04 Oct
|
Michael Page
|
Hyderabad
04 Oct
Michael Page
Hyderabad
Role & responsibilities
- Web & API Exploitation: Testing complex web apps and services (REST, GraphQL, microservices), bypassing complex authentication, authorization, and WAF controls in contemporary web apps and APIs
- Enterprise/Ecommerce solutions: Salesforce (SFCC, SFMC), Shopify, etc.
- Network Infrastructure: Assessing internal/external corporate networks and system configurations.
- Mobile & Client Security: Reverse engineering, dynamic binary analysis, and static analysis of mobile platforms and complex thick client applications.
- Multi-Cloud Penetration Testing: Deep knowledge of exploiting IAM policies, serverless functions, and containerized architectures (Kubernetes/Docker) in Azure, GCP, AWS and Alicloud.
- Active Directory & Network Infrastructure: Designing and executing internal infrastructure compromise pathways (Kerberoasting, AD CS abuse, lateral movement).
- AI-Enabled Pentesting Capability: Proven experience utilizing or building AI-driven security tooling (e.g., leveraging LLMs for automated script generation, secure code review, or creating agentic workflows to augment penetration testing capabilities).
- Advanced Scripting & Exploit Dev: High proficiency in Python, Go, Bash, or PowerShell to develop custom tooling, shellcode, and automated exploit flows.
Preferred candidate profile
- Experience: 8+ years of dedicated, hands-on experience in offensive security, penetration testing, or vulnerability research.
- Education: Bachelors degree in computer science, Information Security, Cybersecurity, or equivalent practical field experience.
📌 Penetration Tester (Hyderabad)
🏢 Michael Page
📍 Hyderabad