3,330 Vulnerability Assessments jobs in India
vulnerability assessments Analyst
Posted today
Job Viewed
Job Description
Position :--
VAPT Junior Security Analyst
Location - Navi Mumbai WFO
Roles and Responsibilities:-
1. Conduct vulnerability assessments using industry-leading tools (e.g., Nessus, Tenable, Qualys).
2. Analyse vulnerability assessment results to identify and prioritize risks.
3. Develop and maintain vulnerability management processes and procedures.
4. Coordinate vulnerability remediation activities with relevant stakeholders.
5. Perform penetration testing to assess the effectiveness of security controls.
6. Stay up-to-date on the latest security threats and vulnerabilities.
Relevant Skills and Experience:-
.
· Strong understanding of vulnerability management concepts, principles, and best practices.
· Proficiency in using vulnerability assessment tools (e.g., Nessus, Tenable, Qualys).
· Experience in conducting penetration testing using various methodologies (e.g., black box, gray box, white box) and custom scripting.
· Knowledge of common security threats, vulnerabilities, and attack vectors.
· Experience with network and system security tools (e.g., firewalls, intrusion detection systems, antivirus).
· Experience with scripting languages (e.g., Python, PowerShell).
· Experience with cloud security (e.g., AWS, Azure, GCP).
· Familiar with KALI Linux & Parrot OS
· Experience with source code analysis tools.
· Experience with web application security testing.
· Experience with mobile application security testing.
· Experience with security incident response.
· Strong problem-solving and analytical skills.
· Excellent communication and interpersonal skills.
· Ability to work independently and as part of a team.
Qualifications:-
· Bachelor's degree in computer science, information technology, or a related field.
· Security certifications (e.g., CISSP, CISM, CEH, OSCP).
Experience :-
2-7 years of experience in vulnerability assessment, penetration testing including Qualys, Nessus, Kali Linux, Parrot OS
.
Engineer, Vulnerability Assessments and Penetration Testing
Posted today
Job Viewed
Job Description
We're Nagarro.
We are a Digital Product Engineering company that is scaling in a big way We build products, services, and experiences that inspire, excite, and delight. We work at scale across all devices and digital mediums, and our people exist everywhere in the world experts across 39 countries, to be exact). Our work culture is dynamic and non-hierarchical. We're looking for great new colleagues. That's where you come in
REQUIREMENTS:
- Total experience 1+ years.
- Basic understanding of Information Security principles and frameworks (ISO 27001, SOC 27002, NIST).
- Exposure to VAPT tools and techniques (via projects, labs, or internships).
- Awareness of Data Privacy regulations (GDPR, CCPA, etc.).
- Understanding of auditing concepts risk-based auditing, security control testing, evidence review.
- Familiarity with Governance, Risk & Compliance (GRC) practices.
- Exposure to data analysis and statistics for reporting and metrics.
- Basic knowledge of Software Development Life Cycle (SDLC) and its security implications.
- Understanding of IT systems and cloud platforms (AWS, Azure, GCP).
- Strong analytical, communication, and documentation skills.
- Keen attention to detail and willingness to learn audit methodologies.
- Excellent communication and collaboration skills for working across global teams.
RESPONSIBILITIES:
- Understanding functional requirements thoroughly and analysing the client's needs in the context of the project.
- Envisioning the overall solution for defined functional and non-functional requirements, and being able to define technologies, patterns and frameworks to realize it.
- Determining and implementing design methodologies and tool sets.
- Enabling application development by coordinating requirements, schedules, and activities.
- Being able to lead/support UAT and production roll outs.
- Creating, understanding and validating WBS and estimated effort for given module/task, and being able to justify it.
- Addressing issues promptly, responding positively to setbacks and challenges with a mindset of continuous improvement.
- Giving constructive feedback to the team members and setting clear expectations.
- Helping the team in troubleshooting and resolving of complex bugs.
- Coming up with solutions to any issue that is raised during code/design review and being able to justify the decision taken.
- Carrying out POCs to make sure that suggested design/technologies meet the requirements.
