Talent.com
Lead Vulnerability Assessment and Penetration Testing
Lead Vulnerability Assessment and Penetration TestingConfidential • India
Lead Vulnerability Assessment and Penetration Testing

Lead Vulnerability Assessment and Penetration Testing

Confidential • India
13 days ago
Job description

Responsibilities

  • Client Engagement & Leadership
  • Act as a trusted security advisor for multiple high-value clients.
  • Manage end-to-end security assessment projects, including scoping, execution, reporting, and remediation guidance.
  • Conduct technical and executive-level briefings to communicate findings, risks, and strategic recommendations clearly.
  • Translate complex technical vulnerabilities into business risk insights to help clients prioritize actions.
  • Collaborate closely with client stakeholders to ensure security recommendations are practical and actionable.
  • Advanced Threat Modelling & Risk Assessment
  • Design and maintain threat models tailored to client applications, networks, and cloud environments.
  • Perform risk assessments focusing on business impact and likelihood of exploitation.
  • Develop attack scenarios based on the latest threat intelligence and real-world attacker techniques.
  • Guide clients in integrating security into their software development lifecycle (SDLC) and cloud infrastructure designs.
  • Penetration Testing & Red Team Operations
  • Lead advanced black-box, grey-box, and white-box penetration testing engagements for web applications, APIs, networks, and cloud environments.
  • Conduct sophisticated Red Team exercises to simulate targeted attack campaigns.
  • Design and develop custom exploits and testing tools to replicate specific attacker techniques.
  • Perform social engineering tests (phishing campaigns, physical security assessments) in controlled and ethical scenarios.
  • Provide detailed post-exercise analysis, including actionable remediation strategies and long term improvement plans.
  • Comprehensive Reporting & Documentation
  • Produce clear and technically thorough vulnerability assessment and penetration testing reports.
  • Create executive-level summaries focused on business impact and compliance risks.
  • Maintain structured and up-to-date testing methodologies and playbooks.
  • Contribute to internal knowledge base, documenting research, custom tools, and successful testing strategies.
  • Technical & Programming Expertise
  • Expert in vulnerability assessment and exploitation techniques across a wide range of technologies.
  • Proficient in security testing tools such as Burp Suite, Nessus, Metasploit, Nmap, OpenVAS, Cobalt Strike, Wireshark, and tcpdump.
  • Strong scripting and automation skills (Python, Bash, PowerShell) to automate repetitive testing tasks and tool workflows.
  • Capable of custom tool development and advanced exploit research to target unique client environments.
  • Strong knowledge of application security vulnerabilities (OWASP Top 10, SANS Top 25) and attack surface analysis.
  • In-depth understanding of cloud security risks, identity and access management, and container security (Docker, Kubernetes).
  • Social Engineering & OSINT Expertise
  • Design and execute social engineering and phishing simulations tailored to client environments.
  • Perform physical security assessments through tactics like tailgating and badge cloning.
  • Apply Open Source Intelligence (OSINT) techniques to gather reconnaissance data for assessments.
  • Provide training and awareness recommendations based on assessment outcomes.
  • Professional Attributes & Mindset
  • Strong analytical, problem-solving, and creative thinking skills.
  • Ethical hacker mindset with a continuous drive to research emerging threats, attack techniques, and defense bypass methods.
  • Methodical and detail-oriented approach to testing with the ability to think like an attacker.
  • Strong communication and presentation skills, able to engage both technical teams and business leadership.
  • Proactively innovate by developing new tools, scripts, or methodologies to improve testing efficiency and depth.

