19 Aug
|
Grapes Worldwide
|
Gurugram
19 Aug
Grapes Worldwide
Gurugram
Security Tester – Technology Department
Location: Recent Delhi / Hybrid
Department: Technology
Reporting To: Engineering Manager / Head of Technology
Company: Grapes Worldwide
About Grapes Worldwide
Grapes Worldwide is a digitally driven integrated communication and technology company that combines creativity, data, media, and technology to deliver innovative solutions for leading brands. We are looking for a highly skilled Security Tester who will play a critical role in ensuring the security, resilience, and compliance of our digital products, platforms, and applications.
Position Overview
We are seeking a detail-oriented and proactive Security Tester to identify, assess, and mitigate security vulnerabilities across web applications, mobile applications, APIs, cloud infrastructure, and internal systems. The ideal candidate will have hands-on experience in penetration testing, vulnerability assessments, secure development practices, and application security testing.
This role requires close collaboration with developers, DevOps engineers, product teams, and technology leadership to ensure security is embedded throughout the software development lifecycle (SDLC).
Key Responsibilities
Security Testing & Assessment
● Conduct comprehensive vulnerability assessments and penetration testing (VAPT) of web applications,
mobile applications, APIs, and cloud environments.
● Identify, validate, and document security vulnerabilities using industry-standard methodologies.
● Perform manual and automated security testing throughout the development lifecycle.
● Evaluate application security against the latest security threats and attack vectors.
● Conduct authentication, authorization, session management, and access control testing.
Application Security
● Review application architecture and code for security weaknesses.
● Collaborate with developers to remediate vulnerabilities and implement secure coding practices.
● Validate security fixes and perform regression security testing.
● Assess APIs for security flaws, including authentication, authorization, and data exposure risks.
Cloud & Infrastructure Security
● Perform security assessments of cloud environments (AWS, Azure, GCP).
● Evaluate infrastructure configurations, network security controls, and IAM policies.
● Identify misconfigurations and security gaps in containerized and serverless environments.
Security Compliance & Governance
● Ensure adherence to security frameworks such as OWASP Top 10, OWASP ASVS, NIST, CIS Benchmarks, and industry best practices.
● Assist in security audits, compliance assessments, and risk evaluations.
● Support security awareness initiatives and contribute to secure SDLC processes.
Reporting & Documentation
● Prepare detailed vulnerability assessment reports with risk ratings and remediation recommendations.
● Present findings to technical and non-technical stakeholders.
● Maintain documentation of security assessments, testing methodologies, and remediation tracking.
Required Qualifications
Education
● Bachelor's degree in Computer Science, Information Security, Cyber Security, Information Technology, or a related field.
Experience
● 3–6 years of hands-on experience in Application Security Testing, Vulnerability Assessment, and
Penetration Testing.
● Experience testing web applications, APIs, mobile applications, and cloud environments.
● Prior experience working within Agile development teams.
📌 Security Tester – Technology Department (Gurugram)
🏢 Grapes Worldwide
📍 Gurugram