Penetration Tester

Alignity

Hyderabad

Hybrid

INR 900,000 - 1,500,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Hybrid work
Equal Opportunity Employer

Job summary

Alignity is seeking an experienced Penetration Tester for Hyderabad to perform manual and automated security testing of web applications. The role emphasizes OWASP Top 10, vulnerability assessment, risk prioritization, and secure remediation.

You will prepare detailed security reports and PoCs, and collaborate with developers and business stakeholders throughout remediation lifecycles. The position offers a hybrid work model under a contract-to-hire arrangement with immediate joiners considered.

Qualifications

  • Strong hands-on experience in Web Application Security Testing / Penetration Testing.
  • Deep understanding of OWASP Top 10 and common web vulnerabilities.
  • Experience with manual and automated vulnerability assessments.
  • Ability to create detailed PoCs and security reports.
  • Knowledge of CVSS and risk-rating methodologies.

Responsibilities

  • Conduct manual and automated security testing of web applications to identify vulnerabilities.
  • Perform comprehensive application security assessments including auth, session management, input validation, and API security.
  • Demonstrate strong knowledge of OWASP Top 10 and remediation.
  • Identify, validate, and exploit vulnerabilities; develop PoCs.
  • Prepare detailed security reports with risk ratings and remediation recommendations.
  • Collaborate with developers and stakeholders to explain findings and guidance.
  • Perform retesting after remediation to verify fixes.

Skills

OWASP Top 10
Web app security testing
Manual testing
Automated testing
PoC development
Vulnerability reporting

Job description

Do you love a career where you Experience, Grow & Contribute at the same time, while earning at least 10% above the market? If so, we are excited to have bumped onto you. Learn how we are redefining the meaning of work, and be a part of the team raved by Clients, Job-seekers and Employees. Jobseeker Video Testimonials Employee Glassdoor Reviews

If you are a Penetration Tester looking for excitement, challenge and stability in your work, then you would be glad to come across this page. We are an IT Solutions Integrator/Consulting Firm helping our clients hire the right professional for an exciting long-term project. Here are a few details.

Role: Penetration Tester
Location: Hyderabad
Experience: 3-8 Years
Work Mode: Hybrid
Type: Contract to Hire
Notice Period: Immediate Joiners
Requirements

We are looking for an experienced Application Security / Web Penetration Testing professional with strong hands-on expertise in manual and automated security testing of web applications. The ideal candidate should have a solid understanding of the OWASP Top 10, vulnerability assessment methodologies, risk prioritization, and secure remediation practices. The candidate will be responsible for identifying and validating application security vulnerabilities, assessing their business impact, preparing detailed security reports, and working closely with development and business stakeholders throughout the vulnerability remediation lifecycle.

Key Responsibilities
  • Conduct manual and automated security testing of web applications to identify security vulnerabilities and weaknesses.
  • Perform application security assessments covering authentication, authorization, session management, input validation, business logic, API security, and other application components.
  • Demonstrate strong knowledge and practical application of the OWASP Top 10 framework.
  • Identify, validate, and exploit vulnerabilities using appropriate penetration testing methodologies and tools.
  • Analyze vulnerabilities and prioritize findings based on: Severity, Exploitability, Business impact, Compliance implications, Exposure and attack likelihood.
  • Perform vulnerability validation and develop Proof of Concept (PoC) demonstrating the impact and exploitability of identified vulnerabilities.
  • Prepare comprehensive security assessment and penetration testing reports containing: Vulnerability description, Affected application/component, Technical details, Evidence/screenshots, Proof of Concept, Risk rating/severity, Business impact, Remediation recommendations.
  • Collaborate with developers, application owners, architects, and other stakeholders to explain security findings.
  • Provide practical security guidance and remediation recommendations throughout the vulnerability remediation lifecycle.
  • Track identified vulnerabilities and support development teams in understanding and resolving security issues.
  • Perform retesting/reassessment of remediated vulnerabilities to confirm that fixes are effective.
  • Verify that remediation activities have not introduced new security vulnerabilities or regression issues.
  • Present security findings, risk implications, and remediation priorities to technical teams and executive stakeholders.
  • Stay current with emerging web application vulnerabilities, attack techniques, security standards, and application security best practices.
Required Technical Skills
  • Strong hands-on experience in Web Application Security Testing / Penetration Testing.
  • Strong understanding of OWASP Top 10 and common web application vulnerabilities.
  • Experience with vulnerabilities such as:
    • SQL Injection
    • Cross-Site Scripting (XSS)
    • CSRF
    • Broken Access Control
    • IDOR/BOLA
    • Authentication & Session Management issues
    • Security Misconfiguration
    • SSRF
    • File Upload vulnerabilities
    • Command Injection
    • XXE
    • Path Traversal
    • Business Logic vulnerabilities
    • API security vulnerabilities
  • Experience performing both manual and automated vulnerability assessments.
  • Ability to understand application architecture, request/response flows, authentication mechanisms, and APIs.
  • Strong ability to validate vulnerabilities and distinguish true positives from false positives.
  • Experience creating detailed PoCs and technical security reports.
  • Good understanding of vulnerability severity and risk-rating methodologies such as CVSS.
  • Knowledge of secure coding and application security remediation practices.
Benefits

Visit us at http://alignity.io/careers.

Alignity Solutions is an Equal Opportunity Employer, M/F/V/D.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Penetration Tester
Penetration Tester

Alignity Solutions • Hyderabad

On-site
INR 1,200,000 - 1,800,000
VAPT Security Engineer
VAPT Security Engineer

Alignity • Hyderabad

Hybrid
INR 2,500,000 - 4,000,000
Penetration Tester
Penetration Tester

VikingCloud • India

On-site
INR 700,000 - 900,000
Penetration Tester
Penetration Tester

SourcingXPress • Bengaluru

On-site
INR 2,000,000 - 3,000,000
Cyber Penetration Tester
Cyber Penetration Tester

Alignity Solutions • Hyderabad

On-site
INR 1,000,000 - 1,500,000
Penetration Tester
Penetration Tester

Lonvec Technologies Private Limited • Bengaluru

On-site
INR 1,500,000 - 2,200,000
DevSecOps Engineer (SAST/DAST) 3 - 8 Yrs
DevSecOps Engineer (SAST/DAST) 3 - 8 Yrs

Alignity • Hyderabad

Hybrid
INR 1,200,000 - 1,800,000
Equal Opportunity Employer
Senior Penetration Tester
Senior Penetration Tester

ESDS Software Solution Limited • Nashik District

On-site
INR 2,500,000 - 4,200,000
Penetration Testing Engineer / Application Security Testing Engineer
Penetration Testing Engineer / Application Security Testing Engineer

VMC Soft Technologies, Inc • Dadri

On-site
INR 2,500,000 - 4,200,000
Application Security Engineer (6 Months Contract)
Application Security Engineer (6 Months Contract)

Weekday AI (YC W21) • Hyderabad

On-site
INR 1,500,000 - 2,000,000