What You’ll Do
Perform web & network penetration testing
Identify and exploit vulnerabilities (E.g., SQLi, XSS).
Conduct vulnerability assessments & scans
Review configurations and harden systems
Support incident investigations & root cause analysis
Contribute to attack surface monitoring
You’ll also work across broader Cyber Risk Management areas, including:
Governance & Risk
Identity & Access Management (IAM)
Endpoint & Network Security
SOC & Cloud Security
Third-Party Risk Management (TPRM)
What We’re Looking For
Strong knowledge of OWASP Top 10 & network security
Hands-on experience with tools like Burp Suite, Nmap, and Metasploit
Ability to exploit, validate, and remediate vulnerabilities
Clear reporting and communication skills
Bonus
Certifications like CEH / OSCP
Cloud or DevSecOps experience
Job Types: Permanent, Full time
Pay: ₹30,000.00 - ₹50,000.00 per month
Advantages:
Paid sick time
Provident Fund
Application Question(s):
Which tools (e.g., Burp Suite, Nmap) do you use most often to exploit and validate OWASP Top 10 vulnerabilities like SQLi or XSS?
Can you give a brief example of how you have previously reviewed a system configuration and successfully hardened it against attacks?
Describe your experience with supporting incident investigations. How do you approach finding the root cause of a security breach?
Beyond pentesting, which broader areas of risk management (such as IAM, SOC, Cloud Security, or TPRM) do you have hands-on experience with?
Do you currently hold an OSCP or CEH certification, or do you have practical experience with Cloud/DevSecOps settings?