Position : Senior Consultant
Location : Pune
Job Type : Full Time
Work Type : Onsite
Job Description : Overview :
TekWissen is a global workforce management provider throughout India and many other countries in the world. The below job opportunity is one of our clients which has been a one-stop solution for professional digital services.
Infrastructure VA / PT :
- Map out a network, discover ports and services running on the different exposed network and security devices
- Conduct penetration test and launch exploits using NMap, Nessus, Metasploit, Backtrack, Kali Linux penetration testing tools sets
- Research and maintain proficiency in computer network exploitation, tools, techniques, countermeasures, and trends in computer network vulnerabilities, data hiding, network security, and encryption
- Analyze scan reports and recommend remediation / mitigation actions
- Keep track of new vulnerabilities for all relevant technology platforms
- Audit configuration of OS, Network and Security devices
- Provide Cloud Infrastructure Assessments
- Providing client specific reports
- Understand IT infrastructure and traffic flows to manage VAPT exercises
- Communicate with the customer to understand their needs and address concerns
Application VA / PT
Conduct Web, Mobile (iOS + Android) and Thickclient application assessments based on industry standards / benchmarks like OWASPConduct assessments using relevant automated tools and compliment with manual reviewsSocial Engineering
Conduct phishing and spear-phishing simulated assessments, and techniques in the social engineering domain to assess the adequacy of awareness and training programs in organizations.Roles & Responsibilities
Conduct Vulnerability Assessments & Black-box / Grey-box Penetration tests on System, Network infrastructure, Cloud, Web, APIs (REST & SOAP), Mobile (Android +iOS) & Thick-client applications using various open source, commercial tools and manual testing methods.Qualification :
Bachelors degree in Computer Science, Information Technology, or a related field.8 - 10 years of relevant ExperienceCEH CertifiedCREST / OSCP Certifications will be an added advantageMSSP (Managed Security Services Provider) experience supporting multiple customers infrastructureBroad background of networks, operating systems (Window, Unix, Linux), firewalls and security engineering conceptsKnowledge of scripting languages (C++, C#, Perl, CGI, HTML, Java, TCL, Shell) will be added advantageWilling to travel overseas on projectRequired Skills :
Experience on Network Vulnerability Scanning and Penetration TestingExperience on Cloud Infrastructure Security AssessmentsExperience with Nessus, Net Cat, NMAP, Kali, Metasploit, HPing, Frida, Objection, Drozer and similar tools set like RetinaCS, QualysKnowledge of Network Security technology in areas of Firewall, IPS, VPN, Gateway security solutions (DNS, VLAN, proxy, web filtering)In-depth understanding on Common Vulnerability Exposure (CVE) / Cert advisory databaseAnalytical thinker willing to think out of the box to resolve customer impacting situations on first contact;understand customer risk profile
Knowledge in RPF preparation, Solution architecture, VAPT review and presentation in customer arenaStrong Presentation and Documentation Skills.Self-starter and ability to deliver under defined timelines, team player with leadership capabilitiesTekWissen® Group is an equal opportunity employer supporting workforce diversity.