Assistant manager - Vulnerability Management

Unilever

Bengaluru

On-site

INR 300,000 - 600,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Unilever in Bengaluru (UniOps) seeks an experienced Offensive Security Assistant Manager to lead hands-on pentesting and manage vendor engagements across web, API, mobile, and cloud environments. You’ll drive risk-based testing, EASM, and deception initiatives, partnering with engineering and threat intelligence teams.

You will coordinate with external MSSPs, validate findings, and help mature security playbooks and processes in a fast-paced, global consumer goods environment.

Qualifications

  • 5–8 years of experience in Offensive Security, Application Security, or Penetration Testing.
  • Hands-on experience in web, API, and mobile security testing.
  • Experience working with external pentest vendors/MSSPs.
  • Familiarity with cloud environments and modern application architectures.
  • Certifications (e.g., OSCP, GPEN, GWAPT, CEH) are a plus.

Responsibilities

  • Perform penetration testing across web, APIs, mobile, and cloud environments; validate vulnerabilities and assess exploitability.
  • Support red teaming and adversary simulation activities to test security controls and detection capabilities.
  • Drive pentest lifecycle execution – scoping, planning, access coordination, tracking, and closure.
  • Coordinate with external vendors/MSSPs, ensuring quality of testing, actionable reporting, and adherence to timelines.
  • Review and challenge pentest findings for accuracy, severity, and business impact.
  • Support risk-based prioritization and remediation tracking in collaboration with application, cloud, and infrastructure teams; support vulnerability management.
  • Oversee AI, OT and other factory related offensive testing.
  • Responsible for managing deception tech platform and work with engineering and threat intelligence team.
  • Contribute to improving offensive security processes, standards, and playbooks.

Job description

Job Title: Assistant manager - Vulnerability Management

Job Location: UniOps Bangalore

ABOUT UNILEVER:

Be part of the world’s most successful, purpose‑led business. Work with brands that are well‑loved around the world, that improve the lives of our consumers and the communities around us. We promote innovation, big and small, to make our business win and grow; and we believe in business as a force for good. Unleash your curiosity, challenge ideas and disrupt processes; use your energy to make this happen. Our brilliant business leaders and colleagues provide mentorship and inspiration, so you can be at your best. Every day, nine out of ten Indian households use our products to feel good, look good and get more out of life – giving us a unique opportunity to build a brighter future. Every individual here can bring their purpose to life through their work. Join us and you’ll be surrounded by inspiring leaders and supportive peers. Among them, you’ll channel your purpose, bring fresh ideas to the table, and simply be you. As you work to make a real impact on the business and the world, we’ll work to help you become a better you.

ABOUT UNIOPS:

Unilever Operations (UniOps) is the global technology and operations engine of Unilever offering business services, technology, and enterprise solutions. UniOps serves over 190 locations and through a network of specialized service lines and partners delivers insights and innovations, user experiences and end-to-end seamless delivery making Unilever Purpose Led and Future Fit. Unilever is one of the world’s leading consumer goods companies with operations in over 190 countries and serving 3.4 billion consumers every day. Unilever delivers best in class performance with market making, unmissably superior brands which include Dove, Knorr, Domestos, Hellmann’s, Marmite and Lynx. Our strategy beings with a purpose that places our consumers at the heart of everything we do, “Brighten everyday life for all”.

ROLE PURPOSE:

This role supports the Offensive Security Lead in executing and maturing Unilever’s offensive security program through a combination of hands‑on penetration testing, red teaming support, and MSSP governance. The role focuses on identifying, validating, and managing exploitable risks across applications, APIs, mobile, AI agents and factory OT systems, while ensuring high‑quality and well‑coordinated testing delivery.

ROLE SUMMARY:

The Offensive Security Assistant Manager contributes to Unilever’s proactive cyber defence by combining technical testing capability with structured program execution. The role involves performing manual penetration testing and vulnerability validation, while also coordinating with external vendors to ensure effective coverage, quality, and timely execution of assessments. The role provides practical attacker‑driven insights into real‑world risk exposure, External Attack Surface Management (EASM), Deception technologies and Decoys, vulnerability lifecycle management while supporting the end‑to‑end pentesting lifecycle with App managers, maintains visibility of findings, and drives remediation with relevant teams. The position requires an attacker mindset, strong technical fundamentals, and effective stakeholder coordination skills, enabling the individual to contribute both hands‑on and operationally across multiple offensive security streams.

