Nihon Cyber Defence

1 Job openings at Nihon Cyber Defence
Full-time Penetration Tester / SOC Analyst gurugram 2 - 4 years INR 0.7 - 0.9 Lacs P.A. Work from Office Full Time

Role Title: Full-time Penetration Tester / SOC Analyst Nihon Cyber Defence, a leading Japanese Cyber Security company, are looking for a Penetration tester with knowledge in SOC operations to join our growing India SOC team, supporting their emerging worldwide client base. This is a dual-role : primarily focused on internal and external penetration testing projects while also supporting incident detection and response . This is a desk job, no remote work. Willing to work in 24x7 rotational shifts, including nights and weekends. Responsibilities Penetration Testing Responsibilities Plan, execute, and report on network, web application, and infrastructure penetration tests . Perform vulnerability assessments and exploit development , where applicable. Utilise tools like Burp Suite, Metasploit, Nmap, etc. Produce detailed technical and executive reports with remediation steps. Provide input to blue team for improved detection of attacker TTPs. Having experience or knowledge in SOC operations will be valued: SOC Responsibilities Act as an escalation point for L1 analysts; lead investigations of complex security incidents. Provide mentorship and training to L1 analysts. Perform deep-dive threat analysis, triage, containment, and remediation. Threat hunting using SIEM, EDR, and threat intel platforms. Develop and enhance detection use cases and playbooks. Create and maintain detailed incident reports and dashboards. Qualifications Bachelors Degree in Computer Science, Cybersecurity, or a related field. 2+ years experience in a penetration testing role and/or SOC. Strong knowledge of TCP/IP, web application architecture, authentication mechanisms, etc. Experience with SIEM tools (Splunk, QRadar, ELK), EDR, and cloud logging (AWS, Azure). Solid understanding of MITRE ATT&CK, OWASP Top 10, and vulnerability management. Key Skills required Cybersecurity Expertise Proficiency with manual and automated penetration testing tools: Burp Suite, Metasploit, Nmap, Wireshark, etc. Familiarity with OSINT and threat emulation frameworks like Cobalt Strike. Scripting ability in Python, Bash, or PowerShell. Understanding of firewall, IDS/IPS, endpoint protection, and SIEM correlation logic. Experience testing cloud environments (AWS, Azure) is a strong plus. Analytical & Investigative Skills Ability to analyse complex security incidents and derive actionable intelligence. Strong problem-solving and troubleshooting skills. Communication & Collaboration Excellent written and verbal communication skills. Ability to document incidents and communicate effectively with both technical and non-technical stakeholders. Experience working in high-pressure environments and 24x7 operational models.