, mobile, network, cloud, and API security vulnerabilities and exploitation techniques. Experience in preparing detailed VAPT reports, risk assessments, and remediation plans. Excellent problem-solving, analytical, and troubleshooting skills. Strong stakeholder management and client-handling capabilities. Ability to work independently in a remote setup and travel as required. Good to Have Experience with cloud security testing (AWS, Azure, GCP). Familiarity with Middle East cybersecurity regulations and frameworks. Exposure to security operations, incident response, and threat hunting . Prior experience in consulting or working with BFSI, telecom, or critical infrastructure clients. Key Details Job Type: Full-time, Permanent Work Mode: Remote (India) Travel: Frequent travel to the Middle East based on project requirements Position Level: Manager / Senior Manager Compensation: Competitive, based on experience and skillset

Posted 1 week ago

Apply

5.0 - 10.0 years

0 Lacs

navi mumbai, maharashtra, india

Remote

Mizuho Global Services Pvt Ltd (MGS) is a subsidiary company of Mizuho Bank, Ltd, which is one of the largest banks or so called ‘Mega Banks’ of Japan. MGS was established in the year 2020 as part of Mizuho’s long-term strategy of creating a captive global processing centre for remotely handling banking and IT related operations of Mizuho Bank’s domestic and overseas offices and Mizuho’s group companies across the globe. At Mizuho we are committed to a culture that is driven by ethical values and supports diversity in all its forms for its talent pool. Direction of MGS’s development is paved by its three key pillars, which are Mutual Respect, Discipline and Transparency, which are set as the baseline of every process and operation carried out at MGS. 1) VAPT SME About the Role: We are seeking a highly skilled and experienced Vulnerability Assessment SME to join our dynamic team. You will play a critical role in safeguarding our organization's information assets by identifying, assessing, and mitigating vulnerabilities. Roles and Responsibilities: · Conduct vulnerability assessments using industry-leading tools (e.g., Nessus, Tenable, Qualys). · Analyze vulnerability assessment results to identify and prioritize risks. · Develop and maintain vulnerability management processes and procedures. · Coordinate vulnerability remediation activities with relevant stakeholders. · Perform penetration testing to assess the effectiveness of security controls. · Stay up-to-date on the latest security threats and vulnerabilities. Relevant Skills and Experience: · 5-10 years of experience in vulnerability assessment, penetration testing, or a related field. · Strong understanding of vulnerability management concepts, principles, and best practices. · Proficiency in using vulnerability assessment tools (e.g., Nessus, Tenable, Qualys). · Experience in conducting penetration testing using various methodologies (e.g., black box, gray box, white box). · Knowledge of common security threats, vulnerabilities, and attack vectors. · Experience with network and system security tools (e.g., firewalls, intrusion detection systems, antivirus). · Experience with scripting languages (e.g., Python, PowerShell). · Experience with cloud security (e.g., AWS, Azure, GCP). Qualifications: · Bachelor's degree in computer science, information technology, or a related field. · Security certifications (e.g., CISSP, CISM, CEH, OSCP). · Strong problem-solving and analytical skills. · Excellent communication and interpersonal skills. · Ability to work independently and as part of a team. Additional Skills (Preferred): · Experience with source code analysis tools. · Experience with web application security testing. · Experience with mobile application security testing. · Experience with security incident response. 2) Architecture About the Role: We are looking for professionals—a Senior Architect to join our team focused on application and infrastructure security hardening. These individuals will play a crucial role in enhancing the security posture of the organization's platforms by providing actionable hardening guidance, assisting with remediation efforts, and collaborating with teams to ensure compliance with security standards. Roles and Responsibilities: Application and Infrastructure Security Hardening: Deliver clear and practical security hardening guidance for various platforms, including Web Servers, Databases, Operating Systems, and Infrastructure components. Document security hardening processes comprehensively to ensure clarity and repeatability. Provide remediation support to address vulnerabilities identified during hardening audits. Collaborate with application and infrastructure teams to implement security configurations based on identified hardening requirements. Conduct periodic reviews of platforms to detect deviations from the hardening benchmarks and facilitate immediate rectifications. Scope of Work: Coordinate efforts with offshore teams to research optimal security configurations tailored to the organization’s needs. Partner with infrastructure and application teams to apply updated system configurations and monitor adherence to security guidance. Assist in periodic assessments of system platforms, ensuring that deviations from security standards are promptly addressed. Recommend and implement best practices to maintain a secure environment across multiple system layers. Relevant Skills and Experience: For Senior Architecture Resource: 5–7 years of experience in application and infrastructure security domains. Expertise in documenting and guiding application/system hardening processes. Proven track record of implementing security configurations across complex platforms. Strong ability to coordinate remediation tasks with diverse teams. Qualifications: Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or a related field. Relevant certifications in security hardening or infrastructure hardening are preferred. Proven experience in identifying vulnerabilities and collaborating on remediation efforts. Additional Skills (Preferred): Familiarity with automated tools and frameworks for ensuring compliance with hardening standards. Strong communication skills to simplify security configurations for diverse teams while maintaining technical accuracy. Adaptable research capabilities to align hardening recommendations with industry best practices. Address : Address: Mizuho Global Services India Pvt. Ltd, 11th Floor, Q2 Building Aurum Q Park, Gen 4/1, Ttc, Thane Belapur Road, MIDC Industrial Area, Ghansoli, Navi Mumbai- 400710. Please Note : Candidates residing within 20 KMs will be preferred. Shortlisted candidates will be invited for an interview F2F at office on 13th September, Saturday.