MAIN ACCOUNTABILITIES:
  • Perform penetration testing across web, APIs, mobile, and cloud environments; validate vulnerabilities and assess exploitability.
  • Support red teaming and adversary simulation activities to test security controls and detection capabilities.
  • Drive pentest lifecycle execution – scoping, planning, access coordination, tracking, and closure.
  • Coordinate with external vendors/MSSPs, ensuring quality of testing, actionable reporting, and adherence to timelines.
  • Review and challenge pentest findings for accuracy, severity, and business impact.
  • Support risk‑based prioritization and remediation tracking in collaboration with application, cloud, and infrastructure teams; support vulnerability management.
  • Oversee AI, OT and other factory related offensive testing.
  • Responsible for managing deception tech platform and work with engineering and threat intelligence team.
  • Contribute to improving offensive security processes, standards, and playbooks.
KEY SKILLS:
  • Hands‑on expertise in manual penetration testing (web, API, mobile).
  • Strong knowledge of OWASP Top 10, API security, authentication/authorization flaws, and business logic issues.
  • Familiarity with MITRE ATT&CK, red teaming techniques, and attacker methodologies.
  • Working knowledge of cloud security vulnerabilities (Azure/AWS/GCP) and common misconfigurations.
  • Understanding of vulnerability management and risk‑based prioritization.
  • Awareness of AI security risks / AI pentesting concepts, OT concepts.
  • Ability to validate and quality‑check vendor outputs.
  • Strong stakeholder communication and execution skills.
EXPERIENCE:
  • Experience: 5–8 years in Offensive Security, Application Security, or Penetration Testing.
  • Proven hands‑on experience in web/API/mobile security testing.
  • Exposure to red teaming or adversary simulations is desirable.
  • Experience working with external pentest vendors/MSSPs.
  • Familiarity with cloud environments and modern application architectures.
  • Knowledge of frameworks such as OWASP, MITRE ATT&CK, NIST.
  • Certifications (e.g., OSCP, GPEN, GWAPT, CEH) are a plus.
NOTE:

Note: "All official offers from Unilever are issued only via our Applicant Tracking System (ATS). Offers from individuals or unofficial sources may be fraudulent—please verify before proceeding."

COMPANY CULTURE:

Better Business. Better World. Better You. We’ve been pioneers, innovators and future-makers for over 120 years.

Learn More

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Penetration Tester | Web, Mobile & Cloud Security
Senior Penetration Tester | Web, Mobile & Cloud Security

Michael Page • Hyderabad

On-site
INR 1,200,000 - 2,200,000
Assistant Manager - Infosec
Assistant Manager - Infosec

Crisil • Kurla

On-site
INR 1,400,000 - 2,400,000
Regional CERT Manager
Regional CERT Manager

Unilever • Indore District

Hybrid
INR 9,606,000 - 17,291,000
Technology Manager
Technology Manager

Bank of America • India

On-site
INR 4,000,000 - 6,800,000
Assistant Manager - Direct Contracting
Assistant Manager - Direct Contracting

Unilever • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Junior Pentester
Junior Pentester

Jobgether • India

Remote
INR 500,000 - 700,000
Competitive base salary
Private healthcare
Equity opportunities
+7
Senior Engineer - Penetration Tester
Senior Engineer - Penetration Tester

Rakuten Symphony • Bengaluru

On-site
INR 3,500,000 - 6,000,000
Senior Associate Offensive Security
Senior Associate Offensive Security

RSM US LLP • Gurugram District

On-site
INR 1,500,000 - 2,500,000
Associate Cybersecurity Consultant
Associate Cybersecurity Consultant

Security Brigade • Mumbai

Hybrid
INR 800,000 - 1,200,000
Competitive salary aligned to experience
Hybrid + remote-friendly
Sponsorship for offensive security certifications
+2
239939-Manager
239939-Manager

EXL • Gurugram District

On-site
INR 1,200,000 - 2,000,000