Penetration Testing Specialist

Bengaluru, Karnataka Anlage Infotech (India) P Ltd

Posted today

Job Viewed

Tap Again To Close

Job Description

Hi Folks,


We're Hiring for the leading Manufacturing Company of Electrical Connection and Protection solutions'.


About the Company



We’re looking for people who put their innovation work to advance our success – and their own. Join an organization that ensures a more secure world through connecting and protecting our customers with inventive electrical solutions.


Experience Required- 4+ years (less experience not considered)



OSCP/OSEP CERTIFICATION REQUIRED MANDATORY. (PLS DON'T APPLY IF YOU DON'T HAVE)



About the Role



WHAT YOU WILL EXPERIENCE IN THIS POSITION:



Responsibilities



  • Conduct penetration testing of host/cloud-based applications, perform network security assessments, software/firmware analysis scans, evaluate and prioritize vulnerabilities using CVSS scoring, and document findings using organization-specific reporting tools.
  • Research network-related protocols for network-connected products, including Industrial Control Systems (ICS), and perform related security assessments.
  • Responsible for supporting nVent’s product cybersecurity verification testing program which is aligned to the ISA/IEC 62443 4-1 Security Development Lifecycle (SDL).
  • Participate in continual efforts to automate as much testing as possible.
  • Creating test report documentation to provide evidence of compliance to requirement.
  • Support development and maintenance of a calendar of recurring cybersecurity audits, assessments, and activities;
    track to ensure owners complete activities on time.
  • Maintaining list of tested products in appropriate nVent tools/databases.
  • Work with product development teams to fill gaps found during verification testing.



Qualifications



  • Bachelor’s degree or equivalent experience in related field.



Required Skills



  • Ideally 5 years of experience in Penetration Testing, Application Security, QA, Network/IoT, or Offer Testing roles.
  • Familiarity with test automation scripting tools or language.
  • Familiarity with daily activity planning tools such as Atlassian Jira.
  • Familiarity with either Agile or Kanban work environment.
  • Ability to collaborate across key functions including IT and product engineering teams.
  • Familiar with industry standards and best practices.
  • Good verbal and written communication skills.
  • Proven experience in Embedded Product Cybersecurity testing.
  • Familiarity with ISA/IEC 62443 4-1 Security Development Lifecycle (SDL) requirements.
  • Familiarity with Cybersecurity testing tools such as Burp suite/ZAP, BDBA, SAST, DAST, Fuzzing, and VA tools such as Nessus or Rapid7.
  • Familiarity with Microsoft Threat Modelling tool.
  • Demonstrated participation in Capture the Flag (CTF) cybersecurity contests with proven rankings or achievements.



Preferred Skills



  • We have a dynamic global reach with diverse operations around the world that will stretch your abilities, provide plentiful career opportunities, and allow you to make an impact every day.
  • We are a $2.5 billion, high-performance electrical company with a dedicated team of 11,241 people, across more than 80 global locations.
  • We have a robust portfolio of product brands dating back more than 100 years and including: nVent CADDY, ERICO, HOFFMAN, RAYCHEM, SCHROFF and TRACER.
  • Commitment to strengthen communities where our employees live and work.
  • We encourage and support the philanthropic activities of our employees worldwide.
  • Through our nVent in Action matching program, we provide funds to nonprofit and educational organizations where our employees volunteer or donate money.
  • Core values that shape our culture and drive us to deliver the best for our employees and our customers. We’re known for being:
  • Innovative & adaptable.
  • Dedicated to absolute integrity.
  • Focused on the customer first.
  • Respectful and team oriented.
  • Optimistic and energizing.
  • Accountable for performance.
  • Benefits to support the lives of our employees.



Pay range and compensation package:


UPTO 35 LPA only




Interested candidates can share their resumes at


Also, Can call/ whatsapp at


Regards,

Gulista Shaikh

Delivery Manager-HR

This advertiser has chosen not to accept applicants from your region.

Vulnerability Assessment & Penetration Testing Specialist

Bengaluru, Karnataka Terralogic

Posted today

Job Viewed

Tap Again To Close

Job Description

Department: Cybersecurity / Information Security

Location: Bangalore (On-site)

Employment Type: Full-time

Interested candidates can apply using the form below.


About the Roles

We’re hiring experienced professionals to join our Cybersecurity team in two key positions:

  1. VAPT Engineer (L2/L3) – leading advanced vulnerability assessment and penetration testing across enterprise and cloud environments.
  2. Information Security Lead – Managed Security Services – managing SOC operations, cloud security governance, risk management, and incident response.


Both roles demand strong technical depth, leadership maturity, and hands-on expertise in enterprise and cloud security ecosystems.