Posted 1 week ago

Apply

7.0 years

0 Lacs

kanpur nagar, uttar pradesh, india

On-site

Description As a Lead Vulnerability Assessment and Penetration Testing (VAPT) Engineer, you will spearhead initiatives to evaluate, strengthen, and strategically enhance the security posture of our organization’s IT infrastructure, applications, and networks. You will lead and mentor the VAPT team, oversee testing engagements, and ensure best practices are followed throughout the security lifecycle. Your role will be pivotal in driving high-impact security improvements by identifying and mitigating vulnerabilities through advanced assessments, penetration testing, and cross-team collaboration . Responsibilities Lead Vulnerability Assessmen ts: Oversee and guide comprehensive vulnerability assessments on internal and external systems, networks, and applications. Review, refine, and approve testing methodologies and tool usage for consistency and accuracy. Direct Penetration Testing Efforts: Plan, coordinate, and execute complex penetration tests across IT infrastructure, applications, mobile platforms, and network components. Lead simulation of advanced cyber-attacks to validate security controls and identify exploitable weaknesses. Analyze, Review & Report: Ensure thorough analysis of findings, highlighting business risk impact alongside technical details. Deliver executive-level briefings as well as detailed technical reports with prioritized, actionable recommendations. Team Leadership & Collaboration: Mentor junior engineers, provide training, and foster a knowledge-sharing culture within the security team. Collaborate with development, operations, and compliance teams to drive remediation efforts and monitor progress. Process & Documentation Management Maintain and improve VAPT documentation, methodologies, and reporting templates. Introduce process improvements to increase efficiency, accuracy, and coverage in testing. Continuous Security Advancement Stay ahead of emerging threats, advanced exploitation techniques, and evolving security tools. Evaluate and integrate new tools and frameworks into the VAPT process for greater effectiveness. Eligibility Educational Background: Bachelor’s or Master’s degree in Computer Science, Information Technology, Cybersecurity, or related field. Technical Skills: Strong command of network protocols, operating systems, and web/mobile technologies. Proficiency in leading security testing tools: Nessus, Nmap, Burp Suite, Metasploit, and others.Solid knowledge of IT security standards/frameworks (OWASP, NIST, SANS Top 25) and advanced exploitation techniques. Hands-on experience with manual penetration testing, complex scenario simulation, and advanced vulnerability exploitation. Experience: • 7+ years of relevant experience in VAPT, including at least 2 years in a leadership or senior technical role. Desired Eligibility Broad knowledge of security across applications, databases, networks, servers, Active Directory, and endpoints.Experience with IoT/OT security and embedded protocol testing (UART, I2C, SPI, JTAG, SWD).Knowledge of radio protocol attacks (BLE, Wi-Fi, LoRa, DSP, SDR).Relevant certifications such as OSCP, CEH, or equivalent advanced credentials. Strong scripting/programming ability to develop custom exploits and automation.Active participation in security challenges (e.g., Hack the Box, CTFs).Familiarity with both open-source and commercial security tools (Core Impact, Qualys, SQLmap, OWASP ZAP, etc.). Willingness to travel for high-priority assessments and engagements. Travel As and when required, across the country for project execution and monitoring, as well as for coordination with geographi cally distrib uted teams. Communication Submit a cover letter summarising your experience in relevant technologies and software, along with a resume and the Latest passport-size photograph.

