Talent.com
No longer accepting applications
Senior Vulnerability Assessment And Penetration Testing

Senior Vulnerability Assessment And Penetration Testing

Art Technology and SoftwareCochin, Republic Of India, IN
24 days ago
Job description

Responsibilities

  • Client Engagement & Leadership
  • Act as a trusted security advisor for multiple high-value clients.
  • Manage end-to-end security assessment projects, including scoping, execution, reporting, and remediation guidance.
  • Conduct technical and executive-level briefings to communicate findings, risks, and strategic recommendations clearly.
  • Translate complex technical vulnerabilities into business risk insights to help clients prioritize actions.
  • Collaborate closely with client stakeholders to ensure security recommendations are practical and actionable.
  • Advanced Threat Modelling & Risk Assessment
  • Design and maintain threat models tailored to client applications, networks, and cloud environments.
  • Perform risk assessments focusing on business impact and likelihood of exploitation.
  • Develop attack scenarios based on the latest threat intelligence and real-world attacker techniques.
  • Guide clients in integrating security into their software development lifecycle (SDLC) and cloud infrastructure designs.
  • Penetration Testing & Red Team Operations
  • Lead advanced black-box, grey-box, and white-box penetration testing engagements for web applications, APIs, networks, and cloud environments.
  • Conduct sophisticated Red Team exercises to simulate targeted attack campaigns.
  • Design and develop custom exploits and testing tools to replicate specific attacker techniques.
  • Perform social engineering tests (phishing campaigns, physical security assessments) in controlled and ethical scenarios.
  • Provide detailed post-exercise analysis, including actionable remediation strategies and long term improvement plans.
  • Comprehensive Reporting & Documentation
  • Produce clear and technically thorough vulnerability assessment and penetration testing reports.
  • Create executive-level summaries focused on business impact and compliance risks.
  • Maintain structured and up-to-date testing methodologies and playbooks.
  • Contribute to internal knowledge base, documenting research, custom tools, and successful testing strategies.
  • Technical & Programming Expertise
  • Expert in vulnerability assessment and exploitation techniques across a wide range of technologies.
  • Proficient in security testing tools such as Burp Suite, Nessus, Metasploit, Nmap, OpenVAS, Cobalt Strike, Wireshark, and tcpdump.
  • Strong scripting and automation skills (Python, Bash, PowerShell) to automate repetitive testing tasks and tool workflows.
  • Capable of custom tool development and advanced exploit research to target unique client environments.
  • Strong knowledge of application security vulnerabilities (OWASP Top 10, SANS Top 25) and attack surface analysis.
  • In-depth understanding of cloud security risks, identity and access management, and container security (Docker, Kubernetes).
  • Social Engineering & OSINT Expertise
  • Design and execute social engineering and phishing simulations tailored to client environments.
  • Perform physical security assessments through tactics like tailgating and badge cloning.
  • Apply Open Source Intelligence (OSINT) techniques to gather reconnaissance data for assessments.
  • Provide training and awareness recommendations based on assessment outcomes.
  • Professional Attributes & Mindset
  • Strong analytical, problem-solving, and creative thinking skills.
  • Ethical hacker mindset with a continuous drive to research emerging threats, attack techniques, and defense bypass methods.
  • Methodical and detail-oriented approach to testing with the ability to think like an attacker.
  • Strong communication and presentation skills, able to engage both technical teams and business leadership.
  • Proactively innovate by developing new tools, scripts, or methodologies to improve testing efficiency and depth.

