Live opening · Posted 12 days ago

Vulnerability Assessment & Penetration Tester (VAPT Engineer) - OWASP / MITRE ATT&CK - Mumbai

Benz Calder · Mumbai, Maharashtra, India (On-site)
Linkedin No
You are 12 days behind. JobBeeper subscribers saw this role while it was still new.

At a glance

The key details from the original listing.

Posted 12 days ago
CompanyBenz Calder
LocationMumbai, Maharashtra, India (On-site)
Work modeNo
SourceLinkedin
Listed12 days ago

Your early-applicant advantage

Live timing from JobBeeper.

Live data
8 min from Linkedin publishing this role to us finding it
6 min median time from a role going live to a subscriber being told
6 hours subscribers had this role before this page existed
71,284 roles found in the last 24 hours — the newest are not on this site yet
Start your free trial →

About the role

Description supplied by the original job listing.

Role Overview:
We are looking for a hands-on VAPT Engineer with 3–4 years of experience to join our Cyber Operations & Engineering team. You will oversee the end-to-end Vulnerability Assessment program, conduct rigorous penetration testing across web applications and network architectures, validate attack paths, and collaborate with engineering teams on remediation.
Key Responsibilities:
Vulnerability Assessment Program: Manage the organization’s VA program across servers, endpoints, network devices, applications, and cloud assets.
Web & Network Penetration Testing: Perform in-depth VAPT on web applications and internal/external networks.
Scanning & False-Positive Elimination: Conduct authenticated and unauthenticated vulnerability scans using enterprise tools, validate findings, and remove false positives.
Risk Prioritization: Assign standardized risk ratings based on CVSS scoring and threat context.
Remediation & Validation: Coordinate remediation efforts with infrastructure, application development, and DevOps teams, performing periodic reassessments to validate closures.
Technical Reporting: Prepare comprehensive technical assessment reports, root-cause analyses, and executive summaries.
Security Audits & Threat Intelligence: Support security design reviews, compliance audits, and incident investigations while staying updated with emerging threats and CVEs.
Technical Requirements:
Experience: 3–4 years of dedicated, hands-on VAPT experience.
Security Standards: Solid working knowledge of OWASP Top 10, CWE, CVSS, and MITRE ATT&CK.
Testing Domains: Proven hands-on testing experience across Web and Network environments.
Security Tooling: Proficiency with Burp Suite, Nessus / Qualys / Rapid7, Nmap, and Metasploit.
Systems & Networking: Strong understanding of Windows, Linux, Active Directory, network protocols, and authentication mechanisms.
Scripting: Basic automation scripting using Python.
Preferred Certifications: CEH, eJPT, or PNPT.
Soft Skills:
Strong technical reporting, analytical documentation, and communication skills.
Ability to work both independently and collaboratively across multidisciplinary teams.
Proficiency in structured Excel reporting and presentation creation.
What we offer:
Exposure to complex, large-scale enterprise Vulnerability Management and Penetration Testing engagements across India.
Direct access to enterprise-grade security platforms and offensive tooling.
A high-performance, collaborative engineering environment with structured career growth paths.
Location:
Andheri East, Mumbai

Work arrangement
No

Get JobBeeper Mobile App

Never miss a job opening! Get instant job alerts on your phone.

Subscribers see fresh openings within minutes. Download the JobBeeper App on Google Play to get real-time push notifications and apply before anyone else.

⚡ Instant Push Alerts 🎯 Tailored Filters 🚀 Direct Employer Links
GET IT ON Google Play

More openings worth a look

Recently tracked roles with full details and direct application links.

6 roles
Good roles move before most people even see them. Tell JobBeeper what you want and get fresh matches delivered in minutes.
Start your free trial →
⚡ Get fresh job alerts 📱 Get App