Art Technology and SoftwareCochin, Republic Of India, IN
20 days ago
Job description
Responsibilities
Client Engagement & Leadership
Act as a trusted security advisor for multiple high-value clients.
Manage end-to-end security assessment projects, including scoping, execution, reporting, and remediation guidance.
Conduct technical and executive-level briefings to communicate findings, risks, and strategic recommendations clearly.
Translate complex technical vulnerabilities into business risk insights to help clients prioritize actions.
Collaborate closely with client stakeholders to ensure security recommendations are practical and actionable.
Advanced Threat Modelling & Risk Assessment
Design and maintain threat models tailored to client applications, networks, and cloud environments.
Perform risk assessments focusing on business impact and likelihood of exploitation.
Develop attack scenarios based on the latest threat intelligence and real-world attacker techniques.
Guide clients in integrating security into their software development lifecycle (SDLC) and cloud infrastructure designs.
Penetration Testing & Red Team Operations
Lead advanced black-box, grey-box, and white-box penetration testing engagements for web applications, APIs, networks, and cloud environments.
Conduct sophisticated Red Team exercises to simulate targeted attack campaigns.
Design and develop custom exploits and testing tools to replicate specific attacker techniques.
Perform social engineering tests (phishing campaigns, physical security assessments) in controlled and ethical scenarios.
Provide detailed post-exercise analysis, including actionable remediation strategies and long term improvement plans.
Comprehensive Reporting & Documentation
Produce clear and technically thorough vulnerability assessment and penetration testing reports.
Create executive-level summaries focused on business impact and compliance risks.
Maintain structured and up-to-date testing methodologies and playbooks.
Contribute to internal knowledge base, documenting research, custom tools, and successful testing strategies.
Technical & Programming Expertise
Expert in vulnerability assessment and exploitation techniques across a wide range of technologies.
Proficient in security testing tools such as Burp Suite, Nessus, Metasploit, Nmap, OpenVAS, Cobalt Strike, Wireshark, and tcpdump.
Strong scripting and automation skills (Python, Bash, PowerShell) to automate repetitive testing tasks and tool workflows.
Capable of custom tool development and advanced exploit research to target unique client environments.
Strong knowledge of application security vulnerabilities (OWASP Top 10, SANS Top 25) and attack surface analysis.
In-depth understanding of cloud security risks, identity and access management, and container security (Docker, Kubernetes).
Social Engineering & OSINT Expertise
Design and execute social engineering and phishing simulations tailored to client environments.
Perform physical security assessments through tactics like tailgating and badge cloning.
Apply Open Source Intelligence (OSINT) techniques to gather reconnaissance data for assessments.
Provide training and awareness recommendations based on assessment outcomes.
Professional Attributes & Mindset
Strong analytical, problem-solving, and creative thinking skills.
Ethical hacker mindset with a continuous drive to research emerging threats, attack techniques, and defense bypass methods.
Methodical and detail-oriented approach to testing with the ability to think like an attacker.
Strong communication and presentation skills, able to engage both technical teams and business leadership.
Proactively innovate by developing new tools, scripts, or methodologies to improve testing efficiency and depth.
Qualifications
7+ years of hands-on experience in Vulnerability Assessment, Penetration Testing, and security consulting.
Strong technical expertise in application security, network security, cloud security (AWS, Azure, GCP), and infrastructure security testing.
Proven experience using VAPT tools such as Burp Suite, Nessus, Qualys, Nmap, Metasploit, Nikto, OpenVAS, etc.
Solid knowledge of exploitation techniques, post-exploitation frameworks, and manual testing methodologies.
In-depth knowledge of web application vulnerabilities (OWASP Top 10) and network protocol analysis.
Experience conducting cloud security assessments, including misconfigurations, IAM permissions analysis, and container security.
Proficiency in scripting and automation (Python, Bash, PowerShell) to customize tests and tools.
Familiarity with security frameworks and standards such as NIST, ISO 27001, MITRE ATT&CK.
Strong reporting and documentation skills, able to translate technical findings into business friendly recommendations.
Excellent communication and stakeholder management skills, able to lead client-facing engagements.
Relevant certifications are a strong plus (e.G., OSCP, CREST, CISSP, CEH, GIAC GPEN).
Preferred Qualifications :
Certifications such as OSCP, GPEN, CREST CRT, CRTO are highly desirable.
Experience in DevSecOps, CI / CD pipeline security, or automated security testing frameworks.
Familiarity with industry compliance frameworks like PCI-DSS, GDPR, HIPAA, SOC2, and ISO 27001.
Prior consulting experience in a service delivery or customer-facing environment.
Experience with threat intelligence platforms and indicators of compromise (IoCs).
Create a job alert for this search
Security Specialist • Cochin, Republic Of India, IN
Related jobs
Promoted
Tanium Security Remediation Specialist
HCLTechChennai, Republic Of India, IN
Tanium Security Remediation Specialist.We are seeking a skilled security remediation specialist with expertise in Tanium to join our team.
The successful candidate will be responsible for reviewing,...Show moreLast updated: 21 days ago
Promoted
New!