1. VAPT Engineer (L2/L3)

Experience: 5+ years (hands-on)

Reporting To: VAPT Lead

Certification: OSCP preferred

Mode: In-office

Key Responsibilities

  • Lead penetration testing across web, mobile, cloud, and infrastructure (Black/Grey/White box).
  • Perform manual and automated vulnerability assessments using tools like Burp Suite, Nessus, Metasploit, Nmap, and custom scripts.
  • Conduct threat modeling, cloud environment reviews, and risk assessments for business-critical systems.
  • Execute security testing on public, private, and hybrid cloud platforms (AWS, Azure, GCP).
  • Document findings and provide actionable remediation recommendations.
  • Collaborate with DevOps, IT, and Cloud Engineering teams to address vulnerabilities.
  • Mentor junior engineers and review reports for accuracy.
  • Stay updated with emerging threats, zero-days, and modern attack vectors.
  • Align testing with OWASP, NIST, ISO 27001, and cloud security best practices.
  • Participate in red team assessments and security audits.

Requirements

  • Bachelor’s or Master’s in Computer Science, Cybersecurity, or related field.
  • Deep understanding of network protocols, OS internals (Linux/Windows), and cloud architectures.
  • Strong knowledge of cloud-native security tools (AWS Security Hub, Azure Defender, etc.).
  • Hands-on scripting in Python, Bash, or PowerShell.
  • Familiarity with DevSecOps, CI/CD pipelines, and container security (Docker/Kubernetes).
  • Experience in secure coding, exploit development, and reverse engineering.
  • Certifications like OSCP, CEH, GPEN, LPT, or CISSP are highly preferred.



2. Information Security Lead – Managed Security Services

Experience: 8–10+ years (with 5+ in SOC Leadership)

Certification: OSCP required

Mode: In-office


Key Responsibilities

  • Lead SOC operations across L1–L3 analysts, ensuring 24/7 threat monitoring.
  • Drive vulnerability management, patch governance, and proactive threat mitigation.
  • Manage and secure multi-cloud environments, ensuring compliance and incident readiness.
  • Oversee cloud security posture management (CSPM) and identity access governance (IAM).
  • Lead incident response, RCA, and recovery for major on-prem and cloud-based incidents.
  • Conduct enterprise-wide risk assessments, audits, and compliance checks.
  • Ensure alignment with frameworks like NIST, GDPR, HIPAA, PCI-DSS, and ISO 27001.
  • Define and implement security policies, playbooks, and automation workflows for cloud and on-prem systems.
  • Present dashboards, risk reports, and threat trends to executive leadership.
  • Manage relationships with technology partners, MSSPs, and cloud vendors.

Requirements

  • 10+ years in Information Security, with at least 5 in SOC or Managed Security leadership.
  • Deep understanding of cloud architectures, workload protection, and identity management.
  • Hands-on experience with SIEM/SOAR tools (Splunk, ArcSight, Cortex XSIAM, QRadar, Microsoft Sentinel).
  • Expertise in threat hunting, malware analysis, endpoint security (EDR/XDR), and cloud security monitoring.
  • Proficiency in tools such as WAF, DLP, Burp Suite, and Nessus.
  • Strong understanding of hybrid security models and advanced persistent threat (APT) response.
  • Familiarity with ITIL or service delivery frameworks is a plus.
  • Certifications such as CEH, OSCP, CISSP, or relevant cloud security credentials (CCSP, AWS Security Specialty) preferred.


How to Apply

Interested candidates can apply using the form below.

Please select the role you’re applying for and share your details accurately.

Or Send your resume to

This advertiser has chosen not to accept applicants from your region.

Vulnerability Assessment & Penetration Testing Lead

Bengaluru, Karnataka Deloitte

Posted today

Job Viewed

Tap Again To Close

Job Description

Your potential, unleashed.

India’s impact on the global economy has increased at an exponential rate and Deloitte presents an opportunity to unleash and realize your potential amongst cutting edge leaders, and organizations shaping the future of the region, and indeed, the world beyond.

At Deloitte, your whole self to work, every day. Combine that with our drive to propel with purpose and you have the perfect playground to collaborate, innovate, grow, and make an impact that matters.

The team

Deloitte helps organizations prevent cyberattacks and protect valuable assets. We believe in being secure, vigilant, and resilient—not only by looking at how to prevent and respond to attacks, but at how to manage cyber risk in a way that allows you to unleash new opportunities. Embed cyber risk at the start of strategy development for more effective management of information and technology risks

Your work profile.