Security Analyst

Posted 5 days ago
Job Viewed
Job Description
As a member of the incident/Workorder/Change handling team , you will have the following accountabilities:
+ Will be working as an SME for Zscaler Support in Operations for ZIA, ZPA and ZDX.
+ Assess and orchestrate the current and planned security posture for NTT data's Security infrastructure, providing recommendations for improvement and risk reduction.
+ Identify and propose process improvements and identify opportunities for new processes and procedures to reduce risk.
+ Support security incident response as required; First line responder to reported or detected incidents.
+ Perform security research, analysis, security vulnerability assessments and penetration tests.
+ Provide security audit and investigation support
+ Monitor and track security systems for Vulnerability and respond to potential security Vulnerability.
+ Provide support for the Vulnerability management program.
+ Provide 24x7 support as operations team working in shifts.
+ Participate in on-call system administration support including but not limited to weekends, holidays and after-business hours as required to service the needs of the business.
**Skills and Experience**
+ 4 to 5 years+ in Information Security space.
+ Strong experiance in Service Now Ticketing tool, Dashboards and Integration.
+ Strong experience with Zscaler ZIA, ZPA and ZDX.
+ Strong experience with Vulnerability Management Program.
+ Strong experience with Qualys Vulnerability Management Tool.
+ Some good to have Experience with Crowdstrike EDR and SIEM.
+ Strong experience with multiple network operating systems, including two or more of the following: Cisco iOS, Juniper ScreenOS or Junos, Fortinet FortiOS, CheckPoint GAiA, or Palo Alto Networks PAN-OS; Tanium, Rapid 7, Nessus, Nitro ESM, Symantec SEP, Symantec Message labs, Thales encryption, Allgress, Forecpoint, Blue coat, Firepower, Cisco ISE, Carbon Black, Titus, Encase
+ Strong oral, written, and presentation abilities.
+ Experiance with M365 Copilot.
+ Some experience with Unix/Linux system administration.
+ Strong experience with logging and alerting platforms, including SIEM integration.
+ Current understanding of Industry trends and emerging threats; and Working Knowledge of incident response methodologies and technologies.
**Desirable**
+ Zscaler Certifications Associate and Professional for ZIA, ZPA and ZDX.
+ Excellent Experiance in Zscaler ZIA, ZPA and ZDX.
+ Experiance in Vulnerability Management Program.
+ Experiance in Qualys Vulnerability Management Tool.
+ Well-rounded background in network, host, database, and application security.
+ Experience implementing security controls in a bi-modal IT environment.
+ Experience driving a culture of security awareness.
+ Experience administering network devices, databases, and/or web application servers.
+ Professional IT Accreditations (CISM, CCSA, CCSE, JNCIA, CCNA, CISSP, CompTIA Security) Good to have.
**Abilities**
+ Non customer facing role but an ability to build strong relationships with internal teams, and security leadership, is essential act as Incident co-ordinator, for reviewing all security tools, ingesting incident data, tracking incident status, coordinating with internal and external assets to fulfill information requirements, and initiating escalation procedures.
+ Document daily work and new processes.
+ Embrace a culture of continuous service improvement and service excellence.
+ Stay up to date on security industry trends.
Security Analyst

Posted 5 days ago
Job Viewed
Job Description
As a member of the incident/Workorder/Change handling team , you will have the following accountabilities:
+ Will be working as an SME for Zscaler Support in Operations for ZIA, ZPA and ZDX.
+ Assess and orchestrate the current and planned security posture for NTT data's Security infrastructure, providing recommendations for improvement and risk reduction.
+ Identify and propose process improvements and identify opportunities for new processes and procedures to reduce risk.
+ Support security incident response as required; First line responder to reported or detected incidents.
+ Perform security research, analysis, security vulnerability assessments and penetration tests.
+ Provide security audit and investigation support
+ Monitor and track security systems for Vulnerability and respond to potential security Vulnerability.
+ Provide support for the Vulnerability management program.
