29 Aug
|
CyberNX Technologies
|
Andheri East
29 Aug
CyberNX Technologies
Andheri East
Key Responsibilities:
Perform VAPT engagements for web applications, APIs, mobile applications, internal and external networks, and cloud environments.
Identify, validate, and assess vulnerabilities, misconfigurations, and business logic flaws.
Prepare detailed assessment reports with technical findings, proof-of-concept evidence, risk ratings, business impact, and remediation recommendations.
Communicate vulnerabilities and associated risks to technical and non-technical stakeholders.
To perform remediation validation and re-testing to confirm the closure of identified issues.
Stay updated with emerging threats, vulnerabilities, attack techniques, and current security trends.
Technical Skills :
Strong understanding of networking concepts including TCP/IP, DNS, HTTP/HTTPS, routing, switching, VPNs, and firewalls
Valuable knowledge of Operating Systems: o Linux (File system, Permissions, Basic commands) o Windows (Architecture, services, Registry basics)
Strong understanding of web, mobile (Android/IOS) and API application architecture and security concepts.
Knowledge of authentication and authorization mechanisms including sessions, cookies, JWT, OAuth, and SSO.
Understanding of common attack vectors such as XSS, SQL injection, SSRF, CSRF, and IDOR.
Understanding of REST, SOAP, GraphQL, and modern API architectures.
Hands-on experience identifying vulnerabilities aligned with the OWASP Top 10 & SANS 25.
Hands-on experience with tools: Burp Suite, Nessus, Metasploit, SQLmap, Postman, MobSF
Strong knowledge in leveraging AI to automate VAPT processes and support security research and exploration.
Strong troubleshooting skills with the ability to identify and resolve issues by understanding the client's environment.
Professional Skills
Strong analytical and problem-solving abilities.
Ability to think like an attacker while maintaining a risk-based approach.
Strong technical documentation and report-writing skills.
Strong verbal and written communication skills.
Ability to work independently as well as collaboratively within a team environment.
Strong attention to detail and commitment to delivering high-quality assessments.
Ability to manage multiple engagements and meet project deadlines.
Eagerness to learn new technologies, attack techniques, and security methodologies.
Qualifications
Education o Bachelor’s degree in Computer Science, Information Technology, Cyber Security, or a related field.
Experience o 0-1 year of hands-on experience in VAPT, Application Security, Offensive Security, or related cybersecurity domains. Internship, freelance, bug bounty, research, or lab-based experience will be considered valuable.
Pay: ₹10,000.00 per month
Application Question(s)
- Are you currently pursuing or have you completed a Bachelor's degree in Computer Science, Information Technology, Cyber Security, or a related field?
- Do you have any hands-on exposure to Cyber Security, VAPT, Application Security, or Penetration Testing through internships, projects, labs, or self-learning?
- Are you familiar with OWASP Top 10 vulnerabilities?
- Have you used Burp Suite for security testing or learning purposes?
- Have you performed Web Application Security Testing as part of a project, lab, internship, or self-learning exercise?
- Do you have basic knowledge of Linux commands and file permissions?
- Do you have a basic understanding of networking concepts such as TCP/IP, DNS, HTTP/HTTPS, and Firewalls?
- Have you used platforms such as TryHackMe, Hack The Box, PortSwigger Web Security Academy, or similar cybersecurity learning platforms?
- Are you based in Mumbai or willing to work from Mumbai?
- Briefly describe your best cybersecurity project and provide the project link.
Work Location: In person
📌 Application Security Intern (Andheri East)
🏢 CyberNX Technologies
📍 Andheri East