As an Assistant Manager in our Cyber Team, you’ll build and nurture positive working relationships with teams and clients with the intention to exceed client expectations: -

Key Responsibilities:

  • Total 3+years of experience in Cyber security
  • VAPT- Web Application Security Pentesting, Mobile Application Testing, Infra Testing, Source Code Review, Cloud Configuration Review
  • Certification - OSCP, CRTP, CEH, EJPT
  • Understanding of basic business and information technology management processes.
  • Good knowledge of TCP/ IP and Networks including Firewall, IDS/IPS, Routers, Switches, and network architecture.
  • Experience of Web Application Security Testing, Infrastructure VAPT, API testing.
  • Experience on Mobile Security Pen-Testing (iOS and Android).
  • Experience in conducting config reviews of Windows, Linux, UNIX, Solaris, Databases, etc.
  • Experience with Vulnerability Management tools: Kali Linux, Acunetix, AppScan, Nexpose, Qualys Guard, Nessus, Nmap, Metasploit, Fortify etc.
  • Experience in basic scripting such as: Shell, Python, PERL, etc.
  • Basic knowledge of Technologies such as: IPSEC, SSL, SSH, VPN, Ethernet Token Ring, WAP, SMTP, FTP, Frame Relay, WAN, ATM, FDDI, DSL, ISDN, HP Openview, Sun NetManage, Cisco Works, Radius, Big Brother, F5

Desired qualifications / Education :

· B.Tech /BE /BCA / B.Sc /M.Tech - Full time

· Candidates must possess security certification of CEH, LPT, OSCP.

· Good to have security certification for GPEN, CREST

Your role as Leader

We expect our people to embrace and live our purpose by challenging themselves to identify issues that are most important for our clients, our people, and for society.

In addition to living our purpose, Senior Executive across our organization must strive to be:

  • Inspiring - Leading with integrity to build inclusion and motivation
  • Committed to creating purpose - Creating a sense of vision and purpose
  • Agile - Achieving high-quality results through collaboration and Team unity
  • Skilled at building diverse capability - Developing diverse capabilities for the future
  • Persuasive / Influencing - Persuading and influencing stakeholders
  • Collaborating - Partnering to build new solutions
  • Delivering value - Showing commercial acumen
  • Committed to expanding business - Leveraging new business opportunities
  • Analytical Acumen - Leveraging data to recommend impactful approach and solutions through the power of analysis and visualization
  • Effective communication – Must be well abled to have well-structured and well-articulated conversations to achieve win-win possibilities
  • Engagement Management / Delivery Excellence - Effectively managing engagement(s) to ensure timely and proactive execution as well as course correction for the success of engagement(s).
  • Managing change - Responding to changing environment with resilience
  • Managing Quality & Risk - Delivering high quality results and mitigating risks with utmost integrity and precision
  • Strategic Thinking & Problem Solving - Applying strategic mindset to solve business issues and complex problems
  • Tech Savvy - Leveraging ethical technology practices to deliver high impact for clients and for Deloitte
  • Empathetic leadership and inclusivity - creating a safe and thriving environment where everyone's valued for who they are, use empathy to understand others to adapt our behaviors and attitudes to become more inclusive.

How you’ll grow

Connect for impact

Our exceptional team of professionals across the globe are solving some of the world’s most complex business problems, as well as directly supporting our communities, the planet, and each other. Know more in our Global Impact Report and our India Impact Report.

Empower to lead

You can be a leader irrespective of your career level. Our colleagues are characterised by their ability to inspire, support, and provide opportunities for people to deliver their best and grow both as professionals and human beings. Know more about Deloitte and our One Young World partnership.

Inclusion for all

At Deloitte, people are valued and respected for who they are and are trusted to add value to their clients, teams and communities in a way that reflects their own unique capabilities. Know more about everyday steps that you can take to be more inclusive. At Deloitte, we believe in the unique skills, attitude and potential each and every one of us brings to the table to make an impact that matters.

Drive your career

At Deloitte, you are encouraged to take ownership of your career. We recognise there is no one size fits all career path, and global, cross-business mobility and up / re-skilling are all within the range of possibilities to shape a unique and fulfilling career. Know more about Life at Deloitte.

Everyone’s welcome… entrust your happiness to us

Our workspaces and initiatives are geared towards your 360-degree happiness. This includes specific needs you may have in terms of accessibility, flexibility, safety and security, and caregiving. Here’s a glimpse of things that are in store for you.

Interview tips

We want job seekers exploring opportunities at Deloitte to feel prepared, confident and comfortable. To help you with your interview, we suggest that you do your research, know some background about the organisation and the business area you’re applying to. Check out recruiting tips from Deloitte professionals.

*Caution against fraudulent job offers*: We would like to advise career aspirants to exercise caution against fraudulent job offers or unscrupulous practices.