+ Provide 24x7 support as operations team working in shifts.
+ Participate in on-call system administration support including but not limited to weekends, holidays and after-business hours as required to service the needs of the business.
**Skills and Experience**
+ 4 to 5 years+ in Information Security space.
+ Strong experiance in Service Now Ticketing tool, Dashboards and Integration.
+ Strong experience with Zscaler ZIA, ZPA and ZDX.
+ Strong experience with Vulnerability Management Program.
+ Strong experience with Qualys Vulnerability Management Tool.
+ Some good to have Experience with Crowdstrike EDR and SIEM.
+ Strong experience with multiple network operating systems, including two or more of the following: Cisco iOS, Juniper ScreenOS or Junos, Fortinet FortiOS, CheckPoint GAiA, or Palo Alto Networks PAN-OS; Tanium, Rapid 7, Nessus, Nitro ESM, Symantec SEP, Symantec Message labs, Thales encryption, Allgress, Forecpoint, Blue coat, Firepower, Cisco ISE, Carbon Black, Titus, Encase
+ Strong oral, written, and presentation abilities.
+ Experiance with M365 Copilot.
+ Some experience with Unix/Linux system administration.
+ Strong experience with logging and alerting platforms, including SIEM integration.
+ Current understanding of Industry trends and emerging threats; and Working Knowledge of incident response methodologies and technologies.
**Desirable**
+ Zscaler Certifications Associate and Professional for ZIA, ZPA and ZDX.
+ Excellent Experiance in Zscaler ZIA, ZPA and ZDX.
+ Experiance in Vulnerability Management Program.
+ Experiance in Qualys Vulnerability Management Tool.
+ Well-rounded background in network, host, database, and application security.
+ Experience implementing security controls in a bi-modal IT environment.
+ Experience driving a culture of security awareness.
+ Experience administering network devices, databases, and/or web application servers.
+ Professional IT Accreditations (CISM, CCSA, CCSE, JNCIA, CCNA, CISSP, CompTIA Security) Good to have.
**Abilities**
+ Non customer facing role but an ability to build strong relationships with internal teams, and security leadership, is essential act as Incident co-ordinator, for reviewing all security tools, ingesting incident data, tracking incident status, coordinating with internal and external assets to fulfill information requirements, and initiating escalation procedures.
+ Document daily work and new processes.
+ Embrace a culture of continuous service improvement and service excellence.
+ Stay up to date on security industry trends.
Security Analyst

Posted 5 days ago
Job Viewed
Job Description
**Req number:**
R6019
**Employment type:**
Full time
**Worksite flexibility:**
Onsite
**Who we are**
CAI is a global technology services firm with over 8,500 associates worldwide and a yearly revenue of $1 billion+. We have over 40 years of excellence in uniting talent and technology to power the possible for our clients, colleagues, and communities. As a privately held company, we have the freedom and focus to do what is right-whatever it takes. Our tailor-made solutions create lasting results across the public and commercial sectors, and we are trailblazers in bringing neurodiversity to the enterprise.
**Job Summary**
We are looking for a motivated Security Analyst ready to take us to the next level! If you understand security monitoring, vulnerability management, and incident response and are looking forward to your next career move, apply now
**Job Description**
We are looking for a **Security Analyst** . **This position will** be **full-time** and **Onsite Gurugram.**
**What You'll Do**
+ Ensure compliance with security standards and frameworks (e.g., ISO 27001).
+ Assist in the development and enforcement of internal security policies and procedures.
+ Conduct regular audits to ensure compliance with established security protocols and guidelines.
+ Coordination with relevant stakeholders to identify, assess, and prioritize security vulnerabilities across systems and networks.
+ Coordinate in performing vulnerability assessments and penetration testing to ensure system defense are robust.
+ Collaborate with IT teams to recommend and implement patches, fixes, or configuration changes to address vulnerabilities.
+ Continuously monitor network traffic, security logs, and systems for any signs of security breaches or irregularities.
+ Maintain and manage security tools (e.g. Next gen AV, EDR, SIEM).
