Penetration Tester Architect ( VAPT, Android , IOS ) - Naukri.com

Info Edge

Greater Noida, Dadri

On-site

INR 900,000 - 1,200,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

A leading security solutions company in Greater Noida is seeking a DevSecOps Engineer to implement security measures within the CI/CD pipeline and collaborate with software engineers on secure coding standards. The ideal candidate will have a Bachelor's degree in a relevant field and 3+ years of experience in application security. Strong knowledge of security principles and experience with tools like Jenkins and Docker are essential. The role emphasizes communication and collaboration within cross-functional teams.

Qualifications

  • 3+ years of experience in DevSecOps, application security, or software security roles.
  • Strong knowledge of application security principles and secure coding practices.
  • Experience with security tools like SAST, DAST, SCA, and vulnerability management.

Responsibilities

  • Implement and manage security tools in the CI/CD pipeline.
  • Collaborate with engineers to ensure secure coding standards.
  • Develop and maintain automated security tests for applications.

Skills

Cloud security
Container security
Red-Teaming
Scripting
Automation
Communication

Education

Bachelor's degree in Computer Science, Cybersecurity, or related field

Tools

Jenkins
GitLab CI
Docker
Kubernetes

Job description

Role & responsibilities
  • Application Security Integration: Implement and manage security tools and controls within the CI/CD pipeline to automate security scans, vulnerability management, and policy enforcement for applications in development, staging, and production environments.
  • Secure Software Development Lifecycle (SSDLC): Collaborate with software engineers to ensure code is secure by default and follows secure coding standards.
  • Security Automation: Develop and maintain automated security tests for applications, such as static application security testing (SAST), dynamic application security testing (DAST), and interactive application security testing (IAST), as well as vulnerability management and remediation processes.
  • Application Security Assessment: perform security assessments on web, thick and mobile applications (Both Android & IOS).
  • Collaboration & Training: Act as a liaison between development, security, and operations teams to ensure security practices are well understood and integrated into the existing workflows. Conduct security training sessions for developers to increase awareness of secure coding practices.
  • Excellent communication and collaboration skills.
Preferred candidate profile
  • Experience with Cloud security, Container security and Red-Teaming practices is desirable.
  • Experience in scripting and automation (e.g., Python, PowerShell).
Qualifications
  • Bachelors degree in Computer Science, Cybersecurity, or related field (or equivalent work experience).
  • 3+ years of experience in DevSecOps, application security, or software security roles.
  • Strong knowledge of application security principles, including secure coding practices, threat modeling, secure architecture, and vulnerability management.
  • Experience with security tools such as static code analysis (SAST), dynamic analysis (DAST), software composition analysis (SCA), container security, and vulnerability management platforms.
  • Proficient in DevOps tools: Jenkins, GitLab CI, Docker, Kubernetes etc.
  • Familiarity with security frameworks and standards, such as OWASP Top 10, NIST, and CIS benchmarks.
  • Strong scripting skills in languages like Python, Bash, PowerShell, or Go.
  • Experience with cloud platforms such as AWS, Azure, or GCP and understanding of cloud security principles.
  • Hands-on experience with containerization (Docker, Kubernetes) and securing microservices.
  • Excellent problem-solving skills and the ability to work collaboratively in cross-functional teams.
  • Strong communication skills, including the ability to explain technical security concepts to non-technical stakeholders.
Certification

Mandatory:

  • Certifications such as Certified Red Team Operator (CRT), Certified Ethical Hacker (CEH), Offensive Security Certified Professional (OSCP), or GIAC Penetration Tester (GPEN) are highly desirable.

Good to have:

  • Certifications such as CREST Practitioner Security Analyst (CPSA), Certified Expert Penetration Tester (CEPT) etc.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Penetration Tester
Senior Penetration Tester

Tekskills • Bengaluru

On-site
INR 350,000 - 650,000
Penetration Testing Engineer / Application Security Testing Engineer
Penetration Testing Engineer / Application Security Testing Engineer

VMC Soft Technologies, Inc • Bengaluru Urban

On-site
INR 1,800,000 - 3,600,000
Penetration Tester
Penetration Tester

VikingCloud • India

On-site
INR 700,000 - 900,000
Penetration Tester – ME
Penetration Tester – ME

Jobtailor • Dadri

On-site
INR 900,000 - 1,300,000
Penetration Test Engineer
Penetration Test Engineer

VMC Soft Technologies, Inc • Hyderabad

On-site
INR 2,000,000 - 3,200,000
Security Analyst – Application Security VAPT
Security Analyst – Application Security VAPT

JUARA IT SOLUTIONS • Chennai District

On-site
INR 900,000 - 1,300,000
Penetration Tester (SMB)
Penetration Tester (SMB)

BreachLock, Inc. • Dadri

On-site
INR 1,200,000 - 2,400,000
Private Health Insurance
Penetration Tester
Penetration Tester

NTT DATA BUSINESS SOLUTIONS • Hyderabad

Hybrid
INR 1,200,000 - 2,200,000
Hybrid Working
Hiring For Penetration Tester - Mumbai
Hiring For Penetration Tester - Mumbai

Saint Gobain • Mumbai, Navi Mumbai

On-site
INR 4,000,000 - 8,000,000
Application Penetration Tester
Application Penetration Tester

ControlCase, LLC • Mumbai

On-site
INR 800,000 - 2,000,000