Security Auditor
Helo.ai by VivaConnectNagpur, IN
Join Us as an Information Security Auditor – Be the Guardian of Trust!.SMS, WhatsApp, RCS, Voice, to Contact Centre Solutions.
Meta, Google, and leading telecom operators.If you’re looking to elevat...Show moreLast updated: 11 hours ago
Promoted
Security Assessment Engineer
MizuhoChennai, Republic Of India, IN
Mizuho Global Services Pvt Ltd (MGS) is a subsidiary company of Mizuho Bank, Ltd, which is one of the largest banks or so called ‘Mega Banks’ of Japan.
MGS was established in the year 2020 as part o...Show moreLast updated: 21 days ago
Promoted
Azure Security Remediation Specialist
HCLTechChennai, Republic Of India, IN
Job Title : Azure Security Engineer – Remediation Liaison.We are seeking a highly skilled.This role requires both hands-on technical expertise in Microsoft Azure and the ability to collaborate effec...Show moreLast updated: 21 days ago
Promoted
Cybersecurity Assessment Specialist
Bahwan CyberTekChennai, Republic Of India, IN
VAPT, preferably in both application and infrastructure testing.Perform manual verification and risk assessment of identified vulnerabilities.
Track and validate remediation efforts in collaboration...Show moreLast updated: 13 days ago
Promoted
Senior Security Assessment Specialist
AppSecure SecurityRepublic Of India, IN
Appsecure is a leading offensive cybersecurity and red-team services company trusted by Fortune 500s, high-growth startups, and global enterprises.
Our team consists of top bug bounty hunters, seaso...Show moreLast updated: 30+ days ago
Promoted
Security Lead
BDx Data CentersRepublic Of India, IN
A leading Pan Asian hybrid, hyperscale and edge solutions provider with assets located in Hong Kong, Singapore, Guangzhou, Nanjing and expanding footprints in SEA regions.Our hybrid ecosystem provi...Show moreLast updated: 30+ days ago
Promoted
Lead Security Specialist
BDx Data CentersRepublic Of India, IN
A leading Pan Asian hybrid, hyperscale and edge solutions provider with assets located in Hong Kong, Singapore, Guangzhou, Nanjing and expanding footprints in SEA regions.Our hybrid ecosystem provi...Show moreLast updated: 30+ days ago
Promoted
Lead Security and Compliance Analyst
Energy ExemplarPune, Republic Of India, IN
Energy Exemplar is looking for a Senior Security Compliance Analyst who will perform duties related to compliance certifications, continuous monitoring of the controls and operational security admi...Show moreLast updated: 13 days ago
Promoted
Security Incident Response Lead
BDx Data CentersRepublic Of India, IN
A leading Pan Asian hybrid, hyperscale and edge solutions provider with assets located in Hong Kong, Singapore, Guangzhou, Nanjing and expanding footprints in SEA regions.Our hybrid ecosystem provi...Show moreLast updated: 30+ days ago
Promoted
Senior Security Compliance Specialist
Energy ExemplarPune, Republic Of India, IN
Energy Exemplar is looking for a Senior Security Compliance Analyst who will perform duties related to compliance certifications, continuous monitoring of the controls and operational security admi...Show moreLast updated: 30+ days ago
Promoted
New!
Product Security Specialist
Insight Globalnagpur, maharashtra, in
We are hiring Product Security Specialists to strengthen our product security capability across penetration testing, AI security, MCP security, mobile app security, web application security, suppor...Show moreLast updated: 9 hours ago
Promoted
Lead Security Engineer
Arcananagpur, maharashtra, in
As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between.
You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
Promoted
Prisma Access Browser Security Specialist
Tata Consultancy ServicesChennai, Republic Of India, IN
Proven experience with Palo Alto Networks Prisma Access Browser or similar (the standalone browser only, not the full Prisma Access solution).
Experience in enterprise-scale deployments, including c...Show moreLast updated: 21 days ago
Promoted
Director, Security Vulnerability Management Program
M&GRepublic Of India, IN
Vice President Enterprise Security (Vulnerability Management).The purpose of this role is to lead and oversee the organisation’s Vulnerability Management program.
The role is responsible for managin...Show moreLast updated: 11 days ago
Promoted
SITA - Lead Specialist - Information Security
SITA INFORMATION NETWORKING COMPUTING INDIAIndia
About the job : Overview : WELCOME TO SITA : We're the team that keeps airports moving, airlines flying smoothly, and borders ...Show moreLast updated: 30+ days ago
Promoted
Tanium Security Operations Specialist
HCLTechChennai, Republic Of India, IN
Tanium Security Remediation Specialist.We are seeking a skilled security remediation specialist with expertise in Tanium to join our team.
The successful candidate will be responsible for reviewing,...Show moreLast updated: 21 days ago
Promoted
New!
Director Product – Building and Managing Security Products - Cyber Security Startup - Salary INR 75 L
CareerXperts Consultingnagpur, maharashtra, in
We are seeking a hands-on product leader to drive the strategy, design, and operational delivery of AI-driven threat investigation and response content at platform scale.
This role is ideal for a fo...Show moreLast updated: 8 hours ago