+ Educate employees on information security best practices, including secure password policies and safe internet use.
**What You'll Need**
+ Bachelor's degree in information security, Computer Science, Information Technology, or a related field, or Certifications (Optional)- CEH,CISM,ISO 27001:2022 Lead Auditor.
+ 3+ years of experience in a Security Analyst or related role.
+ Hands-on experience with security monitoring, vulnerability management, and incident response.
+ AV, EDR/XDR, SIEM, Network protocol.
+ Incident Response.
+ Vulnerability Assessment.
+ Familiar with the Secure SDLC Framework.
+ Windows/Linux administration.
**Physical Demands**
+ Sedentary work that involves sitting or remaining stationery most of the time with occasional need to move around the office to attend meetings, etc.
+ Ability to conduct repetitive tasks on a computer, utilizing a mouse, keyboard, and monitor.
**Reasonable accommodation statement**
If you require a reasonable accommodation in completing this application, interviewing, completing any pre-employment testing, or otherwise participating in the employment selection process, please direct your inquiries to or (888) 824 - 8111.
Security Analyst
Posted today
Job Viewed
Job Description
Responsibilities
- Application Security Testing/Penetration Testing (Web-based, Thick client, web services, Mobile Android & IOS, Network PT)
- Static Code Analysis/ Secure Code Review
- Security defect Tracking and working closely with Developers to fix the issue
- Strong experience with the following tools – Burp Suite, Wireshark, Nmap, Metasploit, Checkmarx/Fortify, and Nessus.
- Excellent English communication skills (verbal and written)
Requirements
- 2+ years of work experience in VAPT
- CEH/ OSCP/ OSCE and ISCP certification
Why You'll Enjoy Working at Kratikal:
- Get the fast learning and exciting environment of a startup, combined with the stable work and strong performance of a bigger company. There's lots of room to learn, grow, and share your ideas.
- We also provide good benefits like health insurance, a gratuity payment, and Employees' Provident Fund (a savings plan for your future).
- We are an equal opportunity employer, where everyone has a fair chance.
About Us:
Kratikal Tech Private Limited is a leading B2B cybersecurity firm offering cutting-edge cybersecurity solutions and services such as Network Security Audits, Compliance Implementation, IoT Security, and VAPT. Serving over 150+ enterprise customers and 1825+ SMEs across industries, including E-commerce, Fintech, BFSI, NBFC, Telecom, Consumer Internet, Cloud Service Platforms, Manufacturing, and Healthcare, Kratikal is dedicated to helping organizations combat cybercriminals using advanced, technology-driven cybersecurity solutions.
The company also develops in-house cybersecurity products, including AutoSecT , competing with industry giants, alongside TSAT (Threatcop Security Awareness Training), TDMARC (Threatcop DMARC), TLMS (Threatcop Learning Management System), and TPIR (Threatcop Phishing Incident Response). These products have received numerous awards and recognitions for their innovation and effectiveness. Kratikal has been honored as the Top Cyber Security Startup at the 12th Top 100 CISO Awards. With a global reach, Kratikal collaborates with renowned organizations to secure their digital landscapes.
For more information, visit our websites at and
Security Analyst
Posted today
Job Viewed
Job Description
Greetings from TCS!
Role: Cyberark PAM
Experience range : 6 to 8 years
Location: Bengaluru, Hyderabad, Chennai, Pune, Kolkata
Job Description:
- Provide BAU support for secrets management applications like CyberArk, HashiCorp Vault.
- Collaborate with various internal and external stakeholders/support teams as required to support the application and business needs
- Work with client applications to provide integration/onboarding guidance.
- Perform BAU validations and work with support teams on automation of manual tasks.
- Document the product, process, and work with L1/2 teams to provide day to day BAU support for customer reporter issues
- Facilitate security assessments and collaborate on remediation with involved support teams to ensure safety and soundness.
- Gather requirements and provide walkthroughs to businesses on usage of various SDKs and API services available for integration with Secrets/Identity and Access Management application
- Be responsible to assess the risk and associated impact of all operational issues and change events and react quickly to escalate to technology management in a timely manner when required
- Provide on-call support in rotation as required.