Posted 1 week ago

Apply

10.0 - 15.0 years

11 - 16 Lacs

chennai

Work from Office

Expertise on Endpoint Security as in DLP, AV, EDR/EPP solutions Experience with EDR tools (e.g., SentinelOne, CrowdStrike) and anti-virus/anti-malware solutions. Proficiency in analyzing and mitigating endpoint security threats and managing endpoint protection policies. SIEM and Incident ResponseHands-on experience with SIEM platforms (e.g., Splunk, QRadar, Microsoft Sentinel). Strong skills in incident response, threat hunting, and forensic investigation. Access and Identity ManagementFamiliarity with IAM concepts and tools, including MFA and SSO solutions. Experience with configuring and troubleshooting access control for network and endpoint systems. Automation and ScriptingBasic scripting abilities (e.g., Python, PowerShell) for automating security processes. Excellent analytical and problem-solving skills. Effective communication skills for interacting with team members and stakeholders. Ability to work in a fast-paced environment and handle high-stakes incidents. Certifications (Preferred) CompTIA Security+, Cisco CCNA Security, Certified Ethical Hacker (CEH), or other relevant security certifications. Required education Bachelor's Degree Preferred education Bachelor's Degree Required technical and professional expertise 10 years of experience in security & infrastructure administration Experience on any Products for Implementation & Operations in SIEM, Nessus, CEH, Qualys guard, Vulnerability Assessment and Penetration Testing, Network Security, Web Application Expertise of handling industry standard risk, governance and security standard methodologies and incident response processes (detection, triage, incident analysis, remediation and reporting). have shown attention to detail and interpersonal skills and expertise to oversee input and develop relevant metrics and Competence with Microsoft Office, e.g. Word, Presentation, Excel, Visio, etc Preferred technical and professional experience Ability to multitask and work independently with minimal direction and maximum accountability. One or more security certifications. (CEH, Security+, GSEC, GCIH, etc).

Posted 1 week ago

Apply

3.0 - 4.0 years

8 - 12 Lacs

mumbai

Work from Office

The role supports full end to end software development cycle, from initial client engagement, through assessments and road-mapping, to longer term engagement in an advisory capacity. As an Application Security Consultants, the person should leverage the technical expertise of the security competencies, varied product and delivery capabilities. Hands on experience in Secure SDLC, DAST, SAST etc Provide strategic advice and insights to clients based on deep domain knowledge and industry best practices. Identify potential risks and develop mitigation strategies to ensure project success and client satisfaction. Lead and coordinate incident response activities, including investigation, containment Required education Bachelor's Degree Preferred education Master's Degree Required technical and professional expertise BE/Btech/MCA/M.Tech. 3-4yrs hands on experience. Preferred technical and professional experience CEH Certificate mandatory

