Senior, Cybersecurity Penetration Tester

Schneider Electric

Bengaluru

On-site

INR 2,000,000 - 3,500,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Schneider Digital, the global IT organization within Schneider Electric, seeks a Cybersecurity Penetration Tester in Bengaluru. You will assess security across Web, Mobile, API, and cloud environments, driving secure development and risk mitigation with cross‑functional teams.

Requires 4+ years in IT security with hands-on pen-testing of diverse apps and networks. Certifications like OSCP/OSCE are favorable; Azure/AWS security credentials are a plus.

Qualifications

  • 4+ years of IT security experience.
  • Min 3+ years of penetration testing in Web, Mobile, API, Thick client and Network.
  • Strong knowledge of OWASP, SANS and pentest methodologies.
  • Desirable experience with red teams or CTF events.
  • BE/MS/MCA in CS/IT or related fields; relevant certifications welcomed.

Responsibilities

  • Understand project deliverables and application details.
  • Run automated and manual security checks to uncover weaknesses in the system.
  • Propose mitigation steps for identified risks and threats.
  • Provide clear recommendations from a security perspective based on app and business context.
  • Collaborate with cybersecurity teams and application teams.
  • Explore processes, reporting and improvement in techniques.
  • Coordinate with other penetration teams to align tools and knowledge.

Skills

Penetration testing
Web/mobile/API testing
Cloud security
Scripting (Python/Ruby)
OWASP & security standards
DevSecOps awareness

Education

BE / BTech in CS/IT
MS in CS/IT
Certifications - OSCP/OSCE
Azure/AWS security certifications

Tools

Burp Suite
Nessus
Nmap

Job description

Cybersecurity Penetration Tester

Schneider Digital is the global IT organization within Schneider Electric. We have, within our Cybersecurity function, an objective to assess the security of our systems, to identify security risks before those materialize. Technical assurance, by means of security testing of the actual system, is crucial so we identify application related issues that need to be addressed.

This role is part of our DE Penetration Testing unit and will focus on performing penetration testing of those systems, and providing clear guidance as to how to address weaknesses identified. The role holder will be working in collaboration with the applications security and compliance regional managers and other IT specialists, to train in Schneider Electric security policies, processes, and tools.

Responsibilities

The Lead Cybersecurity Penetration Tester will work with project teams to ensure applications meet our security policies.

  • Understand project deliverables and application details
  • Run automated and manual security checks (not limited to tools) to uncover security weaknesses in the system
  • Propose mitigation steps for identified risks and threats
  • Provide clear recommendations from a security perspective based on understanding of application, application risk and business context, and results of checks performed.
  • Work alongside the cybersecurity community and application teams.
  • Explore process, reporting and improvement in techniques
  • Ability to collaborate with other penetration teams to align knowledge, tools and techniques
Behaviors and Competencies
  • Strong written and verbal communication skills, with a proven ability to communicate with technical staff, as well as project teams, so security risks are understood in business terms
  • Keep pace with standards and technologies related to security
  • Leadership / Act like owners
  • Collaboration / Teamwork
  • Requirements Gathering and Analysis
  • Interpersonal Skills, proactiveness
  • Willing to learn new skills / Learn Every day and desire to succeed and grow
Skills
  • Security – Web, Mobile, API, Cloud and container security, Thick Client, Network, Operating System
  • Applications Development & Delivery
  • Understanding or experience of any of the following is an advantage:
    • Cloud Security Assessment and Security Audits of Cloud Environment
    • Vulnerability Management (Process, Tools and Metrics)
    • NIST Cybersecurity Framework
    • Critical Security Controls (CSC)
  • Expertise in DevSecOps methodologies is also an advantage.
Knowledge
  • Pentest standards and methodologies, OWASP, SANS etc.
  • Subject matter expert in web/mobile/thick client/API/IoT/IIoT assessments
  • Good understanding of server vulnerabilities (Linux, Windows) and hardening
  • Familiarity with cloud platforms, and cloud container security
  • Efficient and effective usage of pentest tools as well as demonstrate less dependency on tools.
  • Experience with automation, scripting (Python, Perl, Ruby, etc.)
  • Proactive interest in emerging technologies (e.g. Offensive AI) and techniques related to penetration testing
  • Basic understanding of AI/ML concepts and Large Language Models (LLMs) and their integration in modern applications
  • Awareness of security risks in AI/LLM-based systems, including prompt injection, data leakage, and API misuse in GenAI applications
  • Ability to translate technical security topics in a business-friendly manner
  • Demonstrable teamwork skills and resourcefulness
  • Virtual Machines Management
Experience
Essential
  • 4+ years of experience in IT security
  • Min 3+ years of experience in penetration testing of Web, Mobile (iOS & Android), API, Thick client & Network.
Desirable
  • Experience with red teams or CTF (Capture the Flag)
  • Experience with reverse engineering
  • Presented exploit POC/ research concepts at forums like exploit-db.
  • Participated in national/ international cybersecurity conferences.
  • DevSecOps implementation and supporting security tooling is desirable (SAST)
Education and Training
  • BE or MS or MCA Computers Science or Information Technology or related fields
  • Tech Computers Science or Information Technology or related fields
  • Certifications - OSCP, OSCE, GPEN, GXPN, GICSP, GWAPT, OSWP, etc.
  • Azure / AWS security certifications is a plus.
  • CISSP, CEH also a plus
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Penetration Testing Cyber security Engineer
Penetration Testing Cyber security Engineer

HCLTech • Hyderabad, Chennai District

On-site
INR 1,800,000 - 3,000,000
Penetration Testing Senior Consultant
Penetration Testing Senior Consultant

Alignity Solutions • Hyderabad

Hybrid
INR 1,800,000 - 3,000,000
Hybrid work
Senior Penetration Tester
Senior Penetration Tester

Booking Holdings • Bengaluru

Hybrid
INR 3,000,000 - 6,000,000
Penetration Tester ME
Penetration Tester ME

BreachLock, Inc. • Dadri

On-site
INR 900,000 - 1,500,000
Private Health Insurance
Cyber Penetration Tester
Cyber Penetration Tester

Alignity Solutions • Hyderabad

On-site
INR 1,000,000 - 1,500,000
Senior Penetration Testing Consultant
Senior Penetration Testing Consultant

EY • Bengaluru

On-site
INR 1,800,000 - 3,200,000
Specialist - Cybersecurity Penetration Tester
Specialist - Cybersecurity Penetration Tester

Schneider Electric • Bengaluru

On-site
INR 3,000,000 - 4,000,000
Penetration Tester
Penetration Tester

Michael Page • Hyderabad

Hybrid
INR 2,500,000 - 5,500,000
Staff Engineer - Application Security
Staff Engineer - Application Security

UST • Bengaluru

On-site
INR 2,400,000 - 4,200,000
Security Test Engineer
Security Test Engineer

Cyient • Bengaluru

On-site
INR 2,500,000 - 4,500,000