Executive - QA

INTECH Creative Services Pvt. Ltd.

Mumbai, Navi Mumbai

On-site

INR 1,500,000 - 2,600,000

Full time

7 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

INTECH Creative Services Pvt. Ltd.

in Mumbai seeks an Offensive Security Engineer to perform hands-on ethical hacking, penetration testing, red teaming, and vulnerability discovery across web, mobile, API, and cloud environments. You will develop security tooling in Python/Go/Bash, document findings in clear reports, and collaborate with Engineering, Product, and Security teams to build security into the SDLC.

Qualifications

  • 3+ years of hands-on experience in Offensive Security, Penetration Testing, Application Security, or Red Teaming.
  • Strong practical knowledge of Web, API, Mobile, and Cloud Security Testing.
  • Good understanding of OWASP Top 10, ASVS, MITRE ATT&CK, and Threat Modeling.
  • Strong scripting skills in Python, Go, Bash, or similar languages.
  • Hands-on experience with Burp Suite, Metasploit, Cobalt Strike, ZAP, or equivalent tools.
  • Strong understanding of authentication, authorization, APIs, application architecture, and common attack techniques.
  • Excellent analytical, problem-solving, technical reporting, and communication skills.

Responsibilities

  • Conduct penetration testing and red team exercises across Web Applications, APIs, Mobile Applications, Cloud, and Thick Client systems.
  • Identify, validate, and exploit security vulnerabilities using manual testing and offensive security techniques.
  • Perform threat modeling and security assessments during the product development lifecycle.
  • Build custom Python/Go/Bash scripts and security tools to automate testing and improve offensive security workflows.
  • Use tools such as Burp Suite, Metasploit, Cobalt Strike, ZAP, and other industry-standard security tools.
  • Analyze attack paths and techniques using OWASP Top 10, ASVS, and MITRE ATT&CK.
  • Prepare clear technical reports covering vulnerabilities, business impact, proof of concept, and remediation recommendations.
  • Work closely with Engineering, Product, and Security teams to fix vulnerabilities and integrate security into the SDLC.
  • Assess security across AWS/GCP/Azure cloud environments and modern application architectures.
  • Continuously research new CVEs, exploits, attack techniques, and red team methodologies.

Skills

Penetration testing
Red team exercises
Security assessments
Threat modeling
Python scripting
Go scripting
Bash scripting
Technical reporting
Communication skills

Tools

Burp Suite
Metasploit
Cobalt Strike
ZAP

Job description

Offensive Security Engineer

We are looking for a hands-on Offensive Security Engineer who is passionate about ethical hacking, penetration testing, red teaming, and finding security weaknesses before real attackers do.

In this role, you will simulate real-world cyberattacks, identify vulnerabilities across applications and infrastructure, build security tools, and work closely with engineering teams to make products more secure.

What Youll Do
  • Conduct penetration testing and red team exercises across Web Applications, APIs, Mobile Applications, Cloud, and Thick Client systems.
  • Identify, validate, and exploit security vulnerabilities using manual testing and offensive security techniques.
  • Perform threat modeling and security assessments during the product development lifecycle.
  • Build custom Python/Go/Bash scripts and security tools to automate testing and improve offensive security workflows.
  • Use tools such as Burp Suite, Metasploit, Cobalt Strike, ZAP, and other industry-standard security tools.
  • Analyze attack paths and techniques using OWASP Top 10, ASVS, and MITRE ATT&CK.
  • Prepare clear technical reports covering vulnerabilities, business impact, proof of concept, and remediation recommendations.
  • Work closely with Engineering, Product, and Security teams to fix vulnerabilities and integrate security into the SDLC.
  • Assess security across AWS/GCP/Azure cloud environments and modern application architectures.
  • Continuously research new CVEs, exploits, attack techniques, and red team methodologies.
What We’re Looking For
  • 3+ years of hands-on experience in Offensive Security, Penetration Testing, Application Security, or Red Teaming.
  • Strong practical knowledge of Web, API, Mobile, and Cloud Security Testing.
  • Good understanding of OWASP Top 10, ASVS, MITRE ATT&CK, and Threat Modeling.
  • Strong scripting skills in Python, Go, Bash, or similar languages.
  • Hands-on experience with Burp Suite, Metasploit, Cobalt Strike, ZAP, or equivalent tools.
  • Strong understanding of authentication, authorization, APIs, application architecture, and common attack techniques.
  • Excellent analytical, problem-solving, technical reporting, and communication skills.
Good to Have
  • Experience in e-commerce or AI/ML security.
  • Vulnerability research, exploit development, bug bounty, or CVE publication experience.
  • Knowledge of container/Kubernetes and cloud security.
  • Certifications such as OSCP, OSWE, OSEP, CRTO, or relevant cloud security certifications.
  • Contributions to security open-source projects, blogs, research, or conferences.
Why This Role?

This is an opportunity to work on real-world offensive security challenges, perform advanced penetration testing and adversary simulations, build security automation, and directly influence the security of products from design through production.

We are looking for someone with a genuine attacker mindset, strong technical curiosity, and a passion for continuously discovering and solving complex security problems.


Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Penetration Tester
Penetration Tester

Kore Pagamentos • New Delhi

On-site
INR 1,800,000 - 2,600,000
Application Security Consultant
Application Security Consultant

Securityboat • Mumbai

On-site
INR 1,200,000 - 2,000,000
Flexible engagements
Competitive compensation
Collaborative cybersecurity team
+1
Principal Penetration Tester/ Offensive Security Team Lead
Principal Penetration Tester/ Offensive Security Team Lead

BreachLock Inc. • Pune District

On-site
INR 5,000,000 - 7,500,000
Principal Penetration Tester/ Offensive Security Team Lead
Principal Penetration Tester/ Offensive Security Team Lead

BreachLock, Inc. • Dadri

On-site
INR 1,500,000 - 2,000,000
Hiring For Penetration Tester - Mumbai
Hiring For Penetration Tester - Mumbai

Saint Gobain • Mumbai, Navi Mumbai

On-site
INR 4,000,000 - 8,000,000
Senior Security Engineer
Senior Security Engineer

Nextwebi • Bengaluru

On-site
INR 1,500,000 - 2,100,000
application security Professional
application security Professional

Security Brigade • Mumbai

On-site
INR 800,000 - 1,100,000
OSCP sponsorship
Mentorship from senior researchers
Active security community involvement
Application Security Consultant
Application Security Consultant

SecurityBoat Cybersecurity Solutions Private Limited • Mumbai

On-site
INR 1,200,000 - 2,200,000
Competitive compensation
Specialized cybersecurity team
Professional development
Sr Offensive Security Engineer
Sr Offensive Security Engineer

First Advantage • India

On-site
INR 2,000,000 - 2,800,000
Senior DevSecOps Engineer
Senior DevSecOps Engineer

Nextwebi • Bengaluru

On-site
INR 1,500,000 - 3,000,000