Posted:2 weeks ago|
Platform:
On-site
Full Time
Experience 5+ Location Chennai Objectives Conduct network penetration, web, mobile, business application testing, source code reviews, and threat analysis. Lead Red and Purple Team exercises to improve defensive capabilities. Lead and execute penetration tests aligned with regulatory standards, specifically focusing on FTC and PCI compliance. Perform wireless network assessments, AI-driven system testing, and physical security assessments. Create comprehensive reports and presentations tailored for technical and executive audiences. Effectively communicate security findings and remediation strategies to technical teams, executive leadership, and legal counsel. Utilize attacker tools, tactics, and procedures (TTPs) safely in testing environments. Develop scripts, tools, and methodologies to enhance the red teaming and penetration testing processes. Competencies 5+ years of penetration testing or related security experience. Expertise in at least three of the following: Network penetration testing and manipulation of network infrastructure. Web, mobile, and/or desktop application assessments. Social engineering assessments (email, phone, or physical). Automation or scripting using Perl, Python, Ruby, or similar languages. Exploit development or modifying shellcode and existing exploit tools. Application development in C#, ASP.NET, Objective C, or Java (J2EE). Reverse engineering malware, data obfuscation, or cryptographic systems. Regulatory penetration testing, particularly focusing on FTC and PCI compliance standards. Source code review for control flow and security vulnerabilities. Strong knowledge of operating systems and network protocols. Proficiency with tools such as Burp Suite, Checkmarx, Snyk, Wireshark, Fiddler, and Wiz. Ethical approach to security and business operations. Fluency in written and spoken English (B2 level or higher). Familiarity with Kali Linux and security frameworks like MITRE ATT&CK. Desire to continuously learn new techniques and attack vectors. Preferred Skills: Experience with wireless, web application, and network security testing tools. Familiarity with ICS, SCADA, BACnet protocols, and covert communication channels. Basic understanding of AI and machine learning security, including adversarial attacks, model poisoning and secure deployment of AI systems. Working knowledge of Unix/Linux/Mac/Windows operating systems, including scripting in Bash and Powershell. Experience with security controls in AWS, GCP, and Azure cloud environments. Understanding of security principles like defense-in-depth and security architectures. Experience in guiding and mentoring junior team members, with a focus on developing technical skills and expertise. Industry certifications like OSCP, OSWP, GPEN, GWAPT, OSCE, OSEE, GXPN, CEH or equivalent are highly desirable. Show more Show less
Quantified HR Private Limited
Upload Resume
Drag or click to upload
Your data is secure with us, protected by advanced encryption.
My Connections Quantified HR Private Limited
Chennai, Tamil Nadu, India
Salary: Not disclosed
Chennai, Tamil Nadu, India
Salary: Not disclosed