Talent.com
This job offer is not available in your country.
Senior Vulnerability Assessment and Penetration Testing

Senior Vulnerability Assessment and Penetration Testing

Art Technology and SoftwareDelhi, India
3 days ago
Job description

Responsibilities

Client Engagement & Leadership

Act as a trusted security advisor for multiple high-value clients.

Manage end-to-end security assessment projects, including scoping, execution, reporting, and remediation guidance.

Conduct technical and executive-level briefings to communicate findings, risks, and strategic recommendations clearly.

Translate complex technical vulnerabilities into business risk insights to help clients prioritize actions.

Collaborate closely with client stakeholders to ensure security recommendations are practical and actionable.

Advanced Threat Modelling & Risk Assessment

Design and maintain threat models tailored to client applications, networks, and cloud environments.

Perform risk assessments focusing on business impact and likelihood of exploitation.

Develop attack scenarios based on the latest threat intelligence and real-world attacker techniques.

Guide clients in integrating security into their software development lifecycle (SDLC) and cloud infrastructure designs.

Penetration Testing & Red Team Operations

Lead advanced black-box, grey-box, and white-box penetration testing engagements for web applications, APIs, networks, and cloud environments.

Conduct sophisticated Red Team exercises to simulate targeted attack campaigns.

Design and develop custom exploits and testing tools to replicate specific attacker techniques.

Perform social engineering tests (phishing campaigns, physical security assessments) in controlled and ethical scenarios.

Provide detailed post-exercise analysis, including actionable remediation strategies and long term improvement plans.

Comprehensive Reporting & Documentation

Produce clear and technically thorough vulnerability assessment and penetration testing reports.

Create executive-level summaries focused on business impact and compliance risks.

Maintain structured and up-to-date testing methodologies and playbooks.

Contribute to internal knowledge base, documenting research, custom tools, and successful testing strategies.

Technical & Programming Expertise

Expert in vulnerability assessment and exploitation techniques across a wide range of technologies.

Proficient in security testing tools such as Burp Suite, Nessus, Metasploit, Nmap, OpenVAS, Cobalt Strike, Wireshark, and tcpdump.

Strong scripting and automation skills (Python, Bash, PowerShell) to automate repetitive testing tasks and tool workflows.

Capable of custom tool development and advanced exploit research to target unique client environments.

Strong knowledge of application security vulnerabilities (OWASP Top 10, SANS Top 25) and attack surface analysis.

In-depth understanding of cloud security risks, identity and access management, and container security (Docker, Kubernetes).

Social Engineering & OSINT Expertise

Design and execute social engineering and phishing simulations tailored to client environments.

Perform physical security assessments through tactics like tailgating and badge cloning.

Apply Open Source Intelligence (OSINT) techniques to gather reconnaissance data for assessments.

Provide training and awareness recommendations based on assessment outcomes.

Professional Attributes & Mindset

Strong analytical, problem-solving, and creative thinking skills.

Ethical hacker mindset with a continuous drive to research emerging threats, attack techniques, and defense bypass methods.

Methodical and detail-oriented approach to testing with the ability to think like an attacker.

Strong communication and presentation skills, able to engage both technical teams and business leadership.

Proactively innovate by developing new tools, scripts, or methodologies to improve testing efficiency and depth.

Qualifications

7+ years of hands-on experience in Vulnerability Assessment, Penetration Testing, and security consulting.

Strong technical expertise in application security, network security, cloud security (AWS, Azure, GCP), and infrastructure security testing.

Proven experience using VAPT tools such as Burp Suite, Nessus, Qualys, Nmap, Metasploit, Nikto, OpenVAS, etc.

Solid knowledge of exploitation techniques, post-exploitation frameworks, and manual testing methodologies.

In-depth knowledge of web application vulnerabilities (OWASP Top 10) and network protocol analysis.

Experience conducting cloud security assessments, including misconfigurations, IAM permissions analysis, and container security.

Proficiency in scripting and automation (Python, Bash, PowerShell) to customize tests and tools.

Familiarity with security frameworks and standards such as NIST, ISO 27001, MITRE ATT&CK.

Strong reporting and documentation skills, able to translate technical findings into business friendly recommendations.

Excellent communication and stakeholder management skills, able to lead client-facing engagements.

Relevant certifications are a strong plus (e.g., OSCP, CREST, CISSP, CEH, GIAC GPEN).

Preferred Qualifications :

Certifications such as OSCP, GPEN, CREST CRT, CRTO are highly desirable.

Experience in DevSecOps, CI / CD pipeline security, or automated security testing frameworks.

Familiarity with industry compliance frameworks like PCI-DSS, GDPR, HIPAA, SOC2, and ISO 27001.

Prior consulting experience in a service delivery or customer-facing environment.

Experience with threat intelligence platforms and indicators of compromise (IoCs).

