11 Sep
|
ISECURION
|
Bengaluru
11 Sep
ISECURION
Bengaluru
Company Description
ISECURION is a CERT-In empanelled and ISO 27001:2022 certified cybersecurity consulting company that helps organizations stay secure in an increasingly complex digital world. The team focuses on strengthening security posture, meeting compliance requirements, and building long-term cyber resilience for businesses of various sizes. Services include Vulnerability Assessment & Penetration Testing (VAPT), compliance audits, cloud security, DFIR, risk assessments, and managed security services. ISECURION is known for its practical, business-focused approach that goes beyond identifying vulnerabilities to explaining impact, prioritizing remediation, and aligning with industry standards and regulations. The company is driven by a passionate team committed to research, innovation, and delivering meaningful security outcomes.
Role Description
We are looking for a motivated fresher to join our Vulnerability Assessment and Penetration Testing (VAPT) team, covering web applications, APIs, and network/infrastructure environments. This role is ideal for recent graduates or candidates with foundational knowledge of cybersecurity concepts who are eager to build hands-on expertise in offensive security. The selected candidate will work closely with senior consultants and clients to learn, assist in identifying, and report on security vulnerabilities, under the guidance of experienced mentors. The role is based out of our Bengaluru or Mumbai office.
Key Responsibilities:
• Perform Vulnerability Assessment and Penetration Testing (VAPT) on web applications, APIs, and network/infrastructure using manual and automated techniques.
• Evaluate application security against OWASP Top 10 and CWE/SANS Top 25 guidelines.
• Conduct penetration tests on RESTful/SOAP APIs to identify flaws such as improper authentication, authorization issues, injection vulnerabilities, and data exposure.
• Perform internal and external network penetration testing to identify misconfigurations, outdated services, and exploitable vulnerabilities.
• Assist in configuration reviews, firewall rule reviews, and server hardening assessments.
• Identify risks related to authentication, session management, business logic, and data handling.
• Prepare detailed penetration test reports covering findings, risk ratings, and actionable remediation recommendations.
• Support senior consultants in delivering findings and walkthroughs to technical and non-technical stakeholders.
• Stay updated on emerging vulnerabilities, attack techniques, and industry best practices.
• Coordinate with client IT/security teams during testing engagements as required.
Skills & Qualifications:
• Working knowledge of vulnerability scanning and manual testing tools such as Burp Suite, OWASP ZAP, Nessus, Nikto, and Acunetix.
• Familiarity with network scanning and exploitation tools such as Nmap, Metasploit, and Wireshark.
• Basic understanding of scripting/programming (Python, Bash, or similar) is an added advantage.
• Strong understanding of SSL/TLS, encryption protocols, and secure configuration practices.
• Familiarity with Kali Linux and common penetration testing methodologies (OSSTMM, PTES).
• Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related field is preferred; candidates with solid hands-on experience will also be considered.
• 0-1 year of relevant experience conducting security assessments and penetration tests on web applications, APIs, and network/infrastructure.
• Good understanding of networking fundamentals, operating systems, and common enterprise technologies
📌 Security Analyst Intern (Bengaluru)
🏢 ISECURION
📍 Bengaluru