Talent.com
Senior Penetration Tester

Senior Penetration Tester

ConfidentialPune, India
6 days ago
Job description

Description and Requirements

'At BMC trust is not just a word - it's a way of life!'

We are an award-winning, equal opportunity, culturally diverse, fun place to be. Giving back to the community drives us to be better every single day. Our work environment allows you to balance your priorities, because we know you will bring your best every day. We will champion your wins and shout them from the rooftops. Your peers will inspire, drive, support you, and make you laugh out loud!

We help our customers free up time and space to become an Autonomous Digital Enterprise that conquers the opportunities ahead - and are relentless in the pursuit of innovation!

The IZOT product line includes BMC's Intelligent Z Optimization & Transformation products, which help the world's largest companies to monitor and manage their mainframe systems. The modernization of mainframe is the beating heart of our product line, and we achieve this goal by developing products that improve the developer experience, the mainframe integration, the speed of application development, the quality of the code and the applications' security, while reducing operational costs and risks. We acquired several companies along the way, and we continue to grow, innovate, and perfect our solutions on an ongoing basis.

We are looking for a Senior Penetration Tester to take ownership of security testing for enterprise products deployed on mainframe environments. In this role, you will assess application-layer security risks, identify vulnerabilities in product implementations, and lead secure architecture reviews. The ideal candidate brings deep offensive security skills along with familiarity in testing applications running on or integrated with IBM mainframe systems.

Here is how, through this exciting role, YOU will contribute to BMC's and your own success :

Primary Roles And Responsibilities

  • Lead security assessments of applications and solutions deployed on IBM z / OS-based environments.
  • Conduct penetration testing and red teaming exercises targeting mainframe environments and the surrounding application ecosystem.
  • Perform code-assisted and black-box penetration testing against enterprise applications / systems interacting with RACF, DB2, CICS, MQ, and related subsystems.
  • Identify risks in authentication, authorization, data handling, and communications within mainframe-integrated products.
  • Create threat models and guide product teams in mitigating high-impact vulnerabilities early in the SDLC.
  • Drive remediation efforts through hands-on collaboration and secure design guidance.
  • Author technical reports and deliver executive summaries tailored to various audiences.
  • Stay current on vulnerabilities, exploits, and testing techniques relevant to legacy enterprise technologies and mainframe ecosystems..
  • Assess common integration patterns (SOA, REST / JSON, MQ) for security risks.

To ensure you're set up for success, you will bring the following skillset & experience :

  • 8+ years of experience in penetration testing, with a specialization in systems / applications integrating with mainframe environments.
  • Deep knowledge of mainframe communication protocols and security mechanisms.
  • Demonstrated experience conducting red team-style assessments or advanced threat emulation on mainframe systems.
  • Proficient in tools such as :
  • Mainframe utilities : REXX, ISPF panels, NetView
  • Security tools : Nmap, Burp Suite, Wireshark, custom scripts
  • Strong scripting and automation skills (Python, REXX, Bash, or similar).
  • Strong communication and leadership skills, with a proven ability to lead technical teams or projects.
  • Experience producing board-level reports and presenting findings to senior stakeholders.
  • Exposure to hybrid environments (mainframe to cloud integrations, modernization efforts).
  • Familiarity with modern enterprise integration methods (REST, SOAP, MQ, FTP) that interface with mainframe services
  • Whilst these are nice to have, our team can help you develop in the following skills :

  • Industry certifications such as OSCP, OSCE, CRTP, GIAC GPEN, GXPN, or CISSP.
  • Background in regulated industries such as banking, insurance, or government, where mainframes are core infrastructure.
  • Knowledge of COBOL, PL / I, or other mainframe-centric programming languages.
  • Experience with compliance standards like PCI-DSS, NIST, or SOX as they apply to mainframes.
  • CA-DNP

    Our commitment to you!

    BMC's culture is built around its people. We have 6000+ brilliant minds working together across the globe. You won't be known just by your employee number, but for your true authentic self. BMC lets you be YOU!

    If after reading the above, You're unsure if you meet the qualifications of this role but are deeply excited about BMC and this team, we still encourage you to apply! We want to attract talents from diverse backgrounds and experience to ensure we face the world together with the best ideas!

    BMC is committed to equal opportunity employment regardless of race, age, sex, creed, color, religion, citizenship status, sexual orientation, gender, gender expression, gender identity, national origin, disability, marital status, pregnancy, disabled veteran or status as a protected veteran. If you need a reasonable accommodation for any part of the application and hiring process, visit the accommodation request page.

    BMC Software maintains a strict policy of not requesting any form of payment in exchange for employment opportunities, upholding a fair and ethical hiring process.

    At BMC we believe in pay transparency and have set the midpoint of the salary band for this role at 3,380,000 INR. Actual salaries depend on a wide range of factors that are considered in making compensation decisions, including but not limited to skill sets; experience and training, licensure, and certifications; and other business and organizational needs.

    The salary listed is just one component of BMC's employee compensation package. Other rewards may include a variable plan and country specific benefits.

    We are committed to ensuring that our employees are paid fairly and equitably, and that we are transparent about our compensation practices.

    ( Returnship@BMC )

    Had a break in your career No worries. This role is eligible for candidates who have taken a break in their career and want to re-enter the workforce. If your expertise matches the above job, visit to https : / / bmcrecruit.avature.net / returnship know more and how to apply.

