4 - 9 years
6 - 13 Lacs
Posted:5 hours ago|
Platform:
Work from Office
Full Time
Role Title
Penetration Testing & Offensive Security Engineer (Web/Mobile/API)
Role Purpose
Perform penetration tests on web, mobile, and API applications; configure/run DAST where needed; produce comprehensive reports; drive remediation, retest, and executive communication.
Key Responsibilities
Scoping calls; confirm timelines & prerequisites; ensure test readiness
Execute pentests with Burp Suite Pro, Invicti (support), custom scripts
Identify, exploit, document vulns with PoC; post exploitation analysis
Configure/run DAST scans; maintain test plans/scripts/reports
Prepare detailed technical & executive reports (Client format); walkthrough with app teams Create Jira tickets; validate fixes; retest; close with evidence
Upload reports to Apiiro; manage findings lifecycle and SLAs.
Required Skills & Experience
6 to 8+ years in offensive security/VAPT; tools: Burp Suite Pro, Invicti, OWASP tooling; API testing (Postman); strong reporting & stakeholder communication; familiarity with OWASP ASVS/MASVS, OWASP Top 10.
Shift Coverage
Business hours + on call for P1 exploit confirmations and go live risk decisions; weekend windows per release calendar.
Systems Access & Request Process
Burp Suite: License via Jira; Offensive Security Lead approval. Invicti: Tester role per engagement; time boxed access. Apiiro & Jira: Upload/report permissions; project level access; audit trails retained.
Primary Tools
Burp Suite Pro, Invicti, Apiiro ASPM, Jira, OWASP tools (ZAP etc.), Postman.
Keywords
Penetration Testing, Offensive Security Engineer, VAPT, Web Application Pentesting, Mobile Application Pentesting, API Security Testing, Burp Suite Pro, Invicti, OWASP ZAP, DAST, Dynamic Application Security Testing, Vulnerability Assessment, Exploitation, Proof of Concept (PoC), Post-Exploitation Analysis, Custom Security Scripts, API Testing, Postman, OWASP Top 10, OWASP ASVS, OWASP MASVS, Secure Coding Validation, Vulnerability Reporting, Executive Security Reports, Technical Reporting, Remediation Validation, Retesting, Jira, Apiiro ASPM, Findings Lifecycle Management, SLA Management, Risk Acceptance, Go-Live Security Reviews, P1 Vulnerabilities, On-Call Support, Release Security
GSPANN Technologies
Upload Resume
Drag or click to upload
Your data is secure with us, protected by advanced encryption.
Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.
We have sent an OTP to your contact. Please enter it below to verify.
Practice Golang coding challenges to boost your skills
Start Practicing Golang Now6.5 - 13.0 Lacs P.A.
9.0 - 14.0 Lacs P.A.
6.5 - 13.0 Lacs P.A.
hyderabad, chennai, bengaluru
15.0 - 25.0 Lacs P.A.
15.0 - 30.0 Lacs P.A.
4.0 - 5.0 Lacs P.A.
bangalore rural
22.5 - 25.0 Lacs P.A.
22.5 - 25.0 Lacs P.A.
11.0 - 16.0 Lacs P.A.
4.0 - 9.0 Lacs P.A.