Qualifications

  • 7+ years of hands-on experience in Vulnerability Assessment, Penetration Testing, and security consulting.
  • Strong technical expertise in application security, network security, cloud security (AWS, Azure, GCP), and infrastructure security testing.
  • Proven experience using VAPT tools such as Burp Suite, Nessus, Qualys, Nmap, Metasploit, Nikto, OpenVAS, etc.
  • Solid knowledge of exploitation techniques, post-exploitation frameworks, and manual testing methodologies.
  • In-depth knowledge of web application vulnerabilities (OWASP Top 10) and network protocol analysis.
  • Experience conducting cloud security assessments, including misconfigurations, IAM permissions analysis, and container security.
  • Proficiency in scripting and automation (Python, Bash, PowerShell) to customize tests and tools.
  • Familiarity with security frameworks and standards such as NIST, ISO 27001, MITRE ATT&CK.
  • Strong reporting and documentation skills, able to translate technical findings into business friendly recommendations.
  • Excellent communication and stakeholder management skills, able to lead client-facing engagements.
  • Relevant certifications are a strong plus (e.G., OSCP, CREST, CISSP, CEH, GIAC GPEN).
  • Preferred Qualifications :

  • Certifications such as OSCP, GPEN, CREST CRT, CRTO are highly desirable.
  • Experience in DevSecOps, CI / CD pipeline security, or automated security testing frameworks.
  • Familiarity with industry compliance frameworks like PCI-DSS, GDPR, HIPAA, SOC2, and ISO 27001.
  • Prior consulting experience in a service delivery or customer-facing environment.
  • Experience with threat intelligence platforms and indicators of compromise (IoCs).
  • Create a job alert for this search

    Senior Vulnerability • Cochin, Republic Of India, IN

    Related jobs
    • Promoted
    Vulnerability Assessment Lead

    Vulnerability Assessment Lead

    Cubical Operations LLPRepublic Of India, IN
    Cybersecurity / Information Security.We are looking for a highly skilled and motivated.The ideal candidate will have a solid background in. Vulnerability Assessment and Penetration Testing.VAPT) acr...Show moreLast updated: 30+ days ago
    • Promoted
    Penetration Tester

    Penetration Tester

    airtelNew Delhi, Republic Of India, IN
    This is an opportunity for a highly motivated individual to join a high energy team of security administrators responsible for managing global security infrastructure. This position is to be part of...Show moreLast updated: 4 days ago
    • Promoted
    Senior Site Reliability Engineer- ELK Expert

    Senior Site Reliability Engineer- ELK Expert

    iVedha Inc.Nagpur, IN
    Senior Site Reliability Engineer (SRE) – ELK Expert | Platform Engineering Practice.Must be available to work in the EST (US / Canada) Time Zone. Are you a Senior Site Reliability Engineer (SRE) with ...Show moreLast updated: 30+ days ago
    • Promoted
    Vulnerability Analyst

    Vulnerability Analyst

    ConfidentialIndia
    At EG, we develop software for our customers so they can focus on their profession.Our industry-specific software is built by peers from the industry, and backed by the scale of EG for stability, i...Show moreLast updated: 8 days ago
    • Promoted
    Illumio- Zero Trust Microsegmentation

    Illumio- Zero Trust Microsegmentation

    CareerXperts ConsultingNagpur, IN
    Hiring : Manager - Zero Trust Microsegmentation.Bengaluru | 💼 5+ Years Experience.Lead Illumio microsegmentation implementations. Design & deploy Zero Trust policies.Analyze network infrastructure &...Show moreLast updated: 16 days ago
    • Promoted
    Senior Associate Level | Camunda BPM

    Senior Associate Level | Camunda BPM

    Publicis SapientNagpur, IN
    We’re Hiring – Senior Associate Level 2 | Camunda BPM Developer.BNG | HYD | PUN | MUM | CHN | NOIDA | GGN (Hybrid — 3 days WFO). Immediate to 2 Weeks Joiners Only.Unit tests, code reviews, performan...Show moreLast updated: 3 days ago
    • Promoted
    Sr Threat Detection Engineer

    Sr Threat Detection Engineer

    Insight GlobalIndia, India
    Exact compensation may vary based on several factors, including skills, experience, and education.We are seeking a highly experienced Senior Detection Engineer to lead the development and optimizat...Show moreLast updated: 17 days ago
    • Promoted
    Site Reliability Engineer