Posted 1 week ago

Apply

4.0 - 9.0 years

7 - 11 Lacs

mumbai

Work from Office

The CyberArk Operation Support Team Lead is a pivotal role responsible for overseeing and managing the day-to-day operations of the CyberArk environment. This position involves leading a team of support professionals, ensuring the availability, performance, and security of CyberArk solutions, and collaborating with cross-functional teams to deliver efficient privileged access management.Key Responsibilities: * Team LeadershipSupervise and mentor a team of CyberArk support professionals, fostering collaboration and skill development. * Operational ManagementOversee the operational aspects of CyberArk solutions, ensuring 24/7 availability, scalability, and optimal performance. * Incident ManagementLead the resolution of CyberArk-related incidents and problems, coordinating with technical teams and stakeholders to ensure timely and effective solutions. * Security EnhancementCollaborate with the security team to implement and enhance security controls, policies, and procedures for privileged access management. * Performance MonitoringMonitor system performance, conduct regular health checks, and proactively identify and address potential performance bottlenecks. * Patch and Upgrade ManagementPlan and execute system upgrades, patches, and enhancements, ensuring minimal disruption to ongoing operations. * DocumentationMaintain thorough documentation of configurations, processes, and procedures related to CyberArk operations. * Vendor ManagementCoordinate with CyberArk vendors for support, troubleshooting, and escalations to ensure timely issue resolution. * Continuous ImprovementDrive continuous improvement initiatives to enhance the effectiveness and efficiency of CyberArk operations. * ReportingGenerate regular reports on system performance, incident management, and operational metrics for management review. * Willing to work in 24/7 operations and project support activities Required education Bachelor's Degree Preferred education Master's Degree Required technical and professional expertise Required Professional and Technical Expertise* * Proven experience in CyberArk operations and support, with a minimum of 4+years of hands-on experience. * Professional certifications such as CyberArk Certified Trustee (CCT) or Certified Delivery Engineer (CDE). * Strong knowledge of privileged access management concepts and CyberArk technologies. * Experience in organizations control, monitor, and secure privileged access across their IT infrastructure. * Good Exposure in endpoint * Analytics capabilities to identify unusual or suspicious activities related to privileged access. Preferred technical and professional experience * Leadership skills with the ability to guide and mentor a team effectively. * Problem-solving aptitude with a proactive approach to resolving technical challenges. * Strong communication skills for effective collaboration with cross-functional teams. * Detail-oriented mindset with a commitment to maintaining high standards. * Adaptability to changing requirements and a willingness to stay updated on emerging technologies

Posted 1 week ago

Apply

11.0 - 14.0 years

13 - 18 Lacs

bengaluru

Work from Office

About The Role This role involves the development and application of engineering practice and knowledge in designing, managing and improving the processes for Industrial operations, including procurement, supply chain and facilities engineering and maintenance of the facilities. Project and change management of industrial transformations are also included in this role. About The Role - Grade Specific Focus on Industrial Operations Engineering. Develops competency in own area of expertise. Shares expertise and provides guidance and support to others. Interprets clients needs. Completes own role independently or with minimum supervision. Identifies problems and relevant issues in straight forward situations and generates solutions. Contributes in teamwork and interacts with customers.

Posted 1 week ago

Apply

3.0 - 8.0 years

13 - 17 Lacs

bengaluru

Work from Office

About The Role Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : Security Penetration Testing Good to have skills : NA Minimum 3 year(s) of experience is required Educational Qualification : 15 years full time education Summary :As a Security Architect, you will design and implement comprehensive testing strategies to assess the security posture of web applications, APIs, and infrastructure. Your day-to-day responsibilities will involve working closely with cross-functional teams to identify potential vulnerabilities, document findings, and ensure that robust security controls are in place. You will play a critical role in aligning penetration testing activities with organizational goals, making certain that all identified risks are addressed effectively and that best practices in security testing are consistently applied.Roles & Responsibilities:Perform security testing on web applications, APIs, and infrastructure to identify vulnerabilities and weaknesses.Conduct penetration testing, vulnerability assessments, and security audits.Develop and execute test plans, scripts, and scenarios to simulate real-world attacks.Perform infrastructure penetration testing, including SSH and network devices.Collaborate with development and operations teams to remediate identified vulnerabilities.Provide detailed reports on findings, including risk assessments and recommendations for mitigation.Stay up to date with the latest security trends, tools, and techniques.Assist in the development and implementation of security policies and procedures.Professional & Technical Skills: Qualifications:Bachelor's degree in Computer Science, Information Security, or a related field.Proven experience in security testing, penetration testing, and vulnerability assessments.Strong knowledge of web application security, API security, and infrastructure security.Familiarity with common security tools and frameworks (e.g., OWASP, Burp Suite, Metasploit, Nessus, Kali Linux, Qualys, Wireshark, Nmap, etc).Excellent problem-solving skills and attention to detail.Strong communication skills, both written and verbal.Relevant offensive security certifications (e.g., OSCP, OSCE, eJPT, CRTP) are a plus.Knowledge about scripting languages such as Python, Bash, or PowerShell for automating tasks and developing custom security tools.Preferred Skills: Experience with cloud pentesting (e.g., On-Premises, AWS, Azure, GCP).Experience with On-Premises Cloud Infrastructure Pentesting.Knowledge of secure coding practices and code review.Understanding of network security and protocols.Ability to work independently and as part of a team. Additional Information:- The candidate should have minimum 3 years of experience in Security Penetration Testing.- This position is based at our Bengaluru office.- A 15 years full time education is required. Qualification 15 years full time education