At Deloitte, ethics and integrity are fundamental and not negotiable. We do not charge any fee or seek any deposits, advance, or money from any career aspirant in relation to our recruitment process. We have not authorized any party or person to collect any money from career aspirants in any form whatsoever for promises of getting jobs in Deloitte or for being considered against roles in Deloitte. We follow a professional recruitment process, provide a fair opportunity to eligible applicants and consider candidates only on merit. No one other than an authorized official of Deloitte is permitted to offer or confirm any job offer from Deloitte. We advise career aspirants to exercise caution.

In this regard, you may refer to a more detailed advisory given on our website at:

This advertiser has chosen not to accept applicants from your region.

Security Specialist - Penetration Testing

Bengaluru, Karnataka ACL Digital

Posted today

Job Viewed

Tap Again To Close

Job Description

Job Purpose

As a Senior Penetration Tester, your primary role is to assess and enhance the security of our information systems, networks, and applications through comprehensive penetration testing and vulnerability assessments. You will work closely with our internal product teams to identify weaknesses in their systems and provide actionable recommendations for improvement. Your expertise will help safeguard sensitive data and protect our customers from potential cyber threats. Additionally, you will be responsible for coordinating penetration tests with third-party vendors when required.

Duties and Responsibilities

o Conduct penetration tests on a wide range of digital products, including networks, web, and mobile applications, to identify vulnerabilities and security weaknesses.

o Collaborate with internal product teams to understand their set-ups, goals, and constraints.

o Effectively communicate findings and solutions to technical and non-technical stakeholders.

o Prepare detailed and clear reports documenting findings, reproduce steps, and recommended remediation steps, ensuring the internal product teams understand the security implications.

o Work with cross-functional teams, including security engineers and developers to help them to implement security measures and resolve identified vulnerabilities.

o When your schedule is constrained, coordinate, and manage penetration tests with third-party vendors, ensuring high-quality and timely delivery.

o Contribute to the development and improvement of our testing methodologies, processes, and tools.

o Stay up to date with the latest threats, vulnerabilities, and exploits and develop new testing techniques as necessary.

o Conduct security tests based on products security requirements.


o

Authorities

o Authorized to conduct penetration tests and security tests on selected digital products.

o Authorized to make recommendations for remediation actions based on test results.

o Authorized to engage with internal product teams to discuss findings and recommendations.

o Authorized to coordinate and manage penetration tests with third-party vendors if needed.

Qualifications

o Bachelor’s degree in computer science/engineering, information security, or a related field.

o Proven experience in penetration testing, vulnerability assessment, and security testing with a minimum of 8 years in a similar role.

o Proven track record of conducting successful penetration tests for a variety of organizations and industries.

o Industry-recognized certifications such as Offensive Security Certified Professional (OSCP), GIAC Penetration Tester (GPEN) certifications, or similar qualifications are highly desirable.

o Demonstrated experience in vulnerability research (e.G., CVEs) is a plus.

o Experience in designing, developing, and executing customized penetration testing methodologies.

o Familiarity with various tools and frameworks used in penetration testing, such as Metasploit, Burp Suite, Nessus, Nmap etc.

o Strong knowledge of operating systems (Windows, Linux, and mobile platforms), databases, and web technologies.

o A deep understanding of common security protocols and technologies, including firewalls, intrusion detection/prevention systems, SSL/TLS.

o Programming skills and experience with languages such as Bash, Python, and PowerShell

o The ability to provide clear, comprehensive, and actionable reports on penetration test findings, including recommendations for remediation.

o Exceptional written and verbal communication skills to effectively convey technical information to both technical and non-technical stakeholders.

This advertiser has chosen not to accept applicants from your region.

Web Application Penetration Testing

Bengaluru, Karnataka ₹2000000 - ₹2500000 Y Clarity Consulting

Posted today

Job Viewed

Tap Again To Close

Job Description

Roles & responsibilities

Manage cyber threat management projects and lead day-to-day

red team operations.

Plan, scope and conduct complex red team engagements:

external/internal network, Active Directory, cloud

(AWS/Azure/GCP), web & API, mobile backends, and

physical/social engineering components (phishing, vishing,

in-person tests).

Conduct comprehensive web & API testing: reconnaissance,

authenticated/unauthenticated testing, injection flaws

(SQLi/NoSQLi), RCE, SSRF, XSS, IDOR, broken

authentication/authorization, logic flaws, insecure deserialization,

unsafe file uploads and API misconfigurations; chain findings into

host footholds.

Conduct network & infrastructure testing: perimeter and internal

assessments, host/service enumeration, CVE-based exploitation,

pivoting, lateral movement, privilege escalation, persistence and

attack path mapping.

