Talent.com
No longer accepting applications
Apply Now! Sr. VAPT Consultant

Apply Now! Sr. VAPT Consultant

St. FoxIndia
5 hours ago
Job description

St. Fox, a leading consultancy in the realm of Cybersecurity and advanced tech solutions, is recognized for its pioneering approach to digital security and innovation. Driven by the ethos "Innovate Fearlessly, Protect Relentlessly," we empower businesses globally to secure their operations and maximize efficiency through cutting-edge technology strategies.

Position Summary : We are seeking an experienced and highly skilled Senior VAPT Consultant with 8+ years of hands-on experience in offensive security. The ideal candidate will possess deep technical expertise in assessing and securing complex enterprise environments, including Active Directory, web applications, networks, cloud infrastructures, APIs, and advanced adversarial simulation. This role demands a strong ability to lead engagements, mentor junior consultants, deliver high-quality technical reports, and interface with clients to provide both tactical and strategic security recommendations.

Key Responsibilities :

  • Lead and conduct end-to-end penetration testing engagements across web applications, mobile apps, APIs, networks, WiFi, Active Directory, and cloud platforms (AWS, Azure, GCP).
  • Execute red team and adversary simulation exercises, including phishing, lateral movement, persistence, and data exfiltration scenarios.
  • Perform advanced Active Directory exploitation (on-prem, Azure AD, hybrid environments) including Kerberoasting, unconstrained delegation, golden / silver tickets, and modern AD attack chains.
  • Assess and exploit cloud-native vulnerabilities, IAM misconfigurations, container / Kubernetes environments, and serverless workloads.
  • Conduct wireless / WiFi pentesting (WEP / WPA / WPA2 / WPA3 attacks, rogue AP, evil twin).
  • Perform basic to intermediate reverse engineering and exploit development for binaries, scripts, and mobile apps.
  • Utilize frameworks and tools such as Burp Suite Pro, ZAP, Caido, Metasploit, Havoc / Mythic / Sliver C2, BloodHound, Mimikatz, Impacket, and custom scripts / exploits.
  • Draft and review detailed penetration testing reports, Statements of Work (SoW), Rules of Engagement (RoE), and executive presentations.
  • Mentor and guide junior consultants, providing technical leadership, peer review, and training.
  • Work closely with clients to communicate findings, risk implications, remediation strategies, and overall security posture improvements.

Required Skills & Qualifications

  • 8+ years of proven experience in vulnerability assessment, penetration testing, and red team operations.
  • Strong expertise in Active Directory exploitation and defenses (on-prem, hybrid, Azure AD).
  • Advanced skills in web application, API, and network penetration testing.
  • Proficiency in cloud penetration testing (AWS, Azure, GCP) including IAM, storage, networking, and serverless security.
  • Strong understanding of exploit development, reverse engineering, and evasion techniques.
  • Proficiency with industry-standard tools and custom exploit / script development.
  • Solid knowledge of enterprise security technologies (SIEM, SOAR, Firewalls, IDS / IPS, AV / EDR / XDR).
  • Strong technical writing and client-facing communication skills, including report drafting and delivery.
  • Experience in leading teams, reviewing deliverables, and mentoring junior consultants.
  • Preferred Qualifications :

  • Offensive security certifications such as OSCP, OSEP, OSED, OSWE, OSEE, CRTP, CRTE, CREST, GXPN, or equivalent.
  • Experience in IoT, hardware, and automotive penetration testing.
  • Prior experience in adversary emulation and purple team exercises.
  • Familiarity with DevSecOps pipelines and Secure SDLC integration.
  • What We Offer :

  • Competitive salary and benefits package.
  • Opportunities for professional growth and advancement.
  • Exposure to cutting-edge technologies and projects.
  • A collaborative and supportive work environment.
  • How to Apply : Interested candidates should submit a detailed resume and a cover letter outlining their qualifications and experience relevant to the role applied for. Applications should be sent via our careers portal or to hr@stfox.com

    St. Fox is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

    Create a job alert for this search

    Apply Now Consultant • India