Posted 1 week ago

Apply

8.0 - 13.0 years

13 - 17 Lacs

bengaluru

Work from Office

About The Role Project Role : Security Architect Project Role Description : Define the cloud security framework and architecture, ensuring it meets the business requirements and performance goals. Document the implementation of the cloud security controls and transition to cloud security-managed operations. Must have skills : Security Penetration Testing Good to have skills : NA Minimum 5 year(s) of experience is required Educational Qualification : 15 years full time education Summary :As a Security Architect, you will design and implement comprehensive testing strategies to assess the security posture of web applications, APIs, and infrastructure. Your day-to-day responsibilities will involve working closely with cross-functional teams to identify potential vulnerabilities, document findings, and ensure that robust security controls are in place. You will play a critical role in aligning penetration testing activities with organizational goals, making certain that all identified risks are addressed effectively and that best practices in security testing are consistently applied.Roles & Responsibilities:Perform security testing on web applications, APIs, and infrastructure to identify vulnerabilities and weaknesses.Conduct penetration testing, vulnerability assessments, and security audits.Develop and execute test plans, scripts, and scenarios to simulate real-world attacks.Perform infrastructure penetration testing, including SSH and network devices.Collaborate with development and operations teams to remediate identified vulnerabilities.Provide detailed reports on findings, including risk assessments and recommendations for mitigation.Stay up to date with the latest security trends, tools, and techniques.Assist in the development and implementation of security policies and procedures.Professional & Technical Skills: Qualifications:Bachelor's degree in Computer Science, Information Security, or a related field.Proven experience in security testing, penetration testing, and vulnerability assessments.Strong knowledge of web application security, API security, and infrastructure security.Familiarity with common security tools and frameworks (e.g., OWASP, Burp Suite, Metasploit, Nessus, Kali Linux, Qualys, Wireshark, Nmap, etc).Excellent problem-solving skills and attention to detail.Strong communication skills, both written and verbal.Relevant offensive security certifications (e.g., OSCP, OSCE, eJPT, CRTP) are a plus.Knowledge about scripting languages such as Python, Bash, or PowerShell for automating tasks and developing custom security tools.Preferred Skills: Experience with cloud pentesting (e.g., On-Premises, AWS, Azure, GCP).Experience with On-Premises Cloud Infrastructure Pentesting.Knowledge of secure coding practices and code review.Understanding of network security and protocols.Ability to work independently and as part of a team. Additional Information:- The candidate should have minimum 5 years of experience in Security Penetration Testing.- This position is based at our Bengaluru office.- A 15 years full time education is required. Qualification 15 years full time education

Posted 1 week ago

Apply

2.0 - 5.0 years

4 - 8 Lacs

bengaluru

Work from Office

About The Role Project Role : Security Delivery Practitioner Project Role Description : Assist in defining requirements, designing and building security components, and testing efforts. Must have skills : Mobile Security Good to have skills : NA Minimum 5 year(s) of experience is required Educational Qualification : 15 years full time education Summary :As a Security Delivery Practitioner, you will assist in defining requirements, designing and building security components, and testing efforts. A typical day involves collaborating with various teams to ensure that security measures are effectively integrated into projects, conducting assessments to identify potential vulnerabilities, and providing guidance on best practices to enhance overall security posture. You will also engage in discussions to refine security strategies and contribute to the continuous improvement of security processes within the organization. Roles & Responsibilities:- Expected to be an SME.- Collaborate and manage the team to perform.- Responsible for team decisions.- Engage with multiple teams and contribute on key decisions.- Provide solutions to problems for their immediate team and across multiple teams.- Facilitate training sessions to enhance team knowledge on security practices.- Monitor and evaluate the effectiveness of security measures implemented across projects. Professional & Technical Skills: - Must To Have Skills: Proficiency in Mobile Security.- Strong understanding of threat modeling and risk assessment methodologies.- Experience with mobile application security testing tools and techniques.- Knowledge of secure coding practices for mobile platforms.- Familiarity with compliance standards related to mobile security. Additional Information:- The candidate should have minimum 5 years of experience in Mobile Security.- This position is based at our Bengaluru office.- A 15 years full time education is required. Qualification 15 years full time education

Posted 1 week ago

Apply
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

Featured Companies