Execute Active Directory compromise exercises: Kerberos

abuse, Golden/Silver Ticket, ACL abuse, user/group privilege

escalation and Group Policy weaknesses.

Simulate stealthy adversary tradecraft (MITRE ATT&CK)

including OpSec, EDR/AV evasion, SIEM evasion and covert

payload delivery (HTML smuggling, advanced delivery chains).

Design, develop and customize offensive tooling and exploits;

maintain red team infrastructure (C2, payloads, automation).

Conduct cloud adversarial simulations: identity abuse,

misconfiguration chaining, and privilege escalation across cloud

services.

Plan and run social engineering campaigns and measure human

susceptibility; craft realistic pretexts using OSINT

Come as

you are

at KGS

As a firm, we are deeply

committed to diversity,

inclusion and equity at our

workplace. We offer a safe

and inclusive environment

built on trust, where all our

colleagues can bring their

authentic selves to work

and know that their

uniqueness is valued.

We prohibit unfair

treatment of applicants and

employees and

discrimination on any

ground, including but not

limited to, caste, religion,

color, ancestry, marital

status, medical condition,

sex, gender identity and/or

expression, sexual

orientation, age,

nationality, cultural origin,

family or parental status,

defense veterans,

physical, mental or

sensory disability or any

other status or

characteristic protected by

applicable Indian laws and

regulations.

Mandatory technical &

functional skills

Conduct red team exercises to evaluate and enhance the

organization's security posture. These exercises simulate

real-world attack scenarios to identify areas of weakness and

improve defenses.

Key activities include planning and executing simulated

attacks, analyzing security gaps, and providing actionable

recommendations for remediation

4+ years of professional experience in cybersecurity, with a

focus on Web application penetration testing.

Strong background in cybersecurity with a focus on

penetration testing.

Experience in Web and Network PT.

Relevant certifications such as OSCP, CRTP,CRTO.

Proficient in threat modeling and vulnerability exploitation

techniques.

Excellent analytical and problem-solving skills.

This advertiser has chosen not to accept applicants from your region.

Automotive Cybersecurity Penetration Testing

Bengaluru, Karnataka ₹1500000 - ₹2500000 Y Embitel Technologies

Posted today

Job Viewed

Tap Again To Close

Job Description

Primary Skills:

  • Targeted pen testing/security analysis of ECU features at all levels e.g., secure boot, secure OS/TEE, secure protocol implementation, key management systems, debug access activation methods, paid feature activation, system architecture, etc.
  • Good Knowledge of modern automotive embedded systems, secure boot in all facets, baseband (LTE/GSM), Android/Linux/Autosar, CAN/Ethernet.
  • Liaising with ECU SW developers to explain security issues and provide feedback on proposed solutions.
  • Supporting the security test developers by providing input to new features and regression test development.
  • Good Knowledge of Reverse engineering, fuzzing (custom fuzzer development), PoC exploit development, source code review, hardware tampering, design reviews.

Must have:

  • Very good knowledge of cyber security, embedded systems and cryptography, which you are passionate about developing on a daily basis.
  • Relevant professional experience with pen testing and/or offensive security and reverse engineering.
  • Very strong (embedded) Linux knowledge.
  • Fluency in written and spoken English.

Nice to have:

  • A relevant tertiary qualification with a security component.
  • Knowledge of common automotive protocols.
  • Experience with automotive bus and protocol analysis tools.
  • Any relevant technical certifications - e.g., OSCP
This advertiser has chosen not to accept applicants from your region.

Cybersecurity Specialist - Penetration Testing

Bengaluru, Karnataka Computacenter

Posted today

Job Viewed

Tap Again To Close

Job Description

Life on the team

A highly skilled and motivated Penetration Tester to join our dynamic cybersecurity team. In this role, you will be responsible for identifying vulnerabilities in our systems, applications, and networks through various penetration testing methodologies. You will play a critical role in strengthening our security posture and protecting our valuable assets from cyber threats.


What you’ll do

Core Responsibilities:

  • Conduct comprehensive penetration tests: Execute internal and external network penetration tests, web application penetration tests, mobile application penetration tests, API penetration tests, cloud security assessments, and social engineering simulations.
  • Vulnerability identification and analysis: Research, identify, and exploit security vulnerabilities in a variety of systems and applications.
  • Red/Purple/Blue Teaming: participate in exercises with the goal of increasing cyber resilience for both offensive and defensive.
  • Reporting and documentation: Prepare detailed and professional penetration test reports, including executive summaries, technical findings, risk ratings, and actionable recommendations for remediation.
  • Collaboration and communication: Work closely with development, operations, and security teams to communicate findings, explain risks, and provide guidance on remediation strategies.
  • Tooling and methodology enhancement: Continuously research and evaluate new penetration testing tools, techniques, and methodologies to improve testing efficiency and effectiveness.
  • Security awareness: Contribute to the development and delivery of security awareness training for internal staff.
  • Stay current: Keep abreast of the latest security threats, vulnerabilities, exploits, and industry best practices.
  • Threat modelling: Participate in threat modelling exercises to identify potential attack vectors and design flaws.
  • Ad-hoc security testing: Perform ad-hoc security assessments and provide expert advice on security-related matters as needed.


