Talent.com
Art Technology and Software - Senior VAPT Engineer - Cyber Security & Risk Management
Art Technology and Software - Senior VAPT Engineer - Cyber Security & Risk ManagementArt Technology and Software India (PVT) Ltd. • Kochi
Art Technology and Software - Senior VAPT Engineer - Cyber Security & Risk Management

Art Technology and Software - Senior VAPT Engineer - Cyber Security & Risk Management

Art Technology and Software India (PVT) Ltd. • Kochi
30+ days ago
Job description

Position Overview :

We are looking for a highly skilled and experienced Senior VAPT Engineer to join our cybersecurity team. The ideal candidate will lead vulnerability assessment and penetration testing activities, identify security weaknesses, and provide actionable recommendations to improve security posture.

This role is critical in ensuring the resilience of our clients applications, networks, and infrastructure against evolving cyber threats. The Senior VAPT Engineer will collaborate with cross-functional teams and deliver high-quality security assessments in a fast-paced, client-facing Responsibilities :

Client Engagement & Leadership :

  • Act as a trusted security advisor for multiple high-value clients.
  • Manage end-to-end security assessment projects, including scoping, execution, reporting, and remediation guidance.
  • Conduct technical and executive-level briefings to communicate findings, risks, and strategic recommendations clearly.
  • Translate complex technical vulnerabilities into business risk insights to help clients prioritize actions.
  • Collaborate closely with client stakeholders to ensure security recommendations are practical and Threat Modelling & Risk Assessment :
  • Design and maintain threat models tailored to client applications, networks, and cloud environments.
  • Perform risk assessments focusing on business impact and likelihood of exploitation.
  • Develop attack scenarios based on the latest threat intelligence and real-world attacker techniques.
  • Guide clients in integrating security into their software development lifecycle (SDLC) and cloud infrastructure Testing & Red Team Operations :
  • Lead advanced black-box, grey-box, and white-box penetration testing engagements for web applications, APIs, networks, and cloud environments.
  • Conduct sophisticated Red Team exercises to simulate targeted attack campaigns.
  • Design and develop custom exploits and testing tools to replicate specific attacker techniques.
  • Perform social engineering tests (phishing campaigns, physical security assessments) in controlled and ethical scenarios.
  • Provide detailed post-exercise analysis, including actionable remediation strategies and long term improvement Reporting & Documentation :
  • Produce clear and technically thorough vulnerability assessment and penetration testing reports.
  • Create executive-level summaries focused on business impact and compliance risks.
  • Maintain structured and up-to-date testing methodologies and playbooks.
  • Contribute to internal knowledge base, documenting research, custom tools, and successful testing & Programming Expertise :
  • Expert in vulnerability assessment and exploitation techniques across a wide range of technologies.
  • Proficient in security testing tools such as Burp Suite, Nessus, Metasploit, Nmap, OpenVAS, Cobalt Strike, Wireshark, and tcpdump.
  • Strong scripting and automation skills (Python, Bash, PowerShell) to automate repetitive testing tasks and tool workflows.
  • Capable of custom tool development and advanced exploit research to target unique client environments.
  • Strong knowledge of application security vulnerabilities (OWASP Top 10, SANS Top 25) and attack surface analysis.
  • In-depth understanding of cloud security risks, identity and access management, and container security (Docker, Engineering & OSINT Expertise :
  • Design and execute social engineering and phishing simulations tailored to client environments.
  • Perform physical security assessments through tactics like tailgating and badge cloning.
  • Apply Open Source Intelligence (OSINT) techniques to gather reconnaissance data for assessments.
  • Provide training and awareness recommendations based on assessment Attributes & Mindset :
  • Strong analytical, problem-solving, and creative thinking skills.
  • Ethical hacker mindset with a continuous drive to research emerging threats, attack techniques, and defense bypass methods.
  • Methodical and detail-oriented approach to testing with the ability to think like an attacker.
  • Strong communication and presentation skills, able to engage both technical teams and business leadership.
  • Proactively innovate by developing new tools, scripts, or methodologies to improve testing efficiency and Qualifications :
  • Certifications such as OSCP, GPEN, CREST CRT, CRTO are highly desirable.
  • Experience in DevSecOps, CI / CD pipeline security, or automated security testing frameworks.
  • Familiarity with industry compliance frameworks like PCI-DSS, GDPR, HIPAA, SOC2, and ISO 27001.
  • Prior consulting experience in a service delivery or customer-facing environment.
  • Experience with threat intelligence platforms and indicators of compromise Qualifications :
  • 7+ years of hands-on experience in Vulnerability Assessment, Penetration Testing, and security consulting.
  • Strong technical expertise in application security, network security, cloud security (AWS, Azure, GCP), and infrastructure security testing.
  • Proven experience using VAPT tools such as Burp Suite, Nessus, Qualys, Nmap, Metasploit, Nikto, OpenVAS, etc.
  • Solid knowledge of exploitation techniques, post-exploitation frameworks, and manual testing methodologies.
  • In-depth knowledge of web application vulnerabilities (OWASP Top 10) and network protocol analysis.
  • Experience conducting cloud security assessments, including misconfigurations, IAM permissions analysis, and container security.
  • Proficiency in scripting and automation (Python, Bash, PowerShell) to customize tests and tools.
  • Familiarity with security frameworks and standards such as NIST, ISO 27001, MITRE ATT&CK.
  • Strong reporting and documentation skills, able to translate technical findings into business friendly Excellent communication and stakeholder management skills, able to lead client-facing engagements.
  • Relevant certifications are a strong plus (e.g., OSCP, CREST, CISSP, CEH, GIAC GPEN).

