Talent.com
No longer accepting applications
VP, Application Security & Penetration Testing

VP, Application Security & Penetration Testing

NopalCyberHyderabad, Republic Of India, IN
26 days ago
Job description

Role Overview

As VP / AVP – Offensive security services, you will provide strategic and technical leadership for NopalCyber’s Offensive Security practice. You will lead and evolve core services such as Penetration Testing, Red Teaming, Application Security Assessments, BAS, AI Security and Threat Simulation. This role requires deep technical expertise, engagement leadership, and the ability to influence C-level clients while driving operational excellence across service delivery.

You will be accountable for the scaling, maturity, and quality of offensive security services across multiple client environments, and responsible for shaping the offensive security roadmap, delivery methodologies, and team capability development.

Key Responsibilities

Own and lead the Offensive Security & VAPT function, including service line P&L, strategic delivery roadmap, team management, and client satisfaction.

Architect and oversee enterprise-scale VAPT and red team engagements, driving delivery excellence across infrastructure, applications, APIs, mobile, and cloud environments.

Engage directly with senior client stakeholders (CISOs, CTOs, Risk Leaders) to translate business risk into actionable technical assessments and recommend mitigation strategies.

Define testing frameworks and reusable methodologies to standardize and elevate delivery across projects, including red teaming, threat emulation, and advanced attack simulations.

Direct a high-performing offensive security team, including Red Teamers, AppSec specialists, and security testers, ensuring their continuous development and engagement.

Lead strategic threat modeling and secure design reviews in collaboration with clients' architecture and engineering teams, integrating security into early lifecycle stages.

Govern quality of deliverables, including technical findings, risk summaries, and executive-ready reports, ensuring alignment with business impact and remediation feasibility.

Drive operational excellence across testing engagements, ensuring timelines, SLAs, and KPIs (e.G., MTTR, false positive rate, TTP coverage) are consistently met or exceeded.

Spearhead R&D initiatives to evaluate emerging threats, tools, and offensive capabilities relevant to client environments and evolving attack surfaces.

Collaborate with cross-functional internal teams (MXDR, GRC, Incident Response, Product) to align offensive security outputs with broader risk and advisory services.

Represent NopalCyber at industry forums, client executive reviews, and security advisory boards as a trusted expert in offensive cybersecurity.

Required Qualifications

  • Bachelor's degree in Engineering, Computer Science, or a related field;

a Master’s is preferred.

15–18 years of experience in cybersecurity with at least 5 years in leadership roles across VAPT, Red Team, or Application Security domains.

Demonstrated experience managing technical delivery and strategic outcomes for multiple clients or large-scale programs.

Preferred Certifications

Mandatory : OSCP, CEH

Highly Desirable : OSCE, OSWE, GPEN, GWAPT, GCIH, GXPN, CISSP

Desired Skills

In-depth understanding of modern attack vectors, OWASP Top 10, MITRE ATT&CK, and real-world exploitation techniques.

Strong command of tools such as Burp Suite Pro, Cobalt Strike, Metasploit, Nmap, Kali Linux, AppDetective, and WebInspect.

  • Proficiency in cloud security testing across AWS, Azure, or GCP;
  • experience with containerized and microservices-based environments.

    Hands-on exposure to reviewing or attacking applications built using C++, Java, Python, Go, JavaScript, and working within Kubernetes or CI / CD pipelines.

    Capability to present complex technical findings in clear, business-relevant language to executive stakeholders.

    Leadership Attributes

    Strategic thinker with a track record of scaling cybersecurity programs or service lines.

    Proven ability to lead, mentor, and retain high-performing technical teams.

    Exceptional client engagement and communication skills.

    Ability to influence and collaborate across teams and functions to drive security outcomes.

    #PenetrationTesting #RedTeamOperations #ApplicationSecurity #OffensiveSecurity #CybersecurityLeadership #CloudSecurity #ThreatModeling #OWASP #StakeholderManagement

    #OSCP #MITREATTACK

    Create a job alert for this search

    Application Security • Hyderabad, Republic Of India, IN

    Related jobs
    • Promoted
    Penetration Tester

    Penetration Tester

    ValueLabsGreater Hyderabad Area, India
    Note : Need only Immediate Joiners.We are seeking a skilled and detail-oriented Security Test Engineer to join our cybersecurity team. The ideal candidate will have a strong foundation in application...Show moreLast updated: 5 days ago
    • Promoted
    Security Test Specialist

    Security Test Specialist

    OLYMPUS MEDICAL SYSTEMS INDIA PRIVATE LIMITEDhyderabad, telangana, in
    BS, Master or equivalent degree in Computer Engineering, Software Engineering, Cybersecurity or other related fields.Minimum of 6 years of professional experience within Information Technology, Sof...Show moreLast updated: 4 days ago
    • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    Alp Consulting Ltd.hyderabad, telangana, in
    Certifications If Any • : Application Security.Experience with managing SAST Tools configuration (Checkmarx, Coverity, Fortify). Experience with managing DAST Tools (Invicti, Rapid7, AppScan).Experie...Show moreLast updated: 5 days ago
    • Promoted
    Product Security Test Engineer

