24 Sep
|
Motadata
|
Ahmedabad
24 Sep
Motadata
Ahmedabad
Job Title: Penetration Tester Experience:
3–5 Years
Role Overview We are looking for a hands-on
Penetration Tester with 3–5 years of experience to identify, validate, and help remediate security vulnerabilities across our Web applications, APIs, cloud infrastructure, and supporting systems. The candidate should have strong practical knowledge of penetration testing methodologies and modern security tools, along with the ability to leverage
AI-assisted security tools, LLMs, and automation to improve vulnerability discovery, analysis, reporting, and repetitive security activities.
Key Responsibilities Penetration Testing & Vulnerability Assessment Perform penetration testing of web applications, APIs, SaaS platforms, networks, and cloud environments . Identify and validate vulnerabilities based on
OWASP Top 10, OWASP API Security, CWE, CVE, and industry security practices . Conduct vulnerability assessments and distinguish exploitable security risks from false positives. Perform security testing for authentication, authorization, access control, session management, APIs, and tenant isolation. Security Tools & Automation Hands-on experience with tools such as
Burp Suite, Nmap, OWASP ZAP, Metasploit, Nuclei, vulnerability scanners, and related security toolsets . Develop scripts and automation using
Python, Bash, or similar technologies for security testing and repetitive assessment activities. Integrate security testing into
CI/CD and DevSecOps workflows where appropriate. AI-Assisted Security Testing Effectively use modern
AI/LLM-assisted development and security tools to accelerate security research, test-case generation, scripting, vulnerability analysis, and reporting. Build AI-assisted automation for repetitive penetration-testing and vulnerability-management activities. Apply appropriate validation and security controls when using AI-generated scripts, findings, or remediation recommendations.
Reporting & Remediation Prepare clear penetration-testing reports containing risk, severity, evidence, business impact, and remediation recommendations . Work with Development, DevOps, SRE, and Platform teams to remediate identified vulnerabilities. Perform remediation validation and closure testing.
Support security audits, customer security assessments, and compliance initiatives such as
SOC 2 and ISO 27001 .
Required Skills 3–5 years of hands-on experience in
VAPT / Penetration Testing / Application Security . Strong understanding of
OWASP Top 10, API Security, CVSS, CWE, CVE, and common attack techniques . Hands-on experience with
Burp Suite, Nmap, OWASP ZAP, Nuclei, Metasploit, and vulnerability scanning tools . Good understanding of
HTTP/HTTPS, REST APIs, authentication, networking, Linux, and security fundamentals . Experience with
Python/Bash scripting and security automation . Ability to analyze vulnerabilities and provide practical remediation guidance. Good technical documentation and communication skills.
Positive to Have Experience with
Kubernetes, Docker, microservices, and cloud-native SaaS environments . Exposure to SAST, DAST, SCA, secret scanning, and DevSecOps security tools. Experience testing multi-tenant SaaS applications and APIs . Familiarity with threat modeling and MITRE ATT&CK.; Certifications such as
OSCP, CEH, eJPT, PNPT, or equivalent practical security certifications . Experience building security automation or AI-assisted security workflows.
Success Metrics Identification of meaningful security vulnerabilities before production/customer exposure. Reduction in false positives and improvement in vulnerability validation quality. Timely remediation and successful closure/retesting of identified vulnerabilities.
Increased automation of repetitive security testing and assessment activities. Improved penetration-testing coverage across applications, APIs, cloud, and SaaS infrastructure. Effective use of AI and automation to improve security testing efficiency without compromising assessment quality.
📌 Senior Penetration Tester (Ahmedabad)
🏢 Motadata
📍 Ahmedabad