Lead Cyber Security- VAPT

Darwinbox Digital Solutions Pvt. Ltd.

Navi Mumbai

On-site

INR 2,500,000 - 4,000,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

ReBIT seeks an experienced information security professional to conduct internal and external penetration testing, red team assessments, and vulnerability scans on critical systems. You will liaise with RBI-related projects, coordinate threat intelligence, and review security controls across platforms such as .NET and Java, including mobile apps on Android/iOS.

The role requires 5+ years in information security, 3+ years in pentesting/red team, and strong knowledge of OWASP/NIST/ISACA

Qualifications

  • University degree in computer science or IT is required.
  • 5+ years of information security experience.
  • 3+ years in penetration testing, red team, or vulnerability assessment.
  • Experience evaluating controls via ethical hacking.
  • Familiar with OWASP, NIST, ISACA, NSA, IETF.

Responsibilities

  • Conduct internal/third-party ethical hacking, vulnerability assessment, pentesting, and red team assessments on business-critical assets and processes.
  • Liaise with external ethical hacking for RBI projects.
  • Coordinate with security intelligence to obtain latest threats and vulnerabilities.
  • Prepare security effectiveness reports for management.
  • Test applications/systems for RBI/ReBIT information security compliance.
  • Ensure new applications are inducted into the data centre after pentesting/assessment.
  • Prioritize and escalate vulnerabilities to mitigate them.
  • Follow up on closure of gaps and elevate when necessary.
  • Define metrics for security effectiveness and quantify them.

Skills

Information Security
Penetration testing
Red teaming
Vulnerability assessment
Mobile testing
Security architecture
RBI compliance
Project management

Education

University degree in CS/IT

Job description

University degree in the field of computer science or IT.

Experience/ Qualifications
  • 5+ years of Information Security background is essential.
  • 3+ years of Penetration testing, Red teaming and or vulnerability assessment experience
  • Experience in evaluating the control environment through EthicalHacking, Penetration Testing, Red Team assessments.
  • Evaluation of security technologies to detect vulnerabilities
  • Hands on experience in black-box, grey-box penetration testing on platformslike .Net, Java etc.
  • Hands on experience on mobile testing of android and IOS
  • A high-level appreciation of Security Architecture and Infrastructure
  • Should be familiar with the best practices of OWASP, SANS Institute,ISACA, GAO, FISCAM, NSA, NIST, Internet Engineering Task Force (IETF)
  • Develop a framework to test compliance of applications / systems.
  • Experience in project management
  • Information technology
Responsibilities
  • Conduct internal / third-party Ethical Hacking / VulnerabilityAssessment/ Penetration Testing, Red Team assessment on business-critical assets and processes.
  • Liaison with external ethical hacking / penetration testing for RBIprojects
  • Coordinate with security intelligence framework to obtain latestthreats & vulnerabilities
  • Prepare security effectiveness reports for management
  • Testingthe applications / systems for compliance to RBI / ReBIT InformationSecurity practices
  • Ensurenew applications are inducted into Data centre after conducting pentesting / vulnerability assessment
  • Prioritizing security vulnerabilities identified in ethical hacking,penetration testing and application / system testing based on business impactand update Security operations team for mitigating them
  • Follow up on closure of these gaps and elevate when necessary
  • Deciding the most relevant and applicable metrics for measuringsecurity effectiveness and deciding on the requisite algorithms for theirquantification
Certifications (any two)
  • CISSP
  • CEH / OSCP / OSCE /GPEN
Employment Type

All positions are onfixed term contract on a full-time basis exclusively for ReBIT, initially fora period of five years, extendable by mutual consent

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Engineer - VAPT (NGCB)
Senior Engineer - VAPT (NGCB)

Darwinbox Digital Solutions Pvt. Ltd. • Navi Mumbai

On-site
INR 1,200,000 - 1,800,000
Associate - Cyber Security - VAPT
Associate - Cyber Security - VAPT

BDO India • Mumbai

On-site
INR 1,500,000 - 2,100,000
Walk-in | Lead Auditor-System Audit
Walk-in | Lead Auditor-System Audit

Reserve Bank Information Technology • Navi Mumbai

On-site
INR 2,400,000 - 3,600,000
Penetration Testing Cyber security Engineer
Penetration Testing Cyber security Engineer

HCLTech • Hyderabad, Chennai District

On-site
INR 1,800,000 - 3,000,000
Executive - Cyber Defense
Executive - Cyber Defense

BSR & Co • Mumbai

On-site
INR 1,400,000 - 2,300,000
Technical Security Manager
Technical Security Manager

Pay10 India • New Delhi

On-site
INR 1,300,000 - 2,100,000
Senior Security Engineer
Senior Security Engineer

Crossbow Cybersecurity • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Competitive salary and benefits
Medical Insurance – Self & family
Parental Support – Maternity Leave
+3
Senior Penetration Tester
Senior Penetration Tester

ESDS Software Solution Limited • Nashik District

On-site
INR 2,500,000 - 4,200,000
Lead Security Engineer
Lead Security Engineer

Crossbow Cybersecurity • Bengaluru

On-site
INR 2,500,000 - 4,500,000
Competitive salary and benefits
Medical Insurance
Parental Support – Maternity Leave & Paternity Leave
+3
Technology Manager
Technology Manager

Bank of America • India

On-site
INR 4,000,000 - 6,800,000