Live opening · Posted 12 days ago
At a glance
The key details from the original listing.
Your early-applicant advantage
Live timing from JobBeeper.
About the role
Description supplied by the original job listing.
Role Overview:
We are looking for a hands-on VAPT Engineer with 3–4 years of experience to join our Cyber Operations & Engineering team. You will oversee the end-to-end Vulnerability Assessment program, conduct rigorous penetration testing across web applications and network architectures, validate attack paths, and collaborate with engineering teams on remediation.
Key Responsibilities:
Vulnerability Assessment Program: Manage the organization’s VA program across servers, endpoints, network devices, applications, and cloud assets.
Web & Network Penetration Testing: Perform in-depth VAPT on web applications and internal/external networks.
Scanning & False-Positive Elimination: Conduct authenticated and unauthenticated vulnerability scans using enterprise tools, validate findings, and remove false positives.
Risk Prioritization: Assign standardized risk ratings based on CVSS scoring and threat context.
Remediation & Validation: Coordinate remediation efforts with infrastructure, application development, and DevOps teams, performing periodic reassessments to validate closures.
Technical Reporting: Prepare comprehensive technical assessment reports, root-cause analyses, and executive summaries.
Security Audits & Threat Intelligence: Support security design reviews, compliance audits, and incident investigations while staying updated with emerging threats and CVEs.
Technical Requirements:
Experience: 3–4 years of dedicated, hands-on VAPT experience.
Security Standards: Solid working knowledge of OWASP Top 10, CWE, CVSS, and MITRE ATT&CK.
Testing Domains: Proven hands-on testing experience across Web and Network environments.
Security Tooling: Proficiency with Burp Suite, Nessus / Qualys / Rapid7, Nmap, and Metasploit.
Systems & Networking: Strong understanding of Windows, Linux, Active Directory, network protocols, and authentication mechanisms.
Scripting: Basic automation scripting using Python.
Preferred Certifications: CEH, eJPT, or PNPT.
Soft Skills:
Strong technical reporting, analytical documentation, and communication skills.
Ability to work both independently and collaboratively across multidisciplinary teams.
Proficiency in structured Excel reporting and presentation creation.
What we offer:
Exposure to complex, large-scale enterprise Vulnerability Management and Penetration Testing engagements across India.
Direct access to enterprise-grade security platforms and offensive tooling.
A high-performance, collaborative engineering environment with structured career growth paths.
Location:
Andheri East, Mumbai
Work arrangement
No
More openings worth a look
Recently tracked roles with full details and direct application links.