(ref : hirist.tech)

Create a job alert for this search

Software Technology • Kochi

Related jobs
Art Technology and Software - L2 Security Analyst - SIEM Platform

Art Technology and Software - L2 Security Analyst - SIEM Platform

Confidential • India, Cochin / Kochi / Ernakulam
Job Title : Infosec L2 Security Analyst (Security Operations Center - Advanced).The L2 Security Analyst is responsible for performing advanced incident analysis, investigating security escalations ...Show more
Last updated: 19 days ago • Promoted
Senior Application Security Engineer

Senior Application Security Engineer

Sphera • Kochi, IN
Sphera is a leading global provider of enterprise software and services that enables companies to manage and optimize their environmental, health, safety and sustainability.Our mission is to create...Show more
Last updated: 5 days ago • Promoted
Lead Security Engineer

Lead Security Engineer

interface.ai • Kottayam, IN
Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show more
Last updated: 30+ days ago • Promoted
Art Technology and Software - GRC Lead

Art Technology and Software - GRC Lead

Confidential • India, Cochin / Kochi / Ernakulam
The GRC Lead will lead the strategic governance, risk management, and compliance agenda to strengthen the organization's cybersecurity resilience and ensure regulatory compliance.Acting as a key le...Show more
Last updated: 19 days ago • Promoted
Senior Security Engineer – Cloud, AI & Application Security

Senior Security Engineer – Cloud, AI & Application Security

Symosis Security • Kottayam, IN
Symosis Security is a fast-growing cybersecurity and technology firm helping global organizations strengthen their cloud, application, and AI security posture. We combine deep technical expertise wi...Show more
Last updated: 10 days ago • Promoted
Senior 3D Secure Implementation specialist

Senior 3D Secure Implementation specialist

Art Technology and Software • Kottayam, IN
Client Implementation & Onboarding : .Lead end-to-end client 3DS implementations, including onboarding, integration, testing, and go-live for 3DS solutions. Collaborate with cross-functional teams to ...Show more
Last updated: 13 days ago • Promoted
Cyber Security Engineer