Critical Success Factors:

  • Strong ethical hacking mindset: A genuine passion for breaking things and understanding how they work, coupled with an unwavering commitment to ethical conduct.
  • Analytical and problem-solving skills: Ability to dissect complex systems, identify subtle vulnerabilities, and devise creative attack scenarios.
  • Attention to detail: Meticulous in documenting findings and ensuring accuracy in reporting.
  • Excellent communication skills: Ability to clearly and concisely communicate highly technical information to both technical and non-technical audiences, both verbally and in writing.
  • Proactive and self-motivated: Ability to work independently and manage multiple projects simultaneously, demonstrating initiative and ownership.
  • Adaptability and continuous learning: Eagerness to learn new technologies, tools, and methodologies in a rapidly evolving threat landscape.
  • Results-oriented: Focus on delivering high-quality, impactful security assessments that drive tangible


What you’ll need

  • Bachelor’s degree in Cybersecurity, Information Technology, or a related field.
  • 10+ Years of experience
  • OSCP, PNPT or equivalent certification
  • At least three years’ experience working full-time as a penetration tester on the following areas as a minimum:
  • Infrastructure
  • Active Directory networks
  • Web Application penetration testing
  • Cloud security (Entra ID/Azure)
  • (optional) IoT
  • (optional) mobile
  • (optional) physical security / social engineering
  • Ability to develop custom tools, or adapt existing tooling for the task at hand
  • (optional) public blogs, research or talks
  • (optional) demonstrable experience contributing to open-source tools

Skills and Competencies

  • Strong Knowledge in SIEM operations, Threat operations, security monitoring, SOC operations, ASM, incident response, and log management.
  • Strong knowledge of tools and technologies such as MS Sentinel, ELM, SOAR, EDR solutions, and other SOC tooling.
  • Familiarity with frameworks such as MITRE ATT&CK, NIST CSF, and ISO 27001.
  • Exceptional leadership, communication, and stakeholder management skills.
  • Participation and leading projects
  • Full understanding of NIST 2 Domains and sub domains for SOC Operations
  • CRTO, OSCE, OSEP, PEN-300, GXPN or equivalent certification (note: reasonable exceptions will be considered, e.G. years of experience, contribution to the field, etc.)
  • At least five years' experience
  • Coding experience
  • Experience in training others, or managing teams
This advertiser has chosen not to accept applicants from your region.
Be The First To Know

About the latest Penetration testing Jobs in Bengaluru !

Senior Penetration Testing Consultant

Bengaluru, Karnataka NTek Software Solutions

Posted today

Job Viewed

Tap Again To Close

Job Description

JOB DESCRIPTION :


Position : Senior VAPT Consultant

Experience : 8+ years

Loc : Bengaluru

CTC : 35 % Hike on current CTC

Job type : Fulltime(Onsite)


Job Description

We are seeking an experienced and highly skilled Senior VAPT Consultant with 8+ years of hands-on experience in offensive security. The ideal candidate will possess deep technical expertise in assessing and securing complex enterprise environments, including Active Directory, web applications, networks, cloud infrastructures, APIs, and advanced adversarial simulation. This role demands a strong ability to lead engagements, mentor junior consultants, deliver high-quality technical reports, and interface with clients to provide both tactical and strategic security recommendations.

Key Responsibilities:

· Lead and conduct end-to-end penetration testing engagements across web applications, mobile apps, APIs, networks, WiFi, Active Directory, and cloud platforms (AWS, Azure, GCP).

· Execute red team and adversary simulation exercises, including phishing, lateral movement, persistence, and data exfiltration scenarios.

· Perform advanced Active Directory exploitation (on-prem, Azure AD, hybrid environments) including Kerberoasting, unconstrained delegation, golden/silver tickets, and modern AD attack chains.

· Assess and exploit cloud-native vulnerabilities, IAM misconfigurations, container/Kubernetes environments, and serverless workloads.

· Conduct wireless/WiFi pentesting (WEP/WPA/WPA2/WPA3 attacks, rogue AP, evil twin).

· Perform basic to intermediate reverse engineering and exploit development for binaries, scripts, and mobile apps.