    Product Security Test Engineer

    OLYMPUS MEDICAL SYSTEMS INDIA PRIVATE LIMITEDHyderabad, Republic Of India, IN
    BS, Master or equivalent degree in Computer Engineering, Software Engineering, Cybersecurity or other related fields.Minimum of 6 years of professional experience within Information Technology, Sof...Show moreLast updated: 4 days ago
    • Promoted
    Manager, Offensive Security & Penetration Testing

    Manager, Offensive Security & Penetration Testing

    ConfidentialHyderabad / Secunderabad, Telangana
    Then help us create the future with one of the worlds largest media & entertainment companies.Deliver high quality security assessment reports to stakeholders and drive change to improve the securi...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Testing Professional

    Application Security Testing Professional

    OLYMPUS MEDICAL SYSTEMS INDIA PRIVATE LIMITEDHyderabad, Republic Of India, IN
    BS, Master or equivalent degree in Computer Engineering, Software Engineering, Cybersecurity or other related fields.Minimum of 6 years of professional experience within Information Technology, Sof...Show moreLast updated: 4 days ago
    • Promoted
    SAP Application Security Lead

    SAP Application Security Lead

    ConfidentialHyderabad / Secunderabad, Telangana, India
    Bachelor's degree in Computer Science, Management Information Systems, a related technical field, or equivalent practical experience. SAP Security across various applications, including but not limi...Show moreLast updated: 8 days ago
    • Promoted
    penetration testing

    penetration testing

    ConfidentialHyderabad / Secunderabad, Telangana
    Yrs of penetration testing hands on experience Detailed JD (Roles and Responsibilities) Minimum Experience : 4+Yrs of penetration testing hands on experience. Hands on manual pen testing experience -...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    FoodsmartHyderabad, IN
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 24 days ago
    • Promoted
    Penetration Tester

    Penetration Tester

    NTT DATA, Inc.Hyderabad, Telangana, India
    The Penetration Tester is a seasoned subject matter expert, responsible for assessing and evaluating the security posture of the company's information systems, networks, applications and infrastruc...Show moreLast updated: 18 days ago
    • Promoted
    Application Security Tester

    Application Security Tester

    ConfidentialHyderabad / Secunderabad, Telangana, India
    Zelis is modernizing the healthcare financial experience in the United States (U.We serve more than 750 payers, including the top five national health plans, regional health plans, TPAs and million...Show moreLast updated: 8 days ago
    • Promoted
    Cybersecurity Tester / Penetration Tester

    Cybersecurity Tester / Penetration Tester

    ValueLabshyderabad, telangana, in
    This is a deeply technical, hands-on leadership role for a seasoned penetration tester.You will not just run scans; you will architect our security testing strategy from the ground up, conduct soph...Show moreLast updated: 15 days ago
    • Promoted
    Senior Security Test Engineer

    Senior Security Test Engineer

    ValueLabshyderabad, telangana, in
    We have an urgent requirement for a ".Please find below the job description for your reference.As the Senior Security Test Engineer, you will be the lead offensive security expert responsible for p...Show moreLast updated: 14 days ago
    • Promoted
    Application Security Specialist

    Application Security Specialist

    ValueLabsHyderabad, Republic Of India, IN
    This is a deeply technical, hands-on leadership role for a seasoned penetration tester.You will be responsible for breaking our systems before the bad guys do, safeguarding our assets, our clients'...Show moreLast updated: 15 days ago
    • Promoted
    Application Security Architect

    Application Security Architect

    QualiZealhyderabad, telangana, in
    Application Security Architect.This role will collaborate with engineering, DevOps, Operations, InfoSec teams to embed security into the software development lifecycle (SDLC), define secure archite...Show moreLast updated: 5 days ago
    • Promoted
    Application Security Testing Engineer

    Application Security Testing Engineer

    ConfidentialHyderabad / Secunderabad, Telangana
    ENGINEERJob Profile Details : Execute complex Application Security Code Review projects for different types of applications including mobile, web services, web apps and thick-client.Execute Applicat...Show moreLast updated: 30+ days ago
    • Promoted
    Sr. Security Engineer, Penetration Testing

    Sr. Security Engineer, Penetration Testing

    ConfidentialHyderabad / Secunderabad, Telangana
    Execute penetration testing engagements against a variety of web applications / services and software.Develop and execute attack strategies to simulate real-world attacks by threat actors.Ability to...Show moreLast updated: 30+ days ago
    • Promoted
    Application Security Testing Engineer(Code Review)

    Application Security Testing Engineer(Code Review)

    ConfidentialMumbai, Kolkata, Hyderabad / Secunderabad, Telangana
    Involve in application architecture understanding, vulnerability identification and control analysis.Perform likelihood determination, impact analysis, and risk determination.Provide risk prioritiz...Show moreLast updated: 30+ days ago