Senior Penetration Tester

Jobtailor

Bengaluru

On-site

INR 1,800,000 - 3,000,000

Full time

6 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Jobtailor in Bengaluru, India seeks an experienced Penetration Tester to perform diverse pentesting tasks, including web app, wireless, social engineering, and physical assessments. You will lead red team engagements, analyze findings, and deliver actionable reports to executives.

The role emphasizes OWASP Top 10, cloud security, AD security, and SDLC integration, with opportunities to automate tests and mentor junior staff.

Qualifications

  • BE/B.Tech/MCA or equivalent.
  • 6+ years of penetration testing experience across internet, intranet, web apps, wireless, social engineering, physical and Red Team assessments.
  • Certifications such as OSCP, OSCE, OSEP, OSWE, CREST, CRTE, ECPTX, EWPTX, CISSP, GPEN preferred.
  • Knowledge of Windows, Linux, UNIX, or other major operating systems.
  • 3-4-9 years of work experience in Strategy and Operations projects (as applicable).
  • Strong Excel and PowerPoint skills.
  • Understanding of OWASP Top 10 and web-based vulnerabilities.
  • Experience with Active Directory/Windows security and TCP/IP protocols.
  • Experience with cloud technologies (AWS, Azure, GCP) and security testing.
  • Technical writing for engagement reports and procedures.

Responsibilities

  • Perform internet, intranet, web application, wireless, social engineering and physical penetration testing
  • Execute penetration testing projects using established methodologies, tools and rules of engagement
  • Execute red team assessments to identify gaps affecting organizational security postures
  • Identify and exploit security vulnerabilities across diverse systems and situations
  • Analyze penetration testing results and create reports covering findings, exploitation procedures, risks and recommendations
  • Communicate complex security concepts to technical and non-technical audiences, including executives
  • Communicate OWASP Top 10 methodologies and techniques with development teams
  • Develop automated solutions to mitigate organizational risks
  • Automate DAST/SAST solutions and reporting
  • Support SDLC and agile environments through application security testing and source code reviews
  • Provide technical leadership and advice to junior team members on attack and penetration testing engagements

Skills

Penetration Testing
Red Team Assessments
OWASP Top 10
Automation of DAST/SAST
Technical Writing
Project Management
Communication Skills
Cloud Technologies
Active Directory Security
TCP/IP Protocols

Education

BE/B.Tech/MCA or equivalent

Tools

DAST Tools
SAST Tools
Excel
PowerPoint
AWS
Azure
GCP

Job description

  • Perform internet, intranet, web application, wireless, social engineering and physical penetration testing
  • Execute penetration testing projects using established methodologies, tools and rules of engagement
  • Execute red team assessments to identify gaps affecting organizational security postures
  • Identify and exploit security vulnerabilities across diverse systems and situations
  • Analyze penetration testing results and create reports covering findings, exploitation procedures, risks and recommendations
  • Communicate complex technical security concepts to technical and non-technical audiences, including executives
  • Communicate OWASP Top 10 methodologies and techniques with development teams
  • Develop automated solutions to mitigate organizational risks
  • Automate DAST/SAST solutions and reporting
  • Support SDLC and agile environments through application security testing and source code reviews
  • Provide technical leadership and advice to junior team members on attack and penetration testing engagements
Requirements
  • BE/ B.Tech/ MCA or equivalent
  • Minimum of 6 years of work experience in penetration testing