Qualifications

  • 7+ years of hands-on experience in Vulnerability Assessment, Penetration Testing, and security consulting.
  • Strong technical expertise in application security, network security, cloud security (AWS, Azure, GCP), and infrastructure security testing.
  • Proven experience using VAPT tools such as Burp Suite, Nessus, Qualys, Nmap, Metasploit, Nikto, OpenVAS, etc.
  • Solid knowledge of exploitation techniques, post-exploitation frameworks, and manual testing methodologies.
  • In-depth knowledge of web application vulnerabilities (OWASP Top 10) and network protocol analysis.
  • Experience conducting cloud security assessments, including misconfigurations, IAM permissions analysis, and container security.
  • Proficiency in scripting and automation (Python, Bash, PowerShell) to customize tests and tools.
  • Familiarity with security frameworks and standards such as NIST, ISO 27001, MITRE ATT&CK.
  • Strong reporting and documentation skills, able to translate technical findings into business friendly recommendations.
  • Excellent communication and stakeholder management skills, able to lead client-facing engagements.
  • Relevant certifications are a strong plus (e.g., OSCP, CREST, CISSP, CEH, GIAC GPEN).
  • Preferred Qualifications :

  • Certifications such as OSCP, GPEN, CREST CRT, CRTO are highly desirable.
  • Experience in DevSecOps, CI / CD pipeline security, or automated security testing frameworks.
  • Familiarity with industry compliance frameworks like PCI-DSS, GDPR, HIPAA, SOC2, and ISO 27001.
  • Prior consulting experience in a service delivery or customer-facing environment.
  • Experience with threat intelligence platforms and indicators of compromise (IoCs).
  • Skills Required

    Penetration Testing, Social Engineering, Risk Assessment, Cloud Security, Application Security, security consulting , Vulnerability Assessment

    Create a job alert for this search

    Penetration Testing Lead • India

    Related jobs
    Security Vulnerability Remediation Lead

    Security Vulnerability Remediation Lead

    Birlasoft • Pune, Republic Of India, IN
    Perform regular vulnerability scans using.Administer and maintain scanning tools, including configuration, scheduling, asset grouping, and tagging. Analyze scan results, prioritize vulnerabilities b...Show more
    Last updated: 12 hours ago • Promoted • New!
    HYPERVISOR TEST ENGINEER (Foundation Level)

    HYPERVISOR TEST ENGINEER (Foundation Level)

    Piepeople Consulting Inc. • Nagpur, IN
    Solid understanding of hypervisors, virtual machines (VMs), and core concepts like CPU, memory, and I / O allocation.Basic operating systems (especially Linux), hardware basics, and fundamental progr...Show more
    Last updated: 2 days ago • Promoted
    Lead Security Engineer

    Lead Security Engineer

    Arcana • Nagpur, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show more
    Last updated: 30+ days ago • Promoted
    Technical Lead

    Technical Lead

    Mphasis • Nagpur, IN
    Looking for Senior Ingenium Developer with 10+ years' experience and following skills.Experience in Mainframe O / S and Development using COBOL programming language & JCL. Experience in development an...Show more
    Last updated: 6 days ago • Promoted
    ML Ops

    ML Ops

    EXL • Nagpur, IN
    Deploy, monitor, and scale ML models on.GCP (Vertex AI, GKE, Cloud Functions).GitHub Actions / Jenkins / cloud-native tools. Containerize and orchestrate workloads with.MLflow, Feast, Prometheus / Gra...Show more
    Last updated: 30+ days ago • Promoted
    Lead Engineer

    Lead Engineer

    Hyqoo • Nagpur, IN
    Design, deploy, and manage AWS cloud infrastructure, including EC2 instances, S3 buckets, VPCs, RDS databases, and Lambda functions. Assist in the design, implementation, and maintenance of backup, ...Show more
    Last updated: 16 days ago • Promoted
    Senior Associate Level | Camunda BPM

    Senior Associate Level | Camunda BPM

    Publicis Sapient • Nagpur, IN
    We’re Hiring – Senior Associate Level 2 | Camunda BPM Developer.BNG | HYD | PUN | MUM | CHN | NOIDA | GGN (Hybrid — 3 days WFO). Immediate to 2 Weeks Joiners Only.Unit tests, code reviews, performan...Show more
    Last updated: 20 days ago • Promoted
    Vulnerability Management Lead

