17 Sep
|
GIST Management Solutions
|
Bengaluru
17 Sep
GIST Management Solutions
Bengaluru
Job Title: Ethical Hacking and Penetration Testing Trainer
Engagement Type: Part-Time / Contract
Session Duration: 2 hours per session
Session Timings: 5:30AM 7:30 AM or 8:00PM10:00 PM
Important Note
This is a part-time Ethical Hacking and Penetration Testing Trainer opportunity only and this is not a JOB.
Candidates looking exclusively for a full-time Cyber Security job or Network Security Engineer role should not apply.
About the Role:
We are seeking a Cybersecurity Trainer with hands-on experience in ethical hacking, penetration testing, vulnerability assessment, and web application security. The trainer will deliver interactive sessions, conduct live demonstrations, and guide learners through practical exercises in controlled environments.
The ideal candidate should be comfortable explaining technical concepts to learners with different experience levels. Beyond demonstrating tools, the trainer must explain why a testing technique is used, how to interpret its results, and how identified vulnerabilities can be addressed. Familiarity with red team concepts, defensive detection, and incident response is also required.
Key Responsibilities
- Deliver instructor-led training in ethical hacking, reconnaissance, network scanning, vulnerability assessment, and web application penetration testing.
- Explain the penetration testing lifecycle, including authorization, scoping, information gathering, vulnerability validation, evidence collection, and reporting.
- Conduct practical demonstrations using Kali Linux, Nmap, Burp Suite, and relevant security assessment tools.
- Prepare presentations, lab instructions, practical assignments, and supporting learning materials that connect technical concepts with realistic scenarios.
- Configure and maintain isolated lab environments using virtual machines and intentionally vulnerable applications.
- Guide learners through Linux commands, service enumeration, web traffic analysis, and controlled security testing.
- Demonstrate common web application vulnerabilities and explain their root causes, potential impact, and remediation.
- Connect offensive techniques with defensive observations, security logs, indicators of compromise, and incident response actions.
- Assess learner understanding through exercises, questions, and scenario discussions, providing constructive feedback.
- Troubleshoot technical issues, manage session time, and coordinate training readiness and learner support with the program team.
Required Technical Skills:
- Ethical Hacking and Penetration Testing: Practical understanding of assessment methodologies, testing scope, professional ethics, responsible disclosure, and the differences between vulnerability assessment, penetration testing, and red team operations.
- Kali Linux: Proficiency with command-line navigation, file permissions, processes, package management, security tools, and basic troubleshooting.
- Networking and Nmap: Strong knowledge of TCP/IP, DNS, ports, protocols, host discovery, network mapping, TCP and UDP scanning, SYN scans, service enumeration, and version detection.
- Web Application Security: Understanding of HTTP/HTTPS, cookies, sessions, authentication, access control, and OWASP Top 10 concepts. Ability to explain SQL injection, cross-site scripting, CSRF, and authentication weaknesses.
- Burp Suite:
Hands-on experience configuring the interception proxy, inspecting requests and responses, analyzing web traffic, and performing controlled request testing.
- Vulnerability Assessment: Ability to interpret scanner output, identify potential false positives, validate findings, and recommend practical remediation.
- Defensive Security: Working knowledge of attack lifecycle concepts, indicators of compromise, security logs, incident triage, evidence preservation, and basic investigation and mitigation techniques.
Experience and Qualifications:
- Relevant professional experience in ethical hacking, penetration testing, vulnerability assessment, application security, or a closely related cybersecurity role.
- Previous experience delivering technical training, workshops, bootcamps, structured mentoring, or internal knowledge-sharing sessions.
- Ability to discuss practical security assessment work, including testing decisions, findings, limitations, and remediation, without disclosing confidential information.
- A degree in Computer Science, Information Technology, Cybersecurity, or a related discipline is preferred. Equivalent practical experience will also be considered.
- Certifications such as OSCP, CEH, eJPT, or PNPT are preferred.
- Basic Python or Bash scripting, experience building training labs, and exposure to blue team collaboration are additional advantages.
Important Note
This is a part-time Ethical Hacking and Penetration Testing Trainer opportunity only and this is not a JOB. Candidates looking exclusively for a full-time Cyber Security job or Network Security Engineer role should not apply.
Candidates should apply only if they have solid hands-on Cyber Security engineering experience and are comfortable providing live online training to USA students.
📌 Ethical Hacking, Penetration Testing & Red Team - Trainer (Bengaluru)
🏢 GIST Management Solutions
📍 Bengaluru