08 Sep
|
Grapes Worldwide
|
Gurugram
08 Sep
Grapes Worldwide
Gurugram
Job Description
Security Tester – Technology Department
n
Location: Current Delhi / Hybrid
n
Department: Technology
n
Reporting To: Engineering Manager / Head of Technology
n
Company: Grapes Worldwide
n
n
About Grapes Worldwide
n
Grapes Worldwide is a digitally driven integrated communication and technology company that combines
n
creativity, data, media, and technology to deliver innovative solutions for leading brands. We are looking for a
n
highly skilled Security Tester who will play a critical role in ensuring the security, resilience, and compliance of our
n
digital products, platforms, and applications.
n
n
Position Overview
n
We are seeking a detail-oriented and proactive Security Tester to identify, assess, and mitigate security
n
vulnerabilities across web applications, mobile applications, APIs, cloud infrastructure, and internal systems. The
n
ideal candidate will have hands-on experience in penetration testing, vulnerability assessments, secure
n
development practices, and application security testing.
n
This role requires close collaboration with developers, DevOps engineers, product teams, and technology
n
leadership to ensure security is embedded throughout the software development lifecycle (SDLC).
n
n
Key Responsibilities
n
Security Testing & Assessment
n
● Conduct comprehensive vulnerability assessments and penetration testing (VAPT) of web applications,
n
mobile applications, APIs, and cloud environments.
n
● Identify, validate, and document security vulnerabilities using industry-standard methodologies.
n
● Perform manual and automated security testing throughout the development lifecycle.
n
● Evaluate application security against the latest security threats and attack vectors.
n
● Conduct authentication, authorization, session management,
and access control testing.
n
n
Application Security
n
● Review application architecture and code for security weaknesses.
n
● Collaborate with developers to remediate vulnerabilities and implement secure coding practices.
n
● Validate security fixes and perform regression security testing.
n
● Assess APIs for security flaws, including authentication, authorization, and data exposure risks.
n
n
Cloud & Infrastructure Security
n
● Perform security assessments of cloud environments (AWS, Azure, GCP).
n
● Evaluate infrastructure configurations, network security controls, and IAM policies.
n
● Identify misconfigurations and security gaps in containerized and serverless environments.
n
n
Security Compliance & Governance
n
● Ensure adherence to security frameworks such as OWASP Top 10, OWASP ASVS, NIST, CIS Benchmarks, and
n
industry best practices.
n
● Assist in security audits, compliance assessments, and risk evaluations.
n
● Support security awareness initiatives and contribute to secure SDLC processes.
n
n
Reporting & Documentation
n
● Prepare detailed vulnerability assessment reports with risk ratings and remediation recommendations.
n
● Present findings to technical and non-technical stakeholders.
n
● Maintain documentation of security assessments, testing methodologies, and remediation tracking.
n
n
Required Qualifications
n
Education
n
● Bachelor's degree in Computer Science, Information Security, Cyber Security, Information Technology, or a
n
related field.
n
Experience
n
● 3–6 years of hands-on experience in Application Security Testing, Vulnerability Assessment, and
n
Penetration Testing.
n
● Experience testing web applications, APIs, mobile applications, and cloud environments.
n
● Prior experience working within Agile development teams.
📌 Security Tester - Technology Department (Gurugram)
🏢 Grapes Worldwide
📍 Gurugram