Offensive Security Engineer

Systems Plus

Pune District

On-site

INR 1,800,000 - 2,800,000

Full time

7 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Systems Plus is seeking an Offensive Security Engineer to lead client penetration tests and security assessments from our Pune location. The role focuses on identifying vulnerabilities, executing ethical hacking scenarios, and delivering actionable remediation guidance to strengthen enterprise defenses.

The candidate will work with a team to perform application and OS security assessments, develop automation scripts, and report results to clients, while staying ahead of evolving cyber threats.

Qualifications

  • Bachelor’s degree in Engineering in Computer Science or Information Technology or related field; or equivalent professional experience.
  • OSCP, eCPPT, eWPT, PNPT, OSWE or other equivalent certification(s) is a huge plus.
  • Experience with Unix/Linux/Mac/Windows operating systems.

Responsibilities

  • Performs client penetration testing to find vulnerabilities or weaknesses using open-source, custom, and commercial tools.
  • Conducts WebApp penetration tests over a variety of products.
  • Report generation that clearly communicates testing and remediation recommendations to clients.
  • Develop scripts, tools, and methodologies to automate internal processes and engagements.
  • IT application testing, cybersecurity tool analysis, and systems engineering support for IT environments.
  • Provide security recommendations to clients to protect data and systems.
  • Maintain knowledge of industry trends and evolving security threats.
  • Contribute to the company’s security presence and brand in the security community.

Skills

Strong communication
Client-facing
Self-starter
Time management
Team collaboration

Education

Bachelor’s degree in Engineering in CS/IT or related field

Tools

Kali / ParrotOS
Burp Suite
OWASP ZAP
Bloodhound
MetaSploit

Job description

Offensive Security Engineer

Location: Pune Employment Type: full-time Designation: Offensive Security Engineer

The Offensive Security Engineer will perform offensive security campaigns for our clients to improve their ability to protect, detect and respond to known adversaries. This position will reduce cyber risk by uncovering vulnerabilities and weaknesses in our client’s enterprise cyber environment through coordinated ethical hacking and penetration testing scenarios. The Engineer will work closely with team members to execute and report on sophisticated ethical hacking exercises, to identify cyber vulnerabilities and reduce the risk posture of enterprise systems. This role will be primarily responsible for performing application and OS security assessments and will make recommendations on effective countermeasures. A key function of this role will be building deep relationships, gaining trust, and enabling client success.

Summary of Essential Job Functions
  • Performs client penetration testing to find any vulnerabilities or weaknesses that might be exploited by a malicious party, using open-source, custom, and commercial testing tools
  • Conducts WebApp penetration tests over a variety of products.
  • Report generation that clearly communicates testing and assessment details, results, and remediation recommendations to clients
  • Develop scripts, tools, and methodologies to automate and streamline internal processes and engagements
  • Conduct IT application testing, cybersecurity tool and systems analysis, system and network administration, and systems engineering support for the sustainment of information technology systems
  • Provide recommendations to clients on specific security measures to monitor and protect sensitive data and systems from infiltration and cyber-attacks including response and recovery of a data security breach
  • Maintain a firm grasp on the industry and anticipate trends and movements while balancing maturity and timing
  • Contribute to Trace3’s presence and brand in the Security community
Required Skills and Experience
  • Bachelor’s degree in Engineering in Computer Science or Information Technology or a related technical field; or equivalent related professional experience
  • OSCP, eCPPT, eWPT, PNPT, OSWE or other equivalent certification(s) is a huge plus
  • Through understanding of one or more Unix/Linux/Mac/Windows operating systems
  • 2-3 years' experience in at least three of the following:
    • Red Team penetration test tools such as Kali, ParrotOS, Bloodhound, MetaSploit, BurpSuite, OWASP Zap, etc
    • Network penetration testing and manipulation of network infrastructure
    • Web application assessments (Mobile application testing a plus)
    • Shell scripting or automation of simple tasks using Perl, Python, Go, Powershell or Ruby
    • Developing, extending, or modifying exploits, shellcode or exploit tools
    • Developing applications or scripts in C#, ASP, .NET, ObjectiveC, Go, Java (J2EE), Python, or Ruby
  • Experience with at least one or more of the major cloud providers (AWS, Azure, and GCP)
  • Strong knowledge of tools used for web application and network security testing
  • Strong knowledge of current web application structure and strong ability to test both modern and older web applications
  • Motivated self-starter who loves to solve challenging problems and feels comfortable working directly with customers
  • Excellent oral, written communication, and presentation skills with an ability to present client security sessions and security workshops to C-Level Executives and non-technical audience
  • Highly organized, detail-oriented, excellent time management skills, and able to effectively prioritize tasks in a fast-paced, high-volume, and evolving work environment
  • Ability to approach customer and sales requests with a proactive and consultative manner; listen and understand user requests and needs and effectively deliver
  • Comfortable managing multiple and changing priorities, and meeting deadlines in an entrepreneurial environment

Systems Plus offers GCC capabilities to help organizations enhance their agility, access specialized talent, and optimize costs while driving innovation. With over 20 delivered GCCs and more than three decades of experience in providing disruptive solutions, Systems Plus helps your organization become a global value organization. At Systems Plus, we provide access to a global talent pool, standardize processes, and enhance collaboration by providing a central hub for shared services and support.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Security Engineer
Application Security Engineer

Byline Learning Solutions • Pune District

On-site
INR 1,200,000 - 1,800,000
Hiring For Penetration Tester - Mumbai
Hiring For Penetration Tester - Mumbai

Saint Gobain • Mumbai, Navi Mumbai

On-site
INR 4,000,000 - 8,000,000
Senior Security Consultant (Web Application Penetration Tester)
Senior Security Consultant (Web Application Penetration Tester)

NetSPI Inc. • Pune District

On-site
INR 1,400,000 - 2,000,000
Senior Consultant, Offensive Security
Senior Consultant, Offensive Security

Kroll • Bengaluru

On-site
INR 1,200,000 - 2,000,000
Senior Security Consultant (Web Application Penetration Tester)
Senior Security Consultant (Web Application Penetration Tester)

NetSPI • Maharashtra

Hybrid
INR 900,000 - 1,400,000
Vulnerability Assessment & Penetration Testing (VAPT) Engineer
Vulnerability Assessment & Penetration Testing (VAPT) Engineer

Zensar • Pune District

On-site
INR 1,200,000 - 2,800,000
Security Consultant II (Web Application Penetration Tester)
Security Consultant II (Web Application Penetration Tester)

NetSPI Inc. • Pune District

On-site
INR 1,500,000 - 2,000,000
Application Security Engineer
Application Security Engineer

Cynosure Corporate Solutions • Chennai District

On-site
INR 1,500,000 - 2,500,000
SISA Information Security - Network Security Engineer
SISA Information Security - Network Security Engineer

SISA • Bengaluru

On-site
INR 2,000,000 - 3,000,000
Security Consultant II (Web Application Penetration Tester)
Security Consultant II (Web Application Penetration Tester)

NetSPI • Maharashtra

Hybrid
INR 1,000,000 - 1,500,000