Job Type : HYBRID
SHIFT : MOSTLY DAY but depending on the project it may be LATE SHIFT as well
Job Summary
We are seeking a Cybersecurity Engineer with hands-on experience in Vulnerability Assessment and Penetration Testing (VAPT) and offensive security. This role identifies, validates, and assesses vulnerabilities across applications, APIs, networks, infrastructure, and systems, while supporting remediation.
Key Responsibilities
- Conduct manual and automated VAPT across applications, APIs, networks, infrastructure, and systems.
- Identify, validate, document, and risk-rate vulnerabilities based on severity, exploitability, and business impact.
- Prepare security assessment reports detailing evidence, impact, and remediation recommendations.
- Retest vulnerabilities and verify remediation.
- Collaborate with development, infrastructure, and IT teams to resolve findings.
- Monitor emerging vulnerabilities, attack techniques, and offensive-security practices.
- Support security reviews, risk assessments, and incident investigations as needed.
Core Skills & Knowledge
- Hands-on experience in VAPT and penetration testing.
- Web application, API, network, and infrastructure security testing.
- Strong knowledge of the OWASP Top 10 and common application vulnerabilities.
- Understanding of vulnerability management, CVE/CVSS, risk assessment, and remediation.
- Proficiency in Linux, Windows, networking, and security fundamentals.
- Experience with industry-standard penetration-testing and vulnerability-assessment tools.
- Strong technical reporting, communication, analytical, and problem-solving skills.
Preferred Certifications
- OSCP
- CPSA
- CRT
- LPT
- CEH
- Other relevant offensive-security or cybersecurity certifications.
Education & Experience
- Bachelors degree in Computer Science, Information Technology, Cybersecurity, or a related field.