Application Security Consultant

SecurityBoat Cybersecurity Solutions Private Limited

Mumbai

On-site

INR 1,200,000 - 2,200,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive compensation
Specialized cybersecurity team
Professional development

Job summary

SecurityBoat Cybersecurity Solutions Private Limited is seeking a highly skilled Application Security Consultant to join our Offensive Security team. The role requires hands-on testing across Web, Android, iOS, APIs, and Thick Client applications, with an offensive mindset to uncover complex vulnerabilities and logic flaws.

The candidate should conduct end-to-end authenticated assessments, identify external attack surfaces, and think like an attacker.

Qualifications

  • Minimum 3 years of hands-on penetration testing experience.
  • At least one published CVE.
  • Ability to execute complete penetration testing engagements independently.

Responsibilities

  • Perform end-to-end penetration testing engagements from recon to reporting.
  • Identify complex vulnerabilities and attack vectors beyond automated scans.
  • Assess external attack surface and misconfigurations.

Skills

Web security
Android security
iOS security
API security
Thick client security
OWASP Top 10
OWASP API Top 10
Authenticated pentesting
Auth & access control
External pen-testing
Attack path identification
Analytical skills
Documentation

Job description

We are looking for a highly skilled Application Security Consultantto join our Offensive Security team. The idealcandidate should have extensive hands-on experience performing penetration testing across modern applications,including Web, Mobile (Android & iOS), APIs, and Thick Client applications

This role requires an offensive mindset with the ability to identify complex security vulnerabilities, business logicflaws, authentication and authorization weaknesses, and real-world attack paths beyond automated scanning. Thecandidate should be capable of performing end-to-end authenticated security assessments and should possess strongknowledge of external attack surface analysis. During authorized engagements, the engineer should be able to identifyalternative access paths to target applications by leveraging exposed assets, internet-facing services, misconfigurations,publicly available information, credential exposure, or other legitimate attack vectors, wherever applicable within theagreed scope. The ideal candidate is someone who enjoys solving complex security challenges, thinks like an attacker,and can independently execute complete penetration testing engagements from reconnaissance through reporting.

TECHNICAL SKILLS
  • Web Application Security Testing
  • Android Application Security Testing
  • iOS Application Security Testing
  • API Security Testing (REST, GraphQL, SOAP)
  • Thick Client/Desktop Application Security Testing
  • OWASP Top 10
  • OWASP API Security Top 10
  • Authenticated penetration testing
  • Authentication, authorization, session management, access control, and business logic testing
  • External network penetration testing and attack surface assessment
  • Identifying alternate attack paths using publicly exposed infrastructure, internet-facing assets, credential exposure(where authorized), or security misconfigurations
  • Strong analytical and problem-solving skills
  • Technical documentation and report-writing
MANDATORY REQUIREMENTS

Minimum 3 years of hands-on penetration testing experience. At least one published CVE where the candidate hasbeen credited. Ability to execute complete penetration testing engagements independently

CERTIFICATIONS
  • OSCP / OSCP+
  • eCPPT
  • eWPTX
  • eMAPT
  • BSCP
  • CRTO
  • CARTP
  • Relevant Cloud Security Certifications
  • Flexible engagements tailored to professional and personal goals.
  • Competitive compensation structure.
  • Access to specialized expertise and a collaborative cybersecurity team.
  • Professional development opportunities and recognition within the cybersecurity community.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Consultant
Application Security Consultant

Securityboat • Mumbai

On-site
INR 1,200,000 - 2,000,000
Flexible engagements
Competitive compensation
Collaborative cybersecurity team
+1
Security Penetration Testing Consultant
Security Penetration Testing Consultant

Withum • Bengaluru

On-site
INR 900,000 - 1,300,000
Application Security
Application Security

Airtel • India

On-site
INR 1,200,000 - 2,400,000
Security-focused culture
Senior Security Consultant
Senior Security Consultant

Payatu Technologies Pvt Ltd • Pune District

On-site
INR 1,800,000 - 3,200,000
Cyber Security Specialist
Cyber Security Specialist

Muthoot FinCorp (MFL) • India

On-site
INR 1,200,000 - 2,400,000
Security Lead- Red Teaming and Application Security
Security Lead- Red Teaming and Application Security

Security Brigade • Navi Mumbai

On-site
INR 4,000,000 - 7,000,000
Associate Cybersecurity Consultant
Associate Cybersecurity Consultant

Security Brigade • Mumbai

Hybrid
INR 800,000 - 1,200,000
Competitive salary aligned to experience
Hybrid + remote-friendly
Sponsorship for offensive security certifications
+2
Application Security Engineer
Application Security Engineer

Cynosure Corporate Solutions • Chennai District

On-site
INR 1,500,000 - 2,500,000
Appsec Specialist - Lead
Appsec Specialist - Lead

Adani Group • Ahmedabad District

On-site
INR 2,800,000 - 4,200,000
Application Security Engineer
Application Security Engineer

Kyndryl • Dadri, Greater Noida

On-site
INR 2,500,000 - 4,500,000