· Utilize frameworks and tools such as Burp Suite Pro, ZAP, Caido, Metasploit, Havoc/Mythic/Sliver C2, BloodHound, Mimikatz, Impacket, and custom scripts/exploits.

· Draft and review detailed penetration testing reports, Statements of Work (SoW), Rules of Engagement (RoE), and executive presentations.

· Mentor and guide junior consultants, providing technical leadership, peer review, and training.

· Work closely with clients to communicate findings, risk implications, remediation strategies, and overall security posture improvements.


Requirements

· 8+ years of proven experience in vulnerability assessment, penetration testing, and red team operations.

· Strong expertise in Active Directory exploitation and defenses (on-prem, hybrid, Azure AD).

· Advanced skills in web application, API, and network penetration testing.

· Proficiency in cloud penetration testing (AWS, Azure, GCP) including IAM, storage, networking, and serverless security.

· Strong understanding of exploit development, reverse engineering, and evasion techniques.

· Proficiency with industry-standard tools and custom exploit/script development.

· Solid knowledge of enterprise security technologies (SIEM, SOAR, Firewalls, IDS/IPS, AV/EDR/XDR).

· Strong technical writing and client-facing communication skills, including report drafting and delivery.

· Experience in leading teams, reviewing deliverables, and mentoring junior consultants.

Preferred Qualifications

· Offensive security certifications such as OSCP, OSEP, OSED, OSWE, OSEE, CRTP, CRTE, CREST, GXPN, or equivalent .

· Experience in IoT, hardware, and automotive penetration testing .

· Prior experience in adversary emulation and purple team exercises .

· Familiarity with DevSecOps pipelines and Secure SDLC integration .

This advertiser has chosen not to accept applicants from your region.

Web Application Penetration Testing Consultant

Bengaluru, Karnataka ₹800000 - ₹2400000 Y Careernet

Posted today

Job Viewed

Tap Again To Close

Job Description

Key Skills: Penetration Testing, Vulnerabilities, Web Application Security, Manual Testing.

Roles & Responsibilities:

  • Conduct manual application penetration tests on web applications, internal applications, APIs, and mobile applications to discover and exploit vulnerabilities.
  • Independently research new vulnerabilities in systems and software, modifying and customizing tools, known exploits, POCs, and scripts to meet operational requirements.
  • Stay up-to-date with the latest attack techniques, tools, and emerging threats in the cybersecurity landscape.
  • Present technical reports to clients, explaining testing outcomes and providing detailed insights and recommendations.
  • Collaborate effectively with cross-functional teams, including developers, IT operations, and business stakeholders, to integrate security best practices into project workflows.
  • Provide mentorship and guidance to junior security staff, fostering a culture of proactive security awareness within the organization.
  • Maintain a strong understanding of web applications, cryptography, various operating systems, and security technologies.
  • Demonstrate expertise in exploiting Microsoft platforms used in enterprise environments, such as Windows Servers, Active Directory Certificate Service, and Azure.
  • Relevant certifications such as GWAPT, OSCP, OSEP, CRTP, CRTO, OSWA are strongly preferred.

Experience Requirement:

  • 4-8 years of hands-on experience in penetration testing of web, mobile, and API applications.
  • Proven ability to identify and exploit vulnerabilities through manual testing techniques.
  • Practical exposure to enterprise security environments, including Microsoft-based infrastructures.
  • Experience in customizing exploit tools and developing proof-of-concept scripts.
  • Strong communication and reporting skills, with the ability to present findings to technical and non-technical stakeholders.

Education: B.Tech M.Tech (Dual), BCA, B.Tech, MCA.

This advertiser has chosen not to accept applicants from your region.

