Security Consultant - VAPT

Securelayer7 Technologies

Pune District

On-site

INR 1,200,000 - 2,200,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

SecureLayer7 in Pune is seeking a Senior Security Professional VAPT with 6-14 years of hands-on experience to lead end-to-end security assessments across Web, Mobile, API, Cloud and thick client environments.

You will perform manual and automated testing, prepare detailed reports with risk ratings and remediation guidance, and communicate findings to clients and stakeholders while independently managing assessments from planning through closure.

Qualifications

  • Six mandatory technical areas: Web App VAPT, Mobile VAPT, API Security Testing, Cloud Security Assessment, Thick Client VAPT, and Manual Source Code Review.
  • Experience with OWASP Top 10 and application security vulnerabilities.
  • Strong vulnerability analysis, reporting and remediation skills.

Responsibilities

  • Perform hands-on VAPT and security assessments across Web, Mobile, API, Source Code, Cloud and Thick Client apps.
  • Conduct Web App Security Testing including authentication, authorization, session management, injection.
  • Perform Mobile App Security Testing for Android and iOS.
  • Test API/Web Services security for REST and SOAP APIs.
  • Prepare detailed VAPT reports with findings, risk ratings and remediation.

Skills

Web App VAPT
Mobile VAPT
API Security Testing
Cloud Security Assessment
Thick Client VAPT
Source Code Review
OWASP Top 10
Penetration Testing Methodologies
Vulnerability Assessment Tools
Automation / Scripting

Education

Bachelor's degree in Computer Science/IT/Cybersecurity

Tools

VAPT Tools
Python
Bash

Job description

Who Are We?

At SecureLayer7, we aim to solve challenging cybersecurity problems and hurdles organizations face. We bring bright minds together to provide a smooth experience in cybersecurity and achieve our vision by making organizations secure from cyber-attacks. From cryptocurrency
exchanges to IoT devices, our skilled pentesters and security engineers work on diverse penetration testing and security assessment programs.
SecureLayer7-powered products BugDazz and SensFRX are innovating in the cybersecurity space, and we are looking for passionate security professionals who can contribute to our next stage of growth.

About Job

We are looking for a Senior Security Professional VAPT with 6 - 14 years of experience to join our team in Pune.
This is a hands-on Individual Contributor role focused on performing end-to-end security
assessments across different application and infrastructure environments. The candidate will work on challenging security assessments, identify vulnerabilities, provide remediation guidance,
prepare technical reports, and interact with clients and internal stakeholders.

Work Location: Pune
Work Mode: Work from Office
Experience: 6-14 Years
Role: Individual Contributor

Who are you & What will you do?

You are a hands-on cybersecurity professional with strong experience in penetration testing and application security across multiple technologies.

What will you do?
  • Perform hands-on VAPT and security assessments across Web, Mobile, API,Source
    Code, Cloud and Thick Client applications.
  • Conduct Web Application Security Testing including authentication, authorization,
    session management, business logic, injection and other application vulnerabilities.
  • Perform Mobile Application Security Testing across Android and iOS platforms.
  • Conduct API and Web Services Security Testing across REST and SOAP APIs.
  • Perform Cloud Security Assessments across AWS and Azure environments.
  • Conduct Thick Client Security Assessments and identify application and client-server vulnerabilities.
  • Perform Manual Source Code Reviews to identify security vulnerabilities and insecure coding practices.
  • Identify, validate and exploit vulnerabilities using appropriate manual and automated techniques.
  • Prepare detailed VAPT reports with findings, evidence, risk ratings and remediation recommendations.
  • Perform vulnerability validation and retesting after remediation.
  • Communicate technical findings and remediation recommendations to clients and internal stakeholders.
  • Independently manage assigned security assessments from planning through reporting and closure.
  • Stay updated with emerging vulnerabilities, attack techniques, security tools and application security practices.
Education Qualification

Bachelor's degree in Computer Science, Information Technology, Cybersecurity or a
related field.
Relevant cybersecurity certifications will be an added advantage.
Overview of Technical Skills:

Mandatory Skills

  • Web Application VAPT
  • Mobile VAPT (Android & iOS )
  • API Security Testing REST & SOAP
  • Cloud Security Assessment AWS & Azure
  • Thick Client VAPT
  • Manual Source Code Review
Other Technical Skills
  • Strong understanding of OWASP Top 10 and application security vulnerabilities.
  • Knowledge of penetration testing methodologies and vulnerability assessment.
  • Experience with commonly used VAPT and security testing tools.
  • Strong vulnerability analysis, reporting and remediation skills.
  • Ability to independently execute security assessments.
  • Good to have in CV & Pulse Point to Get Selected:
  • Certifications such as OSCP, OSWE, OSEP, CEH, ECSA or CREST.
  • Experience in security research, bug bounty or responsible disclosure.
  • Strong exposure to offensive security and penetration testing.
  • Experience with DevSecOps / CI-CD security.
  • Experience with additional cloud platforms such as GCP.
  • Scripting/automation experience using Python, Bash or similar languages.
  • Experience working with global clients and presenting technical findings.
  • Strong technical report writing and communication skills.
  • Ability to independently handle end-to-end security assessments.
  • Strong problem-solving mindset and curiosity to explore new attack techniques.
Important Role Requirements

Hands-on Technical Role | Individual Contributor | Pune WFO | 6-4 Years

Candidates must have practical experience across all six mandatory technical areas to be considered for this position.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Analyst
Analyst

Deloitte Shared Services India • New Delhi

On-site
INR 800,000 - 1,200,000
VAPT consultant
VAPT consultant

Cyraac Services • Navi Mumbai

On-site
INR 900,000 - 1,700,000
Cyber Security Engineer
Cyber Security Engineer

Polosoft Technologies • Hyderabad

On-site
INR 900,000 - 1,300,000
VAPT Manager | Mumbai
VAPT Manager | Mumbai

ControlCase, LLC • Mumbai

On-site
INR 1,500,000 - 2,200,000
Cyber Security Engineer
Cyber Security Engineer

Scyverge Labs Private Limited • Bengaluru

Hybrid
INR 540,000 - 660,000
Hybrid work environment
Real-world security projects
Growth opportunities
+1
Security Analyst - VAPT
Security Analyst - VAPT

TechDefence Labs • Delhi

On-site
INR 700,000 - 1,000,000
Competitive salary and benefits package
Opportunities for continuous learning
Security Analyst – Application Security VAPT
Security Analyst – Application Security VAPT

JUARA IT SOLUTIONS • Chennai District

On-site
INR 900,000 - 1,300,000
Team Lead - ASR
Team Lead - ASR

NopalCyber • Hyderabad

On-site
INR 4,000,000 - 7,000,000
None
Cyber Security Specialist
Cyber Security Specialist

Muthoot FinCorp (MFL) • Thiruvananthapuram

On-site
INR 900,000 - 1,300,000
Associate - Cyber Security - VAPT
Associate - Cyber Security - VAPT

BDO India • Mumbai

On-site
INR 1,500,000 - 2,100,000