IND Staff Associate Penetration Tester

The Hartford

Hyderabad

On-site

INR 2,000,000 - 4,200,000

Full time

11 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

The Hartford in Hyderabad, India, seeks a Staff Associate Penetration Tester to join a high-performing security team. You will lead offensive security programs, govern testing campaigns, and contribute to a robust cybersecurity posture.

This role requires 6–9 years in pen testing, strong web/mobile security knowledge, and experience with MITRE ATT&CK and OWASP. You will design exploit tooling, perform threat emulation, and collaborate with engineering teams to remediate findings.

Qualifications

  • 6-9 years’ experience in penetration testing, ethical hacking, or red team operations.
  • 3+ years’ experience performing application penetration testing of enterprise web and mobile apps.
  • Bachelor’s degree in computer science, information security, or related field.

Responsibilities

  • Develop and execute penetration testing campaigns targeting various infrastructure devices.
  • Document findings and remediation strategies.
  • Collaborate with application teams to address vulnerabilities.
  • Simulate multi-phase attack chains including lateral movement and privilege escalation.
  • Create custom exploits, payloads, and evasion techniques.

Skills

Penetration testing
Red team operations
Web & mobile security
Scripting & automation

Education

Bachelor's degree in Computer Science / Information Security

Tools

JavaScript
Java
.NET
OAuth 2.0
APIs

Job description

IND Staff Engineer, Security - GCC042

We’re determined to make a difference and are proud to be an insurance company that goes well beyond coverages and policies. Working here means having every opportunity to achieve your goals – and to help others accomplish theirs, too. Join our team as we help shape the future.

Job Description: Staff Associate Penetration Tester

Location: Hyderabad, India

Employment Type: Full-Time

Experience Level: 6 -9 Years

Position Overview

We are looking for a talented individual to join a high-performing team of Security Engineers responsible for governing, managing and delivering our company’s cybersecurity defenses. As a Staff Associate Penetration Tester, you will have an opportunity to shape the direction of our company’s penetration testing program by providing thought leadership, professional support, and valued contributions to our growing range of penetration testing and Red Team Operations. This role provides the right person with the opportunity to use their skills and expertise to drive meaningful improvements into the security posture of our organization.

Key Responsibilities
  • Develop and execute penetration testing campaigns targeting various infrastructure devices.
  • Document findings and recommend remediation strategies.
  • Collaborate with application teams to ensure vulnerabilities are addressed effectively.
  • Simulate realistic, multi-phase attack chains including lateral movement, privilege escalation, and multiple specific threat vectors.
  • Create custom exploits, payloads, and evasion techniques against emulated and physical assets.
  • Conduct threat emulation using TTPs based on real-world APTs and adversaries.
  • Define offensive toolkits and infrastructure within the environment.
  • Document post-exercise findings, attack graphs, and defensive recommendations.
Required Skills & Experience
  • 6-9 years’ experience in penetration testing, ethical hacking and/or red team operations.
  • 3+ years’ experience performing application penetration testing to cover a broad range of enterprise web and mobile applications.
  • Strong understanding of web and mobile architectures and technologies including Single Page Applications (SPA), Multi-Page Applications (MPA), APIs, OAuth 2.0, JavaScript, Java and .NET frameworks.
  • Comprehensive knowledge of web and mobile application security vulnerabilities including OWASP Web Application, API and Mobile Top 10 lists.
  • The ability to effectively extend testing scope to include infrastructure, network, cloud and IoT services.
  • Strong understanding of the MITRE ATT&CK andICS ATT&CK, and OWASP frameworks.
  • Comfort using offensive security tools.
  • Proficiency with scripting and automation in multiple languages.
  • Ability to document complex attacks with clear objectives and results for both technical and non-technical audiences.
  • Strong reporting and communication skills.
  • Strong commitment to legal and ethical standards and behaviors.
  • Bachelor’s degree from an accredited college or university in computer science, information security, or related field.
Nice to Have Skills
  • Certifications like OSCP, OSEP, GPEN, GXPN, or GRPT.
  • Experience simulating APT behavior and running attack plans.
  • Familiarity with threat intelligence integration.
What We Offer
  • Collaborative and innovative work environment.
  • Competitive compensation and comprehensive benefits.
  • Continuous learning and professional development opportunities.

Every day, a day to do right. Showing up for people isn’t just what we do. It’s who we are – and have been for more than 200 years. We’re devoted to finding innovative ways to serve our customers, communities and employees—continually asking ourselves what more we can do. Is our policy language as simple and inclusive as it can be? Can we better help businesses navigate our ever-changing world? What else can we do to destigmatize mental health in the workplace? Can we make our communities more equitable? That we can rise to the challenge of these questions is due in no small part to our company values that our employees have shaped and defined. And while how we contribute looks different for each of us, it’s these values that drive all of us to do more and to do better every day.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IND Staff Associate Penetration Tester
IND Staff Associate Penetration Tester

thehartford • Hyderabad

Hybrid
INR 4,000,000 - 7,000,000
Collaborative culture
Competitive compensation
Professional development
IND Senior Staff Software Engineer
IND Senior Staff Software Engineer

The Hartford • Hyderabad

On-site
INR 4,000,000 - 7,000,000
Senior Quality Engineer
Senior Quality Engineer

The Hartford • Hyderabad

On-site
INR 550,000 - 760,000
Senior Penetration Tester (12-Month Contract)
Senior Penetration Tester (12-Month Contract)

Sectigo • Chennai District

Hybrid
INR 1,200,000 - 1,800,000
Security Consultant / Penetration Tester
Security Consultant / Penetration Tester

The Missing Link • Bengaluru

On-site
INR 900,000 - 1,200,000
Supportive, collaborative environment
Training & company paid certifications
Challenging, varied work
+1
Principal Engineer
Principal Engineer

Insight Enterprises • Gurugram District

Hybrid
INR 3,000,000 - 6,000,000
Senior Consultant, Offensive Security
Senior Consultant, Offensive Security

Cacheflow • Bengaluru

Hybrid
INR 1,500,000 - 2,200,000
Medical Insurance
Life Insurance
Hybrid Work Model
+2
Cybersecurity Analyst
Cybersecurity Analyst

Target • Bengaluru

On-site
INR 1,200,000 - 2,100,000
Senior Consultant, Offensive Security
Senior Consultant, Offensive Security

Kroll • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Senior Information Security Analyst
Senior Information Security Analyst

To The New • Dadri

On-site
INR 1,200,000 - 1,800,000