    Skills Required

    Ftp, Wireshark, Mq, Netview, Nmap, Bash, Soap, Penetration Testing, Rexx, Burp Suite, Rest, red teaming , Python

    Create a job alert for this search

    Penetration Tester • Pune, India

    Related jobs
    • Promoted
    Hybris Tester

    Hybris Tester

    ConfidentialDelhi NCR, Bengaluru / Bangalore, Pune
    Hands on knowledge of Hybris Testing.Experience with front end and back-office Testing.Write test plans / case and lead testing releases through regression for e-commerce website.Work closely with th...Show moreLast updated: 30+ days ago
    • Promoted
    Penetration Tester

    Penetration Tester

    ConfidentialPune
    We are seeking a highly skilled and experienced.In this role, you will simulate real-world attack scenarios, uncover critical vulnerabilities, and provide technical remediation guidance to strength...Show moreLast updated: 30+ days ago
    • Promoted
    Cybersecurity Analyst (Penetration Tester)

    Cybersecurity Analyst (Penetration Tester)

    ConfidentialPune, India
    At Roche you can show up as yourself, embraced for the unique qualities you bring.Our culture encourages personal expression, open dialogue, and genuine connections, where you are valued, accepted ...Show moreLast updated: 6 days ago
    • Promoted
    BTP Tester

    BTP Tester

    ConfidentialChennai, Hyderabad / Secunderabad, Telangana, Pune
    We are looking for an experienced Senior Tester to support the implementation of SAP BTP projects.The ideal candidate will be responsible for creating and executing test cases, documenting and mana...Show moreLast updated: 30+ days ago
    • Promoted
    Penetration Tester

    Penetration Tester

    ISAPune, Maharashtra, India
    ISA is a premier technology solution provider for the Aviation industry.We are backed by Air Arabia and headquartered in Sharjah, UAE,. Research and Development center is located in Colombo, Sri Lan...Show moreLast updated: 30+ days ago
    • Promoted
    Sr. Penetration Tester

    Sr. Penetration Tester

    ConfidentialPune, India
    Do you want to help solve the world's most pressing challenges Feeding the world's growing population and slowing climate change are two of the world's greatest challenges.AGCO is a part of the sol...Show moreLast updated: 6 days ago
    • Promoted
    Penetration Testing

    Penetration Testing

    ConfidentialPune
    Works on problems of diverse scope where analysis of data requires evaluation of identifiable factors.Demonstrates good judgment in selecting methods and techniques for obtaining solutions.Networks...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Pega Testing @ Pune / Bangalore

    Pega Testing @ Pune / Bangalore

    Quess IT Staffingpune, India
    CDH Testing and Quality Assurance : .Develop and execute test plans and test cases for Pega AOM implementations.Perform functional, regression, and performance testing to ensure the quality and relia...Show moreLast updated: 10 hours ago
    • Promoted
    Senior UFT Tester - Automation Testing

    Senior UFT Tester - Automation Testing

    Deutsche TelekomPune
    Your Role : We are seeking a Senior UFT Tester responsible for conducting automation testing for complex B2B Enterprise Network releases.This role requires 8+...Show moreLast updated: 8 days ago
    • Promoted
    Product Security Specialist (Penetration Testing)

    Product Security Specialist (Penetration Testing)

    ConfidentialPune, India
    The products under test will have the coverage of embedded devices and cloud services.The Senior Pen Tester should have exposure to embedded devices as well as cloud services (AWS / Azure).Some of th...Show moreLast updated: 30+ days ago
    • Promoted
    Penetration Tester / Red Team Operator

    Penetration Tester / Red Team Operator

    ETeam InfoservicesPune
    Mandate Skills (Must-Have) : These are required to qualify : Education & Experience : - Bachelor's degree in Computer Science...Show moreLast updated: 30+ days ago
    • Promoted
    Freelance AI / ML Penetration Tester

    Freelance AI / ML Penetration Tester

    ConfidentialPune, India
    This opportunity is only for candidates currently residing in the specified country.Your location may affect eligibility and rates. Please submit your resume in English and indicate your level of En...Show moreLast updated: 6 days ago
    • Promoted
    Senior Manual Tester

    Senior Manual Tester

    I Love StorePune, IN
    The Senior Manual Tester will play a key role in ensuring product quality across all digital and operational systems.The role involves designing and executing test cases, identifying defects, and m...Show moreLast updated: 2 days ago
    • Promoted
    Senior User Acceptance Tester [T500-20556]

    Senior User Acceptance Tester [T500-20556]

    Delta Air Linespune, maharashtra, in
    Delta Air Lines (NYSE : DAL) is the U.Powered by our employees around the world, Delta has for a decade led the airline industry in operational excellence while maintaining our reputation for award-...Show moreLast updated: 30+ days ago
    • Promoted
    Penetration Tester

    Penetration Tester

    eTeam IndiaPune
    Description : Mandatory skills : Cloud penetration, Network Penetration, Advanced internal network exploitation techniqu...Show moreLast updated: 3 days ago
    • Promoted
    Senior Performance Tester

    Senior Performance Tester

    ConfidentialPune, Noida
    Key Accountabilities and main responsibilities.Maintain technical expertise in performance / load testing dictums.Design and develop solutions for supporting Cloud (Azure Devops) and CI / CD for SeV ut...Show moreLast updated: 30+ days ago
    • Promoted
    Penetration Tester

    Penetration Tester

    NTT DATA, Inc.pune, maharashtra, in
    The Penetration Tester is a seasoned subject matter expert, responsible for assessing and evaluating the security posture of the company's information systems, networks, applications and infrastruc...Show moreLast updated: 16 days ago
    • Promoted
    Senior QA Automation Tester - Atos

    Senior QA Automation Tester - Atos

    ConfidentialPune
    Extensive and strong hands-on experience with Selenium.WebDriver (using Java), Maven, TestNG framework is a MUST.Experience in maintaining testing artefacts. Excellent understanding of QA testing to...Show moreLast updated: 30+ days ago