Sec1 is an AI-driven cybersecurity company specialising in application and cloud security, vulnerability analytics and predictive threat intelligence. We partner with global enterprises to secure their software supply chains, network infrastructure and telecom ecosystems through data-driven vulnerability research and intelligent automation.
Role Overview
We are seeking a Security Researcher with 3–5 years of experience in Vulnerability Assessment and Penetration Testing (VA / PT) of large-scale telecom, broadband and enterprise network environments . The candidate will conduct deep-dive testing, research network protocol vulnerabilities, validate exposures and produce actionable remediation guidance in line with Sec1’s AI-driven methodologies.
Key Responsibilities :
- Conduct Vulnerability Assessments and Penetration Tests across network infrastructure and telecom ecosystems .
- Perform active and passive reconnaissance , network enumeration and exploitation under defined Rules of Engagement (RoE).
- Evaluate routing and isolation mechanisms (VRF, MPLS, BGP, OSPF) and validate data-plane and control-plane separation.
- Identify misconfigurations, outdated firmware, weak authentication and insecure management interfaces.
- Assess GTP, DNS, DHCP, SNMP, TR-069 and other telecom service protocols for exposure and misuse.
- Execute SIM-based network testing to validate subscriber isolation and control-plane integrity.
- Develop reproducible Proofs of Concept (PoC) and document findings with CVE / CWE mapping and CVSS scoring.
- Collaborate with AI Threat Intelligence teams to correlate findings with predictive vulnerability models.
- Participate in remediation workshops , assist in mitigation validation, and support re-testing.
- Continuously research new attack vectors, emerging threats and exploit trends across telecom and network domains.
Required Skills and Qualifications
3–5 years of hands-on experience in network or telecom security testing.Strong knowledge of TCP / IP, GTP, MPLS, BGP, OSPF, VLAN and VPN architectures.Experience with Wi-Fi security testing , including captive portals, rogue APIs and encryption validation.Proficiency with security tools like Nmap, Nessus, Burp Suite, Wireshark, Metasploit, Scapy, Hydra and custom scripting (Python / Bash).Familiarity with CVE analysis , CIS / NIST benchmarks and ISO 27001 controls.Good understanding of IPv6 security , DNS / DHCP behavior and control-plane protections.Excellent analytical and reporting skills — able to translate technical findings into business-impact language.Hands-on experience preparing VA / PT reports and dashboards for enterprise or telecom clients.Certifications (preferred but not mandatory) : OSCP, CEH, GPEN, GWAPT, CCNA Security, or equivalent.Soft Skills
Strong written and verbal communication skills.Self-driven, with the ability to work in field-testing environments and remote collaboration setups.Strong problem-solving and research mindset.Team player with accountability and discipline in documentation and testing protocols.