The Associate independently conducts basic penetration tests and vulnerability assessments under general supervision. Responsible for accurate testing, explicit finding documentation and professional client interaction.
KEY RESPONSIBILITIES
- Conducts web application penetration tests using OWASP methodology independently
- Performs network vulnerability assessments and documents findings accurately
- Produces clear, accurate vulnerability reports with risk ratings and remediation guidance
- Communicates with clients for scope clarifications under senior guidance
- Follows QRC testing methodology, PTES standards and responsible disclosure
- Keeps up with emerging CVEs and security research in assigned domain
- Actively pursues first relevant security certification
TECHNICAL COMPETENCIES
- Working knowledge of OWASP Top 10 web application vulnerabilities
- Proficiency in Burp Suite, Nmap and basic network scanning tools
- Understanding of network pen testing enumeration, exploitation, post-exploitation
- Ability to produce structured vulnerability reports with CVSS scoring
- Basic understanding of OS security Windows and Linux
Education
- Bachelor's degree B.E./B.Tech/BCA/B.Sc. CS or equivalent