Penetration Tester

Alignity Solutions

Hyderabad

Hybrid

INR 1,200,000 - 1,800,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Alignity Solutions is seeking an experienced Application Security / Web Penetration Testing professional for a hybrid, contract-to-hire role. The candidate should have strong hands-on expertise in manual and automated testing of web apps, with a solid understanding of the OWASP Top 10 and vulnerability assessment methodologies.

You will identify, validate, and report security findings and work across stakeholders to remediate vulnerabilities.

Qualifications

  • Experience in Web Application Security Testing / Penetration Testing with hands-on work.
  • Solid understanding of OWASP Top 10 and common web vulnerabilities.
  • Ability to identify, validate, and report vulnerabilities with PoCs and remediation guidance.

Responsibilities

  • Conduct manual and automated security testing of web applications to identify vulnerabilities.
  • Perform application security assessments covering authentication, authorization, session management, input validation, API security, and business logic.
  • Demonstrate strong knowledge of the OWASP Top 10 framework and prioritize findings by risk, exploitability, and business impact.
  • Identify, validate, and exploit vulnerabilities; prepare detailed security reports with evidence, PoCs, risk ratings, and remediation recommendations.
  • Collaborate with developers, owners, architects, and stakeholders to explain findings and provide remediation guidance throughout remediation lifecycle.
  • Perform retesting to confirm fixes and verify no new vulnerabilities or regressions are introduced.
  • Present security findings and remediation priorities to technical teams and executives.

Skills

Web application security testing
Penetration testing
OWASP Top 10
Vulnerability assessment
PoC development
Security reporting
Risk prioritization
API security testing
Manual testing
Automated testing

Job description

Do you love a career where you Experience , Grow & Contribute at the same time, while earning at least 10% above the market? If so, we are excited to have bumped onto you.

Learn how we are redefining the meaning of work , and be a part of the team raved by Clients, Job-seekers and Employees.

If you are aPenetration Tester looking for excitement, challenge and stability in your work, then you would be glad to come across this page.

We are an IT Solutions Integrator/Consulting Firm helping our clients hire the right professional for an exciting long-term project. Here are a few details.

Check if you are up for maximizing your earning/growth potential, leveraging our Disruptive Talent Solution.

Work Mode: Hybrid

Type: Contract to Hire

Notice Period:Immediate Joiners

Requirements

We are looking for an experienced Application Security / Web Penetration Testing professional with strong hands-on expertise in manual and automated security testing of web applications. The ideal candidate should have a solid understanding of the OWASP Top 10, vulnerability assessment methodologies, risk prioritization, and secure remediation practices.

The candidate will be responsible for identifying and validating application security vulnerabilities, assessing their business impact, preparing detailed security reports, and working closely with development and business stakeholders throughout the vulnerability remediation lifecycle.

Key Responsibilities
  • Conduct manual and automated security testing of web applications to identify security vulnerabilities and weaknesses.
  • Perform application security assessments covering authentication, authorization, session management, input validation, business logic, API security, and other application components.
  • Demonstrate strong knowledge and practical application of the OWASP Top 10 framework.
  • Identify, validate, and exploit vulnerabilities using appropriate penetration testing methodologies and tools.
  • Analyze vulnerabilities and prioritize findings based on:
    • Severity
    • Exploitability
    • Business impact
    • Compliance implications
    • Exposure and attack likelihood
  • Perform vulnerability validation and develop Proof of Concept (PoC) demonstrating the impact and exploitability of identified vulnerabilities.
  • Prepare comprehensive security assessment and penetration testing reports containing:
    • Vulnerability description
    • Affected application/component
    • Technical details
    • Evidence/screenshots
    • Proof of Concept
    • Risk rating/severity
    • Business impact
    • Remediation recommendations
  • Collaborate with developers, application owners, architects, and other stakeholders to explain security findings.
  • Provide practical security guidance and remediation recommendations throughout the vulnerability remediation lifecycle.
  • Track identified vulnerabilities and support development teams in understanding and resolving security issues.
  • Perform retesting/reassessment of remediated vulnerabilities to confirm that fixes are effective.
  • Verify that remediation activities have not introduced new security vulnerabilities or regression issues.
  • Present security findings, risk implications, and remediation priorities to technical teams and executive stakeholders.
  • Stay current with emerging web application vulnerabilities, attack techniques, security standards, and application security best practices.
Required Technical Skills
  • Strong hands-on experience in Web Application Security Testing / Penetration Testing.
  • Strong understanding of OWASP Top 10 and common web application vulnerabilities.
  • Experience with vulnerabilities such as:
    • SQL Injection
    • Cross-Site Scripting (XSS)
    • CSRF
    • Broken Access Control
    • IDOR/BOLA
    • Authentication & Session Management issues
    • Security Misconfiguration
    • SSRF
    • File Upload vulnerabilities
    • Command Injection
    • XXE
    • Path Traversal
    • Business Logic vulnerabilities
    • API security vulnerabilities
  • Experience performing both manual and automated vulnerability assessments.
  • Ability to understand application architecture, request/response flows, authentication mechanisms, and APIs.
  • Strong ability to validate vulnerabilities and distinguish true positives from false positives.
  • Experience creating detailed PoCs and technical security reports.
  • Good understanding of vulnerability severity and risk-rating methodologies such as CVSS.
  • Knowledge of secure coding and application security remediation practices.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Penetration Tester
Cyber Penetration Tester

Alignity Solutions • Hyderabad

On-site
INR 1,000,000 - 1,500,000
Penetration Tester
Penetration Tester

Lonvec Technologies Private Limited • Bengaluru

On-site
INR 1,500,000 - 2,200,000
SAST/DAST Application Security Consultant (Pen Testing)
SAST/DAST Application Security Consultant (Pen Testing)

Alignity Solutions • Hyderabad

Hybrid
INR 1,200,000 - 1,800,000
DevSecOps Engineer (SAST/DAST)
DevSecOps Engineer (SAST/DAST)

Alignity Solutions • Hyderabad

Hybrid
INR 1,200,000 - 1,800,000
Hybrid work model
Senior Penetration Tester
Senior Penetration Tester

NTT DATA BUSINESS SOLUTIONS • Hyderabad

Hybrid
INR 2,500,000 - 4,000,000
Hybrid Working
Security Penetration Testing Consultant
Security Penetration Testing Consultant

Withum • Bengaluru

On-site
INR 900,000 - 1,300,000
Application Security Consultant
Application Security Consultant

SecurityBoat Cybersecurity Solutions Private Limited • Mumbai

On-site
INR 1,200,000 - 2,200,000
Competitive compensation
Specialized cybersecurity team
Professional development
Application Security Engineer
Application Security Engineer

Cyberpwn • Bengaluru

On-site
INR 900,000 - 1,300,000
Cyber Security Specialist
Cyber Security Specialist

Muthoot FinCorp (MFL) • India

On-site
INR 1,200,000 - 2,400,000
Vulnerability Assessment & Penetration Testing (VAPT) Engineer
Vulnerability Assessment & Penetration Testing (VAPT) Engineer

Zensar • Pune District

On-site
INR 1,200,000 - 2,800,000