    Site Reliability Engineer

    CapgeminiNagpur, IN
    Choosing Capgemini means choosing a company where you will be empowered to shape your career in the way you’d like, where you’ll be supported and inspired by a collaborative community of colleagues...Show moreLast updated: 14 days ago
    • Promoted
    Senior Site Reliability Engineer

    Senior Site Reliability Engineer

    IntraEdgeNagpur, IN
    Strong leadership and people management skills.Exceptional technical proficiency in Pearson's technology stack.Strategic thinking with a focus on long-term operational excellence.Champion operation...Show moreLast updated: 17 days ago
    Vulnerability Management

    Vulnerability Management

    Trigent Software Private LimitediNDIA, KA, India
    Quick Apply
    Summary : As part of information security Vulnerability and Compliance management team, manage and support operational aspects of security / compliance scans and provide remediation support / guidance th...Show moreLast updated: 4 days ago
    • Promoted
    AMS Verification Engineer / Lead

    AMS Verification Engineer / Lead

    eInfochips (An Arrow Company)Nagpur, IN
    Minimum 6 years relevant experience is required.Bangalore, Hyderabad, Noida, Chennai, Ahmedabad, Pune.Min 6 Years of overall experience in ASIC Verification. Should have worked on AMS Verification f...Show moreLast updated: 30+ days ago
    • Promoted
    Vulnerability Assessment

    Vulnerability Assessment

    PayatuPune, Republic Of India, IN
    Are you interested in automating the build and deployment process of the application with ensuring the application security? If yes, then Payatu is the place for you. We are always in search of pass...Show moreLast updated: 4 days ago
    • Promoted
    AI Inference Kernel Engineer (CUDA)

    AI Inference Kernel Engineer (CUDA)

    PhinityNagpur, IN
    We look forward to when AI can discover the next quantum AI accelerator, or when AI can make RL much more compute-efficient. We want to enable AI to bootstrap its own intelligence, to discover new c...Show moreLast updated: 13 days ago
    • Promoted
    Vulnerability Research Engineer

    Vulnerability Research Engineer

    Viable Search ConsultantsPune, Republic Of India, IN
    This role will be looking for information about various kinds of security vulnerabilities, known or unknown, including zero-day vulnerabilities and enriching the CS security vulnerability detection...Show moreLast updated: 1 day ago
    • Promoted
    Vulnerability Assessment and Automation Engineer

    Vulnerability Assessment and Automation Engineer

    Viable Search ConsultantsPune, Republic Of India, IN
    This role will be looking for information about various kinds of security vulnerabilities, known or unknown, including zero-day vulnerabilities and enriching the CS security vulnerability detection...Show moreLast updated: 1 day ago
    • Promoted
    Vulnerability SOC Engineer

    Vulnerability SOC Engineer

    ConfidentialIndia
    The Vulnerability Engineer / SOC Engineer L1 / 2 will be responsible for monitoring and analyzing security alerts to identify and respond to potential threats in real-time. Knowledge of correct teams fo...Show moreLast updated: 8 days ago
    • Promoted
    Penetration Tester

    Penetration Tester

    NTT DATA, Inc.Nagpur, Maharashtra, India
    Your day at NTT DATA The Penetration Tester is a seasoned subject matter expert, responsible for assessing and evaluating the security posture of the company's information systems, networks, applic...Show moreLast updated: 18 days ago
    • Promoted
    Contractor Security Engineer Level 3 – GRC Tech Solutions

    Contractor Security Engineer Level 3 – GRC Tech Solutions

    MindlanceNagpur, IN
    Remote Role | Contractor Security Engineer Level 3 – GRC Tech Solutions.This position focuses on enabling process clarity, automation, and efficiency while creating insights that empower our busine...Show moreLast updated: 18 days ago