    Vulnerability Management Lead

    Birlasoft • Pune, Republic Of India, IN
    Perform regular vulnerability scans using.Administer and maintain scanning tools, including configuration, scheduling, asset grouping, and tagging. Analyze scan results, prioritize vulnerabilities b...Show more
    Last updated: 12 hours ago • Promoted • New!
    Vulnerability Response Specialist

    Vulnerability Response Specialist

    APPIT Software Inc • Pune, Republic Of India, IN
    Core Technology - Vulnerability Response.Workflow Configuration, Vulnerability Prioritization, Vulnerability Response.Job Location - Bangalore Urban, Pune, Hyderabad. Swift Timing General IST (10 AM...Show more
    Last updated: 12 hours ago • Promoted • New!
    Principal Penetration Tester

    Principal Penetration Tester

    CheckRed • India
    Deliver offensive security services in at least two of the following areas including .Collaborate with clients, project management, and engagement leaders to . Assist in the development of best prac...Show more
    Last updated: less than 1 hour ago • Promoted • New!
    AppScan Product _Lead Security Expert _Remote Location

    AppScan Product _Lead Security Expert _Remote Location

    HCLSoftware • Nagpur, IN
    Remote
    Greetings from “HCL Software” Is a Product Development Division of HCL Tech!!.HCL Software” : - Is a Product Development Division of HCL Tech : That operates its primary Software Business.At HCL Soft...Show more
    Last updated: 1 day ago • Promoted
    Vulnerability Response

    Vulnerability Response

    APPIT Software Inc • Pune, Republic Of India, IN
    Core Technology - Vulnerability Response.Workflow Configuration, Vulnerability Prioritization, Vulnerability Response.Job Location - Bangalore Urban, Pune, Hyderabad. Swift Timing General IST (10 AM...Show more
    Last updated: 4 hours ago • Promoted • New!
    Vulnerability Management Specialist

    Vulnerability Management Specialist

    ITPeopleNetwork • Republic Of India, IN
    Vulnerability Management Specialist.The ideal candidate will assist in vulnerability detection, reporting, and coordination with IT and security teams to ensure timely remediation.Run regular vulne...Show more
    Last updated: 3 days ago • Promoted
    Vulnerability Assessment & Penetration Testing Lead - Middle East Focus

    Vulnerability Assessment & Penetration Testing Lead - Middle East Focus

    Cubical Operations LLP • Republic Of India, IN
    Job Title : VAPT Manager – OSCP Certified.Location : India (Travel to the Middle East as Required).Certification : OSCP (Mandatory). We are seeking an experienced and highly skilled VAPT Manager to lea...Show more
    Last updated: 22 hours ago • Promoted • New!
    Vulnerability Assessment & Penetration Testing Analyst

    Vulnerability Assessment & Penetration Testing Analyst

    Network Intelligence • Republic Of India, IN
    Conduct end-to-end Vulnerability Assessment and Penetration Testing (VAPT) for : .Mobile Applications (iOS & Android).Perform manual and automated security testing using industry tools (BurpSuite Pro...Show more
    Last updated: 12 hours ago • Promoted • New!
    Security Vulnerability Assessor

    Security Vulnerability Assessor

    Absolute Talent Pvt Ltd • Republic Of India, IN
    JD 1 : Network VAPT + Red Teaming Consultant.We are looking for a Security Consultant with strong hands-on experience in. Network VAPT, Red Teaming, and Offensive Security.The role involves simulatin...Show more
    Last updated: 12 hours ago • Promoted • New!
    Team Lead

    Team Lead

    ALTISOURCE BUSINESS SOLUTIONS PRIVATE LIMITED • Nagpur, IN
    Willing to work in night shift.Lead the property inspection operations in a multi-client environment ensuring adherence to service level agreements and quality standards. Track team perfoJob Descrip...Show more
    Last updated: 12 days ago • Promoted
    Test Lead

    Test Lead

    Indium • Nagpur, IN
    We are looking for a 10+ years skilled Senior Test Lead with strong expertise in.Should be capable of translating business requirements into effective test scenarios, collaborating closely with sta...Show more
    Last updated: 21 days ago • Promoted