Vulnerability Assessment & Penetration Tester (VAPT Engineer) - OWASP / MITRE ATT&CK - Mumbai

Vulnerability Assessment & Penetration Tester (VAPT Engineer) - OWASP / MITRE ATT&CK - Mumbai

19 Sep
|
benz calder
|
Mumbai

19 Sep

benz calder

Mumbai

Role Overview:

We are looking for a hands-on VAPT Engineer with 3–4 years of experience to join our Cyber Operations & Engineering team. You will oversee the end-to-end Vulnerability Assessment program, conduct rigorous penetration testing across web applications and network architectures, validate attack paths, and collaborate with engineering teams on remediation.

Key Responsibilities:

- Vulnerability Assessment Program: Manage the organization’s VA program across servers, endpoints, network devices, applications, and cloud assets.
- Web & Network Penetration Testing: Perform in-depth VAPT on web applications and internal/external networks.
- Scanning & False-Positive Elimination: Conduct authenticated and unauthenticated vulnerability scans using enterprise tools, validate findings, and remove false positives.
- Risk Prioritization: Assign standardized risk ratings based on CVSS scoring and threat context.
- Remediation & Validation: Coordinate remediation efforts with infrastructure, application development, and DevOps teams, performing periodic reassessments to validate closures.
- Technical Reporting: Prepare comprehensive technical assessment reports, root-cause analyses, and executive summaries.
- Security Audits & Threat Intelligence: Support security design reviews, compliance audits,



and incident investigations while staying updated with emerging threats and CVEs.

Technical Requirements:

- Experience: 3–4 years of dedicated, hands-on VAPT experience.
- Security Standards: Solid working knowledge of OWASP Top 10 , CWE, CVSS, and MITRE ATT&CK.;
- Testing Domains: Proven hands-on testing experience across Web and Network environments.
- Security Tooling: Proficiency with Burp Suite , Nessus / Qualys / Rapid7 , Nmap , and Metasploit .
- Systems & Networking: Solid understanding of Windows, Linux, Active Directory, network protocols, and authentication mechanisms.
- Scripting: Basic automation scripting using Python .
- Preferred Certifications: CEH , eJPT , or PNPT .

Soft Skills:

- Strong technical reporting, analytical documentation, and communication skills.
- Ability to work both independently and collaboratively across multidisciplinary teams.
- Proficiency in structured Excel reporting and presentation creation.

What we offer:

- Exposure to complex, large-scale enterprise Vulnerability Management and Penetration Testing engagements across India.
- Direct access to enterprise-grade security platforms and offensive tooling.
- A high-performance, collaborative engineering environment with structured career growth paths.

Location: Andheri East, Mumbai

📌 Vulnerability Assessment & Penetration Tester (VAPT Engineer) - OWASP / MITRE ATT&CK - Mumbai
🏢 benz calder
📍 Mumbai

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: vulnerability assessment & penetration tester (vapt engineer) - owasp / mitre att&ck - mumbai / mumbai

Subscribe to this job alert:

Get the latest job offers by email for: vulnerability assessment & penetration tester (vapt engineer) - owasp / mitre att&ck - mumbai / mumbai