Security Test Engineer

Cyient

Bengaluru

On-site

INR 2,500,000 - 4,500,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Cyient is seeking an experienced Penetration Tester - Leader to perform offensive security testing on embedded devices (automotive, medical, IoT), network devices, IT/OT infrastructure, and backend/cloud applications. The role involves identifying security vulnerabilities through manual and automated testing, as well as reverse engineering in line with industry cybersecurity standards.

You will conduct threat analysis, lead assessments, document findings with remediation guidance, and

Qualifications

  • Proven hands-on penetration testing experience across embedded, IoT and IT/OT environments.
  • Strong knowledge of reverse engineering and firmware analysis.
  • Experience with Kali Linux, Burp Suite, Metasploit, Nmap, Wireshark, Ghidra/IDA Pro.

Responsibilities

  • Perform threat analysis and risk assessment.
  • Conduct security assessments on embedded/IoT devices, cloud apps, and IT/OT infra.
  • Identify, exploit, and document vulnerabilities with remediation guidance.
  • Prepare penetration test reports for customers and internal stakeholders.

Job description

We are seeking an experienced Penetration Tester - Leader to perform offensive security testing on embedded devices (automotive or medical device or Iot) , network devices, network IT/OT infrastructure & backend/cloud applications. The role involves identifying security vulnerabilities through manual and automated penetration testing, reverse engineering in compliance with industry-specific cybersecurity standards (Automotive, Healthcare, OT, IT) and project requirements.

Key Responsibilities
  • Perform Threat analysis and risk assessment
  • Conduct security assessments on:
    • Embedded/ IOT devices
    • Cloud/Web apps
    • IT/OT infrastructure
    • Android & iOS apps
  • Perform firmware extraction, analysis, and reverse engineering
  • Identify, exploit, and document vulnerabilities with clear risk and remediation guidance
  • Collaborate with development and system teams to validate fixes and retest vulnerabilities
  • Prepare penetration test reports for customers and internal stakeholders
  • Knowledge of secure coding flaws
Technical Skills
  • Strong hands-on experience in penetration testing methodologies
  • Proficiency with Kali Linux and Linux-based testing environments
  • Hands-on usage of tools such as:
    • Burp Suite
    • Metasploit
    • Nmap
    • Wireshark
    • Ghidra / IDA Pro
  • Experience in reverse engineering of embedded firmware (ARM, PowerPC, TriCore, etc.)
  • Familiarity with bootloaders, secure boot, and firmware update mechanisms
  • Understanding of hardware attack surfaces and mitigation techniques
Tools & Platforms
  • Kali Linux, Ubuntu, embedded Linux
  • Burp Suite, Wireshark, Nmap, Metasploit
  • Ghidra, IDA Pro, Binwalk
  • Python / Bash scripting for automation (preferred)
Certifications (Preferred)

Demonstrate strong offensive security capabilities supported by industryrecognized certifications and verifiable achievements, including:

  • Proven presence in leading Security Hall of Fame / Acknowledgment Lists from global technology vendors (e.g. Bugcrowd, HackerOne).
  • Preferred certifications are:
    • CREST Certified Tester (CCT / CRT / CCT-INF)
    • OSCP / OSWE / GWAPT
    • Offensive Security or INE/eLearnSecurity certifications, such as: OSEP, ejpt, eCPPT, eWPT/eWPTX, eCPTX
  • Documented contribution to the cybersecurity community through published CVEs listed under the candidate’s name. Participation in responsible disclosure programs with publicly available acknowledgements or awards.
  • Demonstrated excellence through participation in national and international cybersecurity hackathons and completion of advanced CTF challenges. Achieved toptier rankings on offensivetraining platforms such as Hack The Box, TryHackMe, and other similar competitive environments.
  • Strong portfolio of security research, exploit development, vulnerability analysis, or open-source security tool contributions.
Standards & Framework Awareness
  • OWASP Testing Methodology
  • Familiarity with Threat Analysis and Risk Assessment and threat-based testing
Behavioral & Professional Skills
  • Strong analytical and problem-solving skills
  • Ability to think like an attacker and communicate risk clearly
  • Excellent technical documentation and reporting skills
  • Comfortable with customer-facing discussions and technical reviews
  • Ability to work independently and in cross-functional teams

Roles and Responsibilities

Under direct supervision, performs maintenance on existing software products for customers. Assists in coding, testing, and debugging new software or making enhancements to existing software for customers. Writes programs according to specifications from higher level staff or business analysts. May use CASE tools. Makes suggestions for problem solutions or software enhancements. May assist in development of user manuals. Works with technical staff to learn and understand problems with software. Note: If the incumbent is responsible for the development of software for internal use, please match to a position in the Application Development sub-family grouping.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Software Engineer
Software Engineer

Cloudxtreme • Bengaluru, Hyderabad

On-site
INR 900,000 - 1,500,000
Senior Engineer - Embedded Product Security
Senior Engineer - Embedded Product Security

Stryker • Gurugram District

On-site
INR 800,000 - 1,200,000
Senior Penetration Tester
Senior Penetration Tester

NTT DATA BUSINESS SOLUTIONS • Hyderabad

Hybrid
INR 2,500,000 - 4,000,000
Hybrid Working
Senior Penetration Tester
Senior Penetration Tester

Tekskills • Bengaluru

On-site
INR 350,000 - 650,000
Penetration Tester, SMB
Penetration Tester, SMB

Jobtailor • Dadri

On-site
INR 900,000 - 1,300,000
Penetration Tester – ME
Penetration Tester – ME

Jobtailor • Dadri

On-site
INR 900,000 - 1,300,000
Senior, Cybersecurity Penetration Tester
Senior, Cybersecurity Penetration Tester

Schneider Electric • Bengaluru

On-site
INR 2,500,000 - 4,500,000
Penetration Tester
Penetration Tester

VikingCloud • India

On-site
INR 700,000 - 900,000
Penetration Tester
Penetration Tester

NTT DATA BUSINESS SOLUTIONS • Hyderabad

Hybrid
INR 1,200,000 - 2,200,000
Hybrid Working
Penetration Tester ME
Penetration Tester ME

BreachLock, Inc. • Dadri

On-site
INR 900,000 - 1,500,000
Private Health Insurance