12 Sep
|
Michael Page
|
India
12 Sep
Michael Page
India
Role & responsibilities
Web & API Exploitation: Testing complex web apps and services (REST, GraphQL, microservices), bypassing complex authentication, authorization, and WAF controls in contemporary web apps and APIs
Enterprise/Ecommerce solutions: Salesforce (SFCC, SFMC), Shopify, etc.
Network Infrastructure: Assessing internal/external corporate networks and system configurations.
Mobile & Client Security: Reverse engineering, agile binary analysis, and static analysis of mobile platforms and complex thick client applications.
Multi-Cloud Penetration Testing: Deep knowledge of exploiting IAM policies, serverless functions, and containerized architectures (Kubernetes/Docker) in Azure, GCP, AWS and Alicloud.
Active Directory & Network Infrastructure: Designing and executing internal infrastructure compromise pathways (Kerberoasting, AD CS abuse, lateral movement).
AI-Enabled Pentesting Capability: Proven experience utilizing or building AI-driven security tooling (e.g., leveraging LLMs for automated script generation, secure code review, or creating agentic workflows to augment penetration testing capabilities).
Advanced Scripting & Exploit Dev: High proficiency in Python, Go, Bash, or PowerShell to develop custom tooling, shellcode, and automated exploit flows.
Preferred candidate profile
Experience: 8+ years of dedicated, hands-on experience in offensive security, penetration testing, or vulnerability research.
Education: Bachelors degree in computer science, Information Security, Cybersecurity, or equivalent practical field experience.
📌 Penetration Tester Hyderabad (India)
🏢 Michael Page
📍 India