VAPT + ISMS Engineer

2 - 7 years

6 - 14 Lacs

Posted:1 day ago| Platform: Naukri logo

Apply

Work Mode

Hybrid

Job Type

Full Time

Job Description

Key Responsibilities:

  • Conduct 

    end-to-end VAPT

     for 

    web and mobile applications, APIs, cloud environments, networks, and infrastructure

    .
  • Perform 

    manual testing, exploit verification, and false-positive elimination

     beyond automated tools.
  • Lead 

    source code reviews, configuration audits, architecture assessments

    , and 

    Red Team exercises

    .
  • Prepare and deliver 

    detailed vulnerability assessment reports

     and work closely with stakeholders for timely remediation.
  • Develop or enhance 

    custom security testing scripts/tools

     to improve assessment efficiency.
  • Conduct 

    follow-up assessments

     to verify the effectiveness of remediation efforts.
  • Implement, manage, and maintain 

    ISMS policies and procedures

     in alignment with 

    ISO 27001 standards

    .
  • Participate in 

    ISMS audits, risk assessments, and continuous improvement

     initiatives.
  • Define and enhance 

    internal security policies, test plans, and assessment frameworks

    .
  • Mentor and guide 

    junior analysts

     on secure testing methodologies and ISMS best practices.
  • Stay abreast of 

    emerging threats, vulnerabilities, tools, and countermeasures

    .

Required Skills & Qualifications:

  • 2-7 years

     of relevant experience in 

    VAPT and ISMS implementation

    .
  • Proficiency with security tools such as 

    Burp Suite, OWASP ZAP, Acunetix, Nessus, Tenable, Metasploit, Nmap, and Cobalt Strike

    .
  • In-depth knowledge of:
    • OWASP Top 10

      API Security

      , and 

      Cloud Security (AWS/Azure)

    • Secure coding principles

       and 

      risk assessment methodologies

    • ISMS frameworks (ISO 27001)

       and compliance processes
  • Excellent 

    reporting, documentation, and communication

     skills.
  • Bachelors degree in 

    Cybersecurity, Computer Science, Information Technology

    , or related field.

Preferred Certifications:

  • OSCP

     – Offensive Security Certified Professional
  • CEH

     – Certified Ethical Hacker
  • ISO 27001 LA/LI

    GPEN

    ECSA

    , or equivalent certifications

Mock Interview

Practice Video Interview with JobPe AI

Start Job-Specific Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Skills

Practice coding challenges to boost your skills

Start Practicing Now
CIEL HR logo
CIEL HR

Human Resources

Noida

RecommendedJobs for You