Cybersecurity Analyst

Target

Bengaluru

On-site

INR 1,200,000 - 2,100,000

Full time

11 days ago
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Target in Bengaluru, India, is seeking a Penetration Tester to join the Application Security team. You will lead technical assessments across our cloud infrastructure and applications, identifying and validating vulnerabilities and guiding remediation.

You will perform manual and automated testing, collaborate with product and security colleagues, and ensure compliance with PCI DSS and SOC. A strong background in web and network security, scripting skills, and relevant certifications are

Qualifications

  • 4+ years in penetration testing or application security engineering.
  • Deep knowledge of web attacks (SQLi, XSS, CSRF, XXE) and mitigations.
  • Proficiency in Python, Go, Ruby, or Bash for automation.
  • Experience with BurpSuite Enterprise, SAST/DAST/IAST.

Responsibilities

  • Lead manual and automated application-layer security testing.
  • Perform network-layer penetration testing across systems.
  • Validate segmentation and CDE controls and remediation efforts.
  • Collaborate with external security firms on testing and threat hunting.
  • Ensure compliance with PCI DSS, SOC and related obligations.

Skills

Penetration testing
Application security engineering
Scripting for automation
Network security concepts
Communication of findings

Education

OSCP/CEH/OSWE/CISSP certification

Tools

BurpSuite Enterprise
SAST
DAST
IAST
OWASP testing tools

Job description

About Us

As a Fortune 50 company with more than 400,000 team members worldwide, Target is an iconic brand and one of America's leading retailers. Joining Target means promoting a culture of mutual care and respect and striving to make the most meaningful and positive impact. Becoming a Target team member means joining a community that values different voices and lifts each other up. Here, we believe your unique perspective is important, and you'll build relationships by being authentic and respectful.

About Us

As a Fortune 50 company with more than 400,000 team members worldwide, Target is an iconic brand and one of America's leading retailers. Joining Target means promoting a culture of mutual care and respect and striving to make the most meaningful and positive impact. Becoming a Target team member means joining a community that values different voices and lifts each other up. Here, we believe your unique perspective is important, and you'll build relationships by being authentic and respectful.

Overview About TII

At Target, we have a timeless purpose and a proven strategy. And that hasn’t happened by accident. Some of the best minds from different backgrounds come together at Target to redefine retail in an inclusive learning environment that values people and delivers world-class outcomes. That winning formula is especially apparent in Bengaluru, where Target in India operates as a fully integrated part of Target’s global team and has more than 4,000 team members supporting the company’s global strategy and operations.

Position Overview

The Penetration Tester at is a critical member of the Application Security team, focused on identifying, validating, and resolving security vulnerabilities across our cloud infrastructure and applications. You will lead technical security assessments, including application-layer and network-layer penetration testing, to ensure all information assets are secured against evolving threats. This role is vital for maintaining our security posture and ensuring remediation efforts are effectively prioritized and executed.

Key Responsibilities
  • Perform comprehensive manual and automated application-layer penetration tests to identify vulnerabilities, adhering to industry standards and internal methodologies.
  • Conduct network-layer penetration tests encompassing all components supporting network functions and operating systems.
  • Validate segmentation and scope-reduction controls at least annually and after any significant changes to ensure isolation of the Cardholder Data Environment (CDE).
  • Triage and validate vulnerabilities reported through bug bounty program.
  • Document and risk-rate all findings, providing actionable remediation guidance to engineering and product teams.
  • Verify the correction of exploitable vulnerabilities through re-testing and post-remediation assessments.
  • Collaborate with external 3rd party security firms on penetration testing and threat hunting exercises.
  • Ensure all security assessments and remediation activities meet compliance and regulatory obligations (e.g., PCI DSS, SOC).
Qualifications
  • Minimum of 4+ years of hands-on experience in penetration testing, ethical hacking, or application security engineering.
  • Deep understanding of common web-based attacks (SQLi, XSS, CSRF, XXE, etc.) and how to mitigate them at the application level.
  • Proficiency in scripting or programming languages such as Python, Go, Ruby, or Bash to automate security tasks.
  • Comprehensive knowledge of network protocols and security concepts, including TCP/IP, DNS, HTTP/S, TLS, and IPSEC.
  • Strong experience with security testing tools (e.g., BurpSuite Enterprise, SAST, DAST, and IAST).
  • Working knowledge of OWASP security fundamentals and API identity/access management (OAuth 2.0, OIDC, JWT).
  • Ability to work with high autonomy and communicate technical security findings clearly to both technical and non-technical audiences.
  • Relevant information security certification(s) such as OSCP, CEH, OSWE, or CISSP.
Bonus Qualifications
  • Direct experience managing or triaging a public bug bounty program (e.g., HackerOne, BugCrowd).
  • Experience leveraging Slack/ChatOps to automate security tasks or reporting.
  • Experience with cloud orchestration and Infrastructure as Code (e.g., Terraform, Google Deployment Manager).
  • Familiarity with containerization and orchestration tooling like Docker and Kubernetes.
  • Knowledge of compliance frameworks such as ISO 27001, PCI DSS, SOC2, or CCPA.
Know More About Us Here
  • Life at Target- https://india.target.com/
  • Benefits- https://india.target.com/life-at-target/workplace/benefits
  • Culture- https://india.target.com/life-at-target/belonging
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Penetration Tester
Penetration Tester

VikingCloud • India

On-site
INR 700,000 - 900,000
IND Staff Associate Penetration Tester
IND Staff Associate Penetration Tester

thehartford • Hyderabad

Hybrid
INR 4,000,000 - 7,000,000
Collaborative culture
Competitive compensation
Professional development
Chief Manager, Security Engineering
Chief Manager, Security Engineering

Protectt.ai • Mumbai

On-site
INR 2,000,000 - 3,000,000
Security Engineer III
Security Engineer III

Bank of America • Chennai District

On-site
INR 4,000,000 - 7,000,000
Sr Engineer - AI
Sr Engineer - AI

Roundel • Bengaluru

On-site
INR 4,000,000 - 6,000,000
Health benefits
401(k)
Employee discount
+4
Penetration Tester Architect ( VAPT, Android , IOS ) - Naukri.com
Penetration Tester Architect ( VAPT, Android , IOS ) - Naukri.com

Info Edge • Greater Noida, Dadri

On-site
INR 900,000 - 1,200,000
Senior Penetration Tester / Lead – Red Team
Senior Penetration Tester / Lead – Red Team

NopalCyber • Hyderabad

On-site
INR 4,000,000 - 7,000,000
Executive - Cyber Defense
Executive - Cyber Defense

BSR & Co • Mumbai

On-site
INR 1,400,000 - 2,300,000
Senior Penetration Tester
Senior Penetration Tester

Tsaaro Consulting Inc. • Bengaluru

Hybrid
INR 2,000,000 - 3,200,000
Cyber Penetration Tester Senior
Cyber Penetration Tester Senior

Baker Tilly • Gurugram District, Bengaluru

Hybrid
INR 1,500,000 - 2,500,000