Product Cybersecurity Engineer - Penetration Testing

Bangalore, Karnataka Danaher Corporation

Posted 3 days ago

Job Viewed

Tap Again To Close

Job Description

Bring more to life.
Are you ready to accelerate your potential and make a real difference within life sciences, diagnostics, and biotechnology?
At Cytiva, one of Danaher's ( 15+ operating companies, our work saves lives-and we're all united by a shared commitment to innovate for tangible impact.
You'll thrive in a culture of belonging where you and your unique viewpoint matter. And by harnessing Danaher's system of continuous improvement, you help turn ideas into impact - innovating at the speed of life.
Working at Cytiva means being at the forefront of providing new solutions to transform human health. Our incredible customers undertake life-saving activities ranging from fundamental biological research to developing innovative vaccines, new medicines, and cell and gene therapies.
At Cytiva you will be able to continuously improve yourself and us - working on challenges that truly matter with people that care for each other, our customers, and their patients. Take your next step to an altogether life-changing career.
Learn about the Danaher Business System, ( which makes everything possible.
The Product Cybersecurity Engineer - Penetration Testing is responsible for conducting in-depth security testing across various platforms-including web applications, APIs, networks, cloud environments, thick clients, and ICS/SCADA systems-to identify vulnerabilities before malicious actors can exploit them. Analyze findings using CVSS scoring, assess associated risks, and provide clear, actionable recommendations to strengthen the overall security posture of products and systems.
This position reports to the Senior Manager - Product Security and is part of the Product Security department , located in Bengaluru, and will be an on-site role.
What you will do:
1. Comprehensive Penetration Testing
+ Execute penetration tests across web apps, APIs, thick clients, networks, cloud, and ICS/SCADA systems using industry-standard tools.
2. Tool & Technique Development
+ Build and enhance internal tools and methodologies for testing and vulnerability assessments; stay current with emerging threats and exploits.
3. Vulnerability Analysis & Reporting
+ Analyze findings using CVSS, assess risks, recommend mitigations, and communicate results clearly to technical and non-technical audiences.
4. Compliance & Configuration Reviews
+ Perform reviews against CIS Benchmarks and ensure alignment with corporate security policies and standards.
5. Security Evaluation & Collaboration
+ Contribute to overall product security posture and collaborate effectively across teams to drive secure product development.
+ Who you are:
+ Bachelor's degree in computer science, Computer Engineering, or other related discipline; equivalent experience may be acceptable
+ 2+ years of penetration testing experience (Cloud, ICS/OT/Integration, Thick Client, and/or Web Applications preferred)
+ Certified Ethical Hacker (CEH) Certificate / Offensive Security Certified Professional (OSCP) Certificate (preferred but not required)
+ Knowledge of secure coding techniques and how to break them
Cytiva, a Danaher operating company, offers a broad array of comprehensive, competitive benefit programs that add value to our lives. Whether it's a health care program or paid time off, our programs contribute to life beyond the job. Check out our benefits at Danaher Benefits Info ( .
Join our winning team today. Together, we'll accelerate the real-life impact of tomorrow's science and technology. We partner with customers across the globe to help them solve their most complex challenges, architecting solutions that bring the power of science to life.
For more information, visit .
This advertiser has chosen not to accept applicants from your region.
 

Nearby Locations

Other Jobs Near Me

Industry

  1. request_quote Accounting
  2. work Administrative
  3. eco Agriculture Forestry
  4. smart_toy AI & Emerging Technologies
  5. school Apprenticeships & Trainee
  6. apartment Architecture
  7. palette Arts & Entertainment
  8. directions_car Automotive
  9. flight_takeoff Aviation
  10. account_balance Banking & Finance
  11. local_florist Beauty & Wellness
  12. restaurant Catering
  13. volunteer_activism Charity & Voluntary
  14. science Chemical Engineering
  15. child_friendly Childcare
  16. foundation Civil Engineering
  17. clean_hands Cleaning & Sanitation
  18. diversity_3 Community & Social Care
  19. construction Construction
  20. brush Creative & Digital
  21. currency_bitcoin Crypto & Blockchain
  22. support_agent Customer Service & Helpdesk
  23. medical_services Dental
  24. medical_services Driving & Transport
  25. medical_services E Commerce & Social Media
  26. school Education & Teaching
  27. electrical_services Electrical Engineering
  28. bolt Energy
  29. local_mall Fmcg
  30. gavel Government & Non Profit
  31. emoji_events Graduate
  32. health_and_safety Healthcare
  33. beach_access Hospitality & Tourism
  34. groups Human Resources
  35. precision_manufacturing Industrial Engineering
  36. security Information Security
  37. handyman Installation & Maintenance
  38. policy Insurance
  39. code IT & Software
  40. gavel Legal
  41. sports_soccer Leisure & Sports
  42. inventory_2 Logistics & Warehousing
  43. supervisor_account Management
  44. supervisor_account Management Consultancy
  45. supervisor_account Manufacturing & Production
  46. campaign Marketing
  47. build Mechanical Engineering
  48. perm_media Media & PR
  49. local_hospital Medical
  50. local_hospital Military & Public Safety
  51. local_hospital Mining
  52. medical_services Nursing
  53. local_gas_station Oil & Gas
  54. biotech Pharmaceutical
  55. checklist_rtl Project Management
  56. shopping_bag Purchasing
  57. home_work Real Estate
  58. person_search Recruitment Consultancy
  59. store Retail
  60. point_of_sale Sales
  61. science Scientific Research & Development
  62. wifi Telecoms
  63. psychology Therapy
  64. pets Veterinary
View All Penetration Testing Jobs View All Jobs in Bengaluru