13 Aug
|
Astra Security
|
India
13 Aug
Astra Security
India
About Astra:
Astra Security is a leader in the penetration testing space, recognized by G2 in the Pentest category. With headquarters in the US & India, Astra is the trusted security partner for leading brands including Muthoot Finance, Loom, CompTIA, NIIT, Goldcast, HackerRank, Sprinto, ITC & more. Its one-of-a-kind continuous pentest platform is trusted by 1,200+ companies across 100+ countries, from fast-growing startups to Fortune 100 giants.
Astra's autonomous pentest platform pairs AI agents with certified human pentesters to continuously pentest applications and infrastructure at scale. Vulnerabilities are discovered, validated, and chained the way a real attacker would. Beyond pentesting, Astra's suite includes a DAST Scanner, Cloud Vulnerability Scanner, and API Security Platform, giving teams continuous coverage across web apps, cloud environments, and APIs from a single dashboard. With over 18,000 vulnerabilities detected daily, Astra helps customers prevent millions in potential losses while saving thousands of developer hours. Last year alone, Astra uncovered more than 6.8 million vulnerabilities for its customers.
Astra's research team actively contributes to the OWASP community, including helping shape the OWASP Autonomous Penetration Testing Standard (APTS) and contributing to the OWASP Top 10 for LLM and Generative AI Security Risks. Astra is CREST-accredited, CERT-IN empaneled, and a PCI ASV, reflecting its commitment to the highest standards of security testing.
We've been awarded by the President of France Mr. François Hollande at the La French Tech program and Prime Minister of India Shri Narendra Modi at the Global Conference on Cyber Security. Loom, MamaEarth, Muthoot Finance, Canara Robeco, ScripBox etc. are a few of Astra’s customers.
Role Overview
At Astra Security, we are building the future of cybersecurity, with Autonomous Pentesting - a new experience that helps teams autonomously discover, validate and fix vulnerabilities.
This is a high-impact role focused on security research, experimentation, and thought leadership. You’ll explore vulnerabilities, attack techniques, and emerging security trends, building on your prior experience in vulnerability research, penetration testing, bug bounty, or CVE research.
You’ll work closely with the Marketing and Security teams to turn research and security experiments into compelling white papers, technical blogs, and research-led content that builds Astra’s credibility within the cybersecurity community. This role is ideal for someone who has a strong foundation in offensive security, enjoys going deep into how vulnerabilities work, and is passionate about sharing their knowledge through technical content and research.
At Astra, you will be:
- Exploring emerging AI and Generative AI security risks, vulnerabilities, and attack techniques through hands-on security research and experimentation.
- Leveraging prior experience in vulnerability research, penetration testing, bug bounty, or CVE research to identify interesting security findings and research opportunities.
- Reproducing vulnerabilities, developing Proofs of Concept, and experimenting with different attack techniques to understand their real-world impact.
- Contributing to technical white papers, security research reports, and in-depth research pieces that showcase Astra’s security expertise.
- Be a part of videos which explain your research or, in general, are around security topics
- Writing technical blogs and security research articles for Medium and other relevant security communities.
- Working closely with the Marketing team to turn complex security research and experiments into clear, engaging, and technically accurate content.
- Collaborating with the Security and Engineering teams to validate research findings and identify opportunities to incorporate them into Astra’s products and security intelligence.
- Keeping up with emerging vulnerabilities, CVEs, offensive security techniques, AI security research, and developments across the broader cybersecurity ecosystem.
- Contributing to Astra’s security thought leadership through original research,
technical content, and participation in the security community.
Requirements
- 2-3 years of experience in cybersecurity, penetration testing, vulnerability research, or a related security domain.
- Robust hands-on understanding of application security and common vulnerability classes.
- Demonstrated curiosity and interest in AI/Generative AI security and emerging AI-driven attack surfaces.
- Prior experience with penetration testing and security research.
- Strong understanding of OWASP methodologies and web application security.
- Experience researching vulnerabilities through CVEs, bug bounty programs, security advisories, or independent research.
- Strong technical writing skills with the ability to explain complex security concepts clearly.
- Comfortable conducting security experiments, reproducing vulnerabilities, and building Proofs of Concept.
- Comfortable being in front of the camera
- Good communication skills, both written and oral
- Active interest in the cybersecurity community and emerging security research.
Good to have
- Published CVEs or original vulnerability research.
- Active bug bounty profile with meaningful submissions.
- Published security research, white papers, or technical blogs.
- An active Medium profile or contributions to other security publications.
- CTF experience.
- Security certifications such as OSCP, OSWE, CREST, or equivalent.
- Experience working with Marketing or Content teams on technical security content.
- Experience presenting security research through conferences, webinars, meetups, or community forums.
Why Join Astra Security
- You’ll own your work from day one- no micromanaging, just trust and impact.
- Health Insurance cover for you and your spouse.
- You’ll join a team that’s scaling fast but still feels like a close-knit crew- think startup energy with global reach.
- You’ll work closely with security practitioners and the Marketing team, with the freedom to explore and publish meaningful security research.
- Dive deep into the constantly evolving world of cybersecurity and contribute to Astra’s security thought leadership.
- And yes, get ready for some unforgettable workcations.
📌 Security Researcher (India)
🏢 Astra Security
📍 India