VAPT / Penetration Tester (Web, Mobile & AI Applications)
Location - Bangalore (Hybrid)
Experience: 2-5 Years
Job Summary
We are seeking a skilled VAPT (Vulnerability Assessment and Penetration Testing) Engineer with hands-on experience in Web Application and Mobile Application Security Testing. The ideal candidate should possess solid expertise in identifying, assessing, and mitigating security vulnerabilities across applications and infrastructure. Exposure to AI/LLM-based application security testing is highly preferred.
Key Responsibilities
Perform Vulnerability Assessment and Penetration Testing (VAPT) on Web and Mobile applications.
Conduct security assessments based on industry standards such as OWASP Top 10, OWASP Mobile Top 10, SANS, and NIST frameworks.
Identify, validate, and document security vulnerabilities with detailed remediation recommendations.
Execute manual and automated penetration testing activities.
Perform source-level security reviews where applicable.
Validate fixes and conduct re-testing after remediation.
Collaborate with development, DevOps, and product teams to improve application security posture.
Prepare detailed technical and executive-level security assessment reports.
Stay current with emerging threats, attack techniques, and security best practices.
Mandatory Skills
Strong hands-on experience in Web Application Penetration Testing.
Experience in Mobile Application Security Testing (Android/iOS).
Proficiency in Burp Suite (Mandatory).
Strong Understanding Of
OWASP Top 10
OWASP Mobile Top 10
Authentication & Authorization Testing
API Security Testing
Session Management & Access Control Testing
Experience With Security Tools Such As
Burp Suite Professional
OWASP ZAP
Nessus
Nmap
Metasploit
Postman/API Security Tools
Preferred Skills
Experience in AI/LLM Application Security Testing.
Knowledge Of AI-specific Vulnerabilities Such As
Prompt Injection
Jailbreak Attacks
Data Leakage
Model Abuse
Insecure Output Handling
LLM Security Testing (OWASP Top 10 for LLMs)
Experience testing applications integrated with OpenAI, Azure OpenAI, Gemini, Claude, or other AI platforms.
Familiarity with cloud security concepts (Azure/AWS/GCP).
Qualifications
Bachelor's degree in Computer Science, Cyber Security, Information Technology, or related field.
Relevant Certifications Preferred
CEH
OSCP
eWPT
eCPPT
CREST
GWAPT
What We Are Looking For
Strong analytical and problem-solving abilities.
Excellent report writing and communication skills.
Ability to independently perform end-to-end security assessments.
Passion for ethical hacking, security research, and emerging AI security technologies.
Must Have: Web/Mobile Application VAPT, Burp Suite (Mandatory), hands-on penetration testing experience.
Good to Have: AI/LLM Application Security Testing experience.
📌 Information Security Engineer (Bengaluru)
🏢 Tredence
📍 Bengaluru
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.