Cyber Security Engineer

CareerUS Solutions • Kochi, IN
Cyber Security Engineer – Job Description.The Cyber Security Engineer is responsible for designing, implementing, and maintaining security systems to protect the organization’s computer networks, a...Show more
Last updated: 5 days ago • Promoted
Art Technology and Software - GRC Lead

Art Technology and Software - GRC Lead

Art Technology and Software India (PVT) Ltd. • Kochi
The GRC Lead will lead the strategic governance, risk management, and compliance agenda to strengthen the organization's cybersecurity resilience and ensure regulatory compliance.Acting as a k...Show more
Last updated: 30+ days ago • Promoted
Security Analyst - VAPT

Security Analyst - VAPT

Confidential • India, Cochin / Kochi / Ernakulam
The Security Testing Engineer will be responsible for executing end-to-end security testing assignments, including vulnerability assessment, penetration testing, secure code reviews, and configurat...Show more
Last updated: 18 days ago • Promoted
Senior 3D Props Artist (Unreal Engine)-Remote

Senior 3D Props Artist (Unreal Engine)-Remote

iBLOXX Studios DMCC • Kottayam, IN
Remote
Senior 3D Props Artist (Unreal Engine).Full-Time | Remote | iBLOXX Studios DMCC.You will craft high-quality buildings, weapons, props, and environmental assets. Model, texture, and optimize detailed...Show more
Last updated: 5 days ago • Promoted
Senior Manager IS Cyber Culture & Awareness

Senior Manager IS Cyber Culture & Awareness

Mashreq • Kottayam, IN
The Cyber Security Awareness Specialist plays a critical role in maturing Mashreq Bank’s cyber security awareness program. The specialist is responsible for fostering a culture where Cybersecurity i...Show more
Last updated: 16 days ago • Promoted
Senior Security Consultant

Senior Security Consultant

Claranet India • Kochi, IN
Founded at the beginning of the dot.CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business. Since then, Claranet has grown from an Internet Service Provider (ISP)...Show more
Last updated: 30+ days ago • Promoted
Art Tech Group - Cyber Security Sales Manager - APAC Market

Art Tech Group - Cyber Security Sales Manager - APAC Market

Art Technology and Software India (PVT) Ltd. • Kochi, India
The Cybersecurity Sales Manager will lead and execute sales strategy for cybersecurity products and services across international markets, focusing on enterprise and mid-market clients.The role req...Show more
Last updated: 30+ days ago • Promoted
Technical Artist – Casino Gaming

Technical Artist – Casino Gaming

Ruby Seven Studios, Inc. • Kochi, Kerala, India
As a Technical Artist with 1-3 years of experience, you will act as the crucial link between our Art and Engineering teams. You will be responsible for ensuring art assets are efficiently integrated...Show more
Last updated: 1 day ago • Promoted
Security Analyst - VAPT

Security Analyst - VAPT

Soffit Infrastructure Services (P) Ltd • Kochi, Kerala, India
The Security Testing Engineer will be responsible for executing end-to-end security testing assignments, including vulnerability assessment, penetration testing, secure code reviews, and configurat...Show more
Last updated: 16 days ago • Promoted
Senior Manager - VAPT

Senior Manager - VAPT

B2N • Kerala
Key Responsibilities : - Conduct network and system vulnerability assessments using automated tools and manual testing techniques. Perform penetration testing to iden...Show more
Last updated: 30+ days ago • Promoted
Art Technology and Software - L2 Security Analyst - SIEM Platform

Art Technology and Software - L2 Security Analyst - SIEM Platform

Art Technology and Software India (PVT) Ltd. • Kerala
Job Title : Infosec L2 Security Analyst (Security Operations Center - Advanced) Location : From Kochi Office (Onsite) Show more
Last updated: 30+ days ago • Promoted
Lead Security Engineer

Lead Security Engineer

Arcana • Kottayam, IN
As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show more
Last updated: 30+ days ago • Promoted