Create a job alert for this search

Senior Vulnerability • Delhi, India

Related jobs
  • Promoted
Grafana / Observability / Monitoring Engineer

Grafana / Observability / Monitoring Engineer

RED GlobalMeerut, IN
We're HIRING : Grafana Consultant Across INDIA : FULL REMOTE ROLE.Interested candidates can share their CVs with me at.Expertise in Grafana platform ownership and maintenance.Experience on setting ...Show moreLast updated: 5 days ago
  • Promoted
QA / Red Teaming Expert

QA / Red Teaming Expert

Innodata Inc.Delhi, IN
We are seeking highly analytical and detail-oriented professionals with hands-on experience in.Red Teaming, Prompt Evaluation. The ideal candidate will help us rigorously test and evaluate AI-genera...Show moreLast updated: 20 days ago
  • Promoted
SDET 2

SDET 2

TalentojDelhi, IN
Develop and maintain test automation frameworks and scripts for web and API testing.Playwright, Selenium, or equivalent tools. Design and implement test strategies, test cases, and plans based on te...Show moreLast updated: 5 days ago
  • Promoted
AMS Verification Engineer / Lead

AMS Verification Engineer / Lead

eInfochips (An Arrow Company)Delhi, IN
Minimum 6 years relevant experience is required.Bangalore, Hyderabad, Noida, Chennai, Ahmedabad, Pune.Min 6 Years of overall experience in ASIC Verification. Should have worked on AMS Verification f...Show moreLast updated: 30+ days ago
  • Promoted
Senior Site Reliability Engineer- ELK Expert

Senior Site Reliability Engineer- ELK Expert

iVedha Inc.Delhi, IN
Senior Site Reliability Engineer (SRE) – ELK Expert | Platform Engineering Practice.Must be available to work in the EST (US / Canada) Time Zone. Are you a Senior Site Reliability Engineer (SRE) with ...Show moreLast updated: 30+ days ago
  • Promoted
Content Safety Expert

Content Safety Expert

AceolutionMeerut, IN
Your primary goal will be to identify and analyze potential safety policy violations, such as Hate Speech, Harassment, Sexually Explicit Content, Dangerous and Harmful Acts, and Child Safety concer...Show moreLast updated: 5 days ago
  • Promoted
DevSecOps Engineer - Vulnerability Assessment

DevSecOps Engineer - Vulnerability Assessment

GloifyDelhi, IN
Remote
Job Description : Key Responsibilities : - Implement and manage security...Show moreLast updated: 20 days ago
  • Promoted
Vulnerability Management Specialist_9+years_Remote

Vulnerability Management Specialist_9+years_Remote

Tekgence IncDelhi, IN
Remote
Job Title : Vulnerability Management Specialist (AWS & Wiz).Duration : 12+ months , extendable.We are seeking a skilled Vulnerability Management Specialist with hands-on experience in AWS environment...Show moreLast updated: 5 days ago
  • Promoted
Vulnerability Management Specialist

Vulnerability Management Specialist

Tekgence IncDelhi, India
Vulnerability Management Specialist (AWS & Wiz) - AWS - WIZ.Show moreLast updated: 4 days ago
  • Promoted
Senior MLOps Engineer

Senior MLOps Engineer

Mitchell Martin Inc.Delhi, IN
Include, but are not limited to, the following : .Own productionizing models—from tracked experiments to governed releases—ensuring resilient services with clear SLOs, runbooks, and fast, safe rollba...Show moreLast updated: 30+ days ago
  • Promoted
Senior Penetration Tester

Senior Penetration Tester

ACL DigitalDelhi, India
Bachelor’s degree in computer science / engineering, information security, or a related field.Proven experience in penetration testing, vulnerability assessment, and security testing with a minimum o...Show moreLast updated: 4 days ago
Cloud and containers base Vulnerability Assessment & Scanning

Cloud and containers base Vulnerability Assessment & Scanning

Overture RedeDelhi, DL, in
Quick Apply
Cloud & Containers – Vulnerability Assessment & Scanning.We are looking for a highly experienced.Cloud Security and Container Security. Vulnerability Assessment and Scanning.The trainer will...Show moreLast updated: 19 days ago
  • Promoted
AI Exploration Engineer

AI Exploration Engineer

Mitchell Martin Inc.Meerut, IN
Design and execute machine learning experiments to evaluate emerging AI technologies and frameworks.Prototype and assess end-to-end AI solutions to inform product and platform strategy.Formulate hy...Show moreLast updated: 30+ days ago
  • Promoted
Senior Design Verification Engineer

Senior Design Verification Engineer

IgnitariumDelhi, IN
We are seeking a skilled Design Verification Engineer with hands-on experience in live projects.If you have a passion for developing functional verification environments, excellent debugging skills...Show moreLast updated: 5 days ago
  • Promoted
Security Engineer (Detection and Response)

Security Engineer (Detection and Response)

FoodsmartDelhi, IN
Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 2 days ago
  • Promoted
Vulnerability Management - L3

Vulnerability Management - L3

ITC InfotechDelhi, India
On the portal where vulnerabilities are listed, each vulnerability must be analyzed; - Within each record of each vulnerability, analyze the required fixes and the vendor involved - Contact the ven...Show moreLast updated: 10 days ago
  • Promoted
Security Engineer - Vulnerability Assessment / Penetration Testing

Security Engineer - Vulnerability Assessment / Penetration Testing

Risk Resources IndiaGurgaon
Key Responsibilities : - Design, implement, and maintain security controls across cloud, on-premise, and hybrid environments. Perform threat modeling, vulnerab...Show moreLast updated: 30+ days ago
  • Promoted
VAPT Lead - OSCP Certified (Japan)

VAPT Lead - OSCP Certified (Japan)

Cubical Operations LLPDelhi, IN
Senior Manager – VAPT (OSCP Certified).Any Metro City in India (Hybrid) – Mumbai / Bangalore / Delhi / Chennai / Hyderabad. Frequent travel to Japan (as per project requirement).We are seeking a hig...Show moreLast updated: 5 days ago