- Basic experience working with one or more of these scripting languages – Python, Unix Shell, Perl & PowerShell scripting.
Be The First To Know
About the latest Vulnerability assessments Jobs in India !
Security Analyst
Posted today
Job Viewed
Job Description
Company : TCS
Experience Range : 6 to 8 Years
Location : Bengaluru, Hyderabad
Job Description:
- Design, configure, and maintain CyberArk Privileged Access Security (PAS) components including CPM, PSM, Vault, AIM etc.
- Integrate CyberArk with enterprise systems (e.g., AD, LDAP, ServiceNow, SIEM, cloud platforms).
- Automate onboarding and lifecycle management of privileged accounts using CyberArk APIs and scripts.
- Conduct PAM assessments, generate compliance reports, and assist with audits.
- Collaborate with internal teams to support secure access practices and incident response efforts.
Security Analyst
Posted 2 days ago
Job Viewed
Job Description
Years of Exp: 3-5 yrs
Budget: 20 Lacs max
Notice Period: Immediate
Location: Pune only
Work Mode: Hybrid(3 days)
Interview Round:-
1 round internal -virtual
2nd round internal-virtual
3rd Client Round
Required Skill Set:
Should have experience in VAPT,pentesting, vulnerability risk management, PCI,compliance.
Web, API, Mobile and Network, is,
Certified in CEH
Security concepts
Web VAPT
SAST
DAST
Mobile VAPT
Cloud AWS
Tools
Network Security
Security Analyst
Posted today
Job Viewed
Job Description
Join our Team
About This Opportunity
We are now looking for a Security Analyst professional. This job role is responsible for monitoring, coordination, support, management, and execution of reactive maintenance activities to ensure that services provided to customers are continuously available and performing to Service Level Agreement (SLA) performance levels. The professional will work alongside a highly skilled, diverse team, making sure that the information assets, that we are responsible to protect, are secured.
What You Will Do
Support the following systems and functions:
- Security event management on 24*7 shift
- Monitor incoming event queues for potential security incidents
- Security incident management, 1st level triaging, issues and RCA
- Perform initial investigation and triage of potential incidents; and raise or close events as applicable
- Monitor SOC ticket (or email) queue for potential event reporting from outside entities and individual users
- Support parsers and rules development for the SIEM
- Raise incidents to respective team for resolution (within SLA)
- Identity Access Management
- Create and track the access to customer environments
- Process improvements
- Identify improvements in processes and KPIs
- Adapt to improvement initiatives
- Shift handover
- Maintain SOC shift logs with relevant activity from the shift
- Document investigation results, ensuring relevant details are passed to Security Engineer for final event analysis
- Update SOC collaboration tool as necessary
- Vulnerability scanning and reporting
- Schedule the vulnerability assessment scan for desired frequency based on agreed plan for nodes in scope
- Track and provide details of the scan planned/ ongoing/ completed status as and when required
- Governance Reports
- Preparation of daily, weekly and monthly reports
You will bring
Basic knowledge of a Security Information and Event Management System (SIEM), such as McAfee, Splunk, Qradar, etc.
- Basic knowledge of a vulnerability scanning system such as Nessus, Tripwire, etc.
- Knowledge of both Linux-based and MS Windows-based systems with technical understanding and skills for analytical problem-solving
- Knowledge of IP networking
- Ability to work in shifts
- The ability to work constructively under pressure
- Ability to work both in a team as well as individually
- Knowledge sharing & collaboration skills
- Customer oriented, service minded
- Deliver results & meet customer expectations
- Excellent communication skills, English is a must
Key Qualifications:
Education:
- Graduate in Computer Science or similar
Minimum years of relevant experience:
- 1 to 2 years with at least 1 year of experience in IT security
- ITIL certification, CEH, Security +, CCNA Security or similar will be an advantage
- Basic knowledge of telecommunications networks will be an added advantage