Cyber Analysts - Vulnerability Management and Penetration Testing

Tata Power

Navi Mumbai, Mumbai

On-site

INR 800,000 - 1,400,000

Full time

5 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Tata Power is seeking a security professional to lead vulnerability assessments and penetration testing using tools like Qualys, Nessus, Burp Suite, and Metasploit. You will prioritize findings, track remediation, and report progress to infrastructure and application teams to ensure timely fixes.

The role requires 2–3 years of relevant experience, strong knowledge of network protocols and cloud platforms, and the ability to produce executive-level security reports.

Qualifications

  • 2–3 years of experience in vulnerability assessment, penetration testing, or red teaming.
  • Proficient with common vulnerability scanning and testing tools.
  • Experience writing technical and executive-level reports.
  • Familiar with OWASP Top 10, MITRE ATT&CK, and related security frameworks.

Responsibilities

  • Lead or participate in regular internal vulnerability scans using tools like Qualys, Tenable, Rapid7, etc.
  • Prioritize findings based on risk context (CVSS, EPSS, asset value, threat intel).
  • Track and report remediation progress; collaborate with infrastructure and application teams for timely fixes.
  • Ensure compliance with internal SLAs for remediation (e.g., fix critical within 15 days).
  • Develop and maintain dashboards, metrics, and KPIs for executive and operational reporting.
  • Maintain the asset inventory and ensure full scan coverage.
  • Perform or coordinate internal and external penetration testing for networks, web apps, APIs, and cloud services.
  • Validate exploitability of critical vulnerabilities; provide PoC reports where required.

Skills

Vulnerability assessment
Penetration testing
Red teaming
Report writing
Scripting

Tools

Qualys
Nessus
Nexpose
Tenable.io
Burp Suite
Metasploit
Nmap
Nikto
Wireshark
OWASP ZAP

Job description

Role & responsibilities:

Lead or participate in the regular execution of internal vulnerability scans using tools like Qualys, Tenable, Rapid7, etc.

  • Prioritize findings based on risk context (CVSS, EPSS, asset value, threat intel).
  • Track and report remediation progress; work closely with infrastructure and application teams to ensure timely fixes.
  • Ensure compliance with internal SLAs for remediation (e.g., fix critical within 15 days).
  • Develop and maintain dashboards, metrics, and KPIs for executive and operational reporting.
  • Maintain the asset inventory and ensure full scan coverage.
  • Perform or coordinate internal and external penetration testing for networks, web applications, APIs, and cloud services.
  • Validate exploitability of critical vulnerabilities; provide proof-of-concept (PoC) reports where required.
Preferred candidate profile:

2-3 years of experience in vulnerability assessment, penetration testing, or red teaming.

  • VM Tools: Qualys, Nessus, Nexpose, Tenable.io
  • Pentest Tools: Burp Suite, Metasploit, Nmap, Nikto, Wireshark, OWASP ZAP
  • Solid understanding of network protocols, OS internals, web application security, and cloud platforms (AWS/Azure).
  • Experience with OWASP Top 10, CWE, MITRE ATT&CK, and CISA KEV.
  • Ability to write technical and executive-level reports.
  • Scripting knowledge (e.g., Python, Bash, PowerShell) is a plus.
  • Bug Bounty experience is a plus.
  • Security Certifications: OSCP, eJPT, CEH, GPEN, GWAPT, CRTO, CEH
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Analyst / Sr. Security Analyst
Security Analyst / Sr. Security Analyst

Nio Stars Technologies LLP • Mumbai

On-site
INR 800,000 - 1,400,000
Cyber Security Analyst
Cyber Security Analyst

Network Intelligence India • Thane

On-site
INR 900,000 - 1,700,000
Cyber Security Specialist
Cyber Security Specialist

SuperOps • Chennai District

On-site
INR 800,000 - 1,200,000
Cyber Security Analyst (1+ years)
Cyber Security Analyst (1+ years)

Satark Technology Private Limited • Gandhinagar

Hybrid
INR 600,000 - 800,000
Cyber Penetration Tester
Cyber Penetration Tester

Cloudxtreme • Hyderabad, Bengaluru

On-site
INR 800,000 - 1,500,000
Cyber Security Specialist
Cyber Security Specialist

Muthoot FinCorp (MFL) • Thiruvananthapuram

On-site
INR 900,000 - 1,300,000
Cyber Security Specialist
Cyber Security Specialist

Muthoot FinCorp (MFL) • India

On-site
INR 1,200,000 - 2,400,000
Security Analyst - VAPT
Security Analyst - VAPT

TechDefence Labs • Delhi

On-site
INR 700,000 - 1,000,000
Competitive salary and benefits package
Opportunities for continuous learning
Security Engineer - Red Team Operator / Engineer
Security Engineer - Red Team Operator / Engineer

PKF Algosmic Pvt Ltd • Maharashtra

On-site
INR 600,000 - 1,200,000
Cyber Penetration Tester Senior
Cyber Penetration Tester Senior

Baker Tilly US • Bengaluru

On-site
INR 1,200,000 - 1,800,000