Required Security and VAPT Audit Specialist Position Overview We are seeking a skilled Security and VAPT (Vulnerability Assessment & Penetration Testing) Audit Specialist to strengthen our cybersecurity posture. The candidate will be responsible for conducting vulnerability assessments, penetration testing, compliance audits, and risk analysis of applications, networks, cloud, and infrastructure. The role requires a strong understanding of security frameworks, compliance standards, and the ability to provide actionable remediation strategies. Key Responsibilities Conduct end-to-end vulnerability assessments and penetration tests on web applications, APIs, mobile apps, cloud environments, networks, and infrastructure. Perform red team/blue team exercises to simulate real-world cyberattacks. Identify, analyze, and document security weaknesses, misconfigurations, and vulnerabilities. Develop and present detailed VAPT and audit reports with remediation guidance. Ensure compliance with security frameworks like ISO 27001, NIST, OWASP, PCI-DSS, HIPAA, GDPR, CERT-In guidelines etc. Conduct risk assessments and security audits across IT systems and third-party integrations. Collaborate with developers, DevOps, IT, and business teams to prioritize and fix identified vulnerabilities. Stay updated on emerging threats, attack vectors, and security tools/technologies. Assist in the development of security policies, standards, and incident response plans. Required Skills & Qualifications Bachelor’s degree in Computer Science, Information Security, or related field. 2–6 years of experience in cybersecurity, penetration testing, or IT audits. Strong knowledge of security tools (Burp Suite, Nessus, Metasploit, Nmap, Wireshark, Kali Linux, Qualys, Acunetix, etc.). Familiarity with OWASP Top 10, SANS Top 25, MITRE ATT&CK framework. Hands-on experience in Web, Mobile, Cloud (AWS/Azure/GCP), and Network Security Testing. Experience in preparing audit & compliance reports. Certifications preferred: CEH, OSCP, CISSP, CISA, CISM, CREST, CPENT, ISO 27001 LA. Soft Skills Strong analytical and problem-solving abilities. Excellent communication skills to explain technical issues to non-technical stakeholders. Ability to work independently and within cross-functional teams. Attention to detail and strong documentation skills.