24 Sep
|
Security Lit
|
Mumbai
24 Sep
Security Lit
Mumbai
abold text-[#3265fe] uppercase tracking-wider">About the Role
- Security Lit is looking for a Red Teaming & VAPT Penetration Tester to join our cybersecurity team.
- The primary focus of this role will be Red Teaming, adversary simulation, attack simulation, and offensive security assessments, supported by hands-on experience in VAPT and penetration testing.
- The ideal candidate should have practical knowledge of how real-world attacks are performed, including initial access, exploitation, privilege escalation, lateral movement, Active Directory attacks, post-exploitation, and maintaining access within an authorized testing environment.
- This role is suitable for candidates who have a Red Teaming background along with VAPT/Penetration Testing experience.
Responsibilities
- Conduct Red Team engagements, adversary simulations, and attack simulations against authorized targets.
- Perform offensive security assessments to identify and demonstrate real-world attack paths.
- Conduct Active Directory security assessments, including enumeration, privilege escalation, lateral movement, and post-exploitation.
- Perform Web Application, API, Mobile Application, and Thick Client penetration testing.
- Identify, validate, and exploit security vulnerabilities within authorized testing environments.
- Perform initial access, privilege escalation, lateral movement, and post-exploitation activities.
- Use offensive security tools and techniques to simulate realistic attacker behavior.
- Assess the effectiveness of security controls and identify potential attack paths.
- Perform vulnerability validation and demonstrate the business/security impact of identified vulnerabilities.
- Document technical findings, attack chains, exploitation steps, risk levels, and remediation recommendations.
- Prepare explicit and detailed technical security assessment and penetration testing reports.
- Work with the security team to continuously improve testing methodologies, tools, and attack techniques.
- Stay updated with current offensive security techniques, vulnerabilities, tools, and threat actor methodologies.
Requirements Red Teaming / Offensive Security
- 1+ year of hands-on experience in Red Teaming, Offensive Security, or related areas.
- Strong understanding of Red Teaming methodologies and adversary simulation.
- Practical knowledge of Active Directory attacks and post-exploitation.
- Understanding of initial access, privilege escalation, lateral movement, and attack chaining.
- Knowledge of common offensive security tools and frameworks.
- Ability to identify and demonstrate realistic attack paths in authorized environments.
VAPT / Penetration Testing
- Hands-on experience in Vulnerability Assessment & Penetration Testing (VAPT).
- Experience with Web Application and API penetration testing.
- Exposure to Mobile Application and Thick Client penetration testing is preferred.
- Good understanding of common vulnerabilities and exploitation techniques.
- Experience with tools such as Burp Suite, OWASP ZAP, Nmap, Metasploit, BloodHound, Impacket, or similar tools will be an advantage.
Reporting & Documentation
- Ability to create detailed and professional penetration testing and Red Team reports.
- Strong understanding of vulnerability impact, risk assessment, evidence collection, and remediation recommendations.
- Good analytical and problem-solving skills.
- Ability to communicate technical findings clearly to both technical and non-technical stakeholders.
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 Red Teaming - Offensive Security Specialist (Mumbai)
🏢 Security Lit
📍 Mumbai