Security Analyst

Certbar Security

Mumbai

On-site

INR 600,000 - 1,200,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Certbar Security in Mumbai is seeking a Security Analyst with 1–3 years of hands‑on experience in vulnerability assessment, penetration testing, and security testing across applications, APIs, networks, and infrastructure.

You will conduct manual and automated testing, identify and document vulnerabilities with evidence and PoCs, prepare detailed technical and executive reports, and assist remediation with cross‑functional teams.

Qualifications

  • 1–3 years hands-on experience in Cybersecurity, VAPT, or related roles.
  • Strong understanding of Web App, API, Network and Infrastructure security.
  • Knowledge of OWASP Top 10 and common vulnerability classes.
  • Familiarity with CVEs, CWEs, CVSS and risk assessment.
  • Proficient in TCP/IP, DNS, HTTP/HTTPS, SSL/TLS basics.
  • Experience with Windows and Linux OS.
  • Good reporting and documentation skills.
  • Excellent written and verbal communication; ability to work independently.

Responsibilities

  • Perform manual and automated VAPT across apps, APIs, networks and infrastructure.
  • Identify, validate and document vulnerabilities with evidence and PoC where applicable.
  • Prepare technical and executive security assessment reports with remediation recommendations.
  • Conduct retesting to verify remediation effectiveness.
  • Coordinate with development and IT teams; participate in client security discussions.
  • Stay updated on new vulnerabilities, CVEs and cybersecurity trends.

Skills

VAPT experience
Application Security
Web security
Network security
Security reporting
Documentation

Tools

Burp Suite
Nmap
Nessus/OpenVAS
Metasploit
Wireshark
OWASP ZAP

Job description

We are looking for a Security Analyst with 1–3 years of hands‑on experience in Vulnerability Assessment, Penetration Testing (VAPT), and security testing. The candidate will be responsible for identifying security vulnerabilities, validating security risks, documenting findings, and supporting remediation activities across applications, APIs, networks, and infrastructure.

Key Responsibilities
  • Perform manual and automated Vulnerability Assessment and Penetration Testing (VAPT).
  • Conduct security assessments of web applications, APIs, mobile applications, networks, and infrastructure.
  • Identify, validate, and document security vulnerabilities and misconfigurations.
  • Perform manual testing to identify vulnerabilities that may not be detected by automated scanners.
  • Perform vulnerability scanning, manual validation, exploitation, and proof‑of‑concept (PoC) development where applicable.
  • Analyse vulnerability severity, business impact, and associated risks.
  • Prepare detailed technical and executive security assessment reports, including vulnerability description, risk rating, evidence/PoC, reproduction steps, impact, and remediation recommendations.
  • Conduct retesting to validate that reported vulnerabilities have been properly remediated.
  • Work with development, infrastructure, and IT teams to understand and communicate security findings.
  • Participate in client discussions, security assessment walkthroughs, and remediation discussions when required.
  • Stay updated on new vulnerabilities, CVEs, attack techniques, and cybersecurity trends.
  • Follow established security testing methodologies, standards, and best practices.
Required Skills & Qualifications
  • 1–3 years of hands‑on experience in Cybersecurity, VAPT, Penetration Testing, Application Security, or a related role.
  • Good understanding of Web Application, API, Network, and Infrastructure Security.
  • Strong understanding of OWASP Top 10 and common vulnerability classes.
  • Good knowledge of CVEs, CWEs, CVSS, and vulnerability risk assessment.
  • Good understanding of networking fundamentals, including TCP/IP, DNS, HTTP/HTTPS, SSL/TLS, and common network protocols.
  • Working knowledge of Windows and Linux operating systems.
  • Hands‑on experience with security tools such as Burp Suite, Nmap, Nessus/OpenVAS, Metasploit, Wireshark, OWASP ZAP, or equivalent.
  • Ability to perform both tool‑assisted and manual security testing.
  • Good analytical and problem‑solving skills.
  • Strong technical documentation and report‑writing skills.
  • Good verbal and written communication skills.
  • Ability to work independently and manage multiple security assessments effectively.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cyber Security Analyst
Cyber Security Analyst

Quess Corp Limited • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Technical Lead-Cybersecurity
Technical Lead-Cybersecurity

Birlasoft • Dadri

On-site
INR 1,200,000 - 2,400,000
Security Analyst - VAPT
Security Analyst - VAPT

TechDefence Labs • Delhi

On-site
INR 700,000 - 1,000,000
Competitive salary and benefits package
Opportunities for continuous learning
Security Analyst / Sr. Security Analyst
Security Analyst / Sr. Security Analyst

Nio Stars Technologies LLP • Mumbai

On-site
INR 1,200,000 - 2,400,000
Senior Penetration Tester
Senior Penetration Tester

Motadata • Ahmedabad District

On-site
INR 1,200,000 - 2,400,000
Cyber Security Analyst (1+ years)
Cyber Security Analyst (1+ years)

Satark Technology Private Limited • Gandhinagar

Hybrid
INR 600,000 - 800,000
Penetration Tester
Penetration Tester

Alignity Solutions • Hyderabad

Hybrid
INR 1,200,000 - 1,800,000
Security Consultant
Security Consultant

Eventus Security • Navi Mumbai

On-site
INR 600,000 - 1,200,000
Cyber Security Analyst
Cyber Security Analyst

Network Intelligence India • Thane

On-site
INR 900,000 - 1,700,000
Security Analyst – Application Security VAPT
Security Analyst – Application Security VAPT

JUARA IT SOLUTIONS • Chennai District

On-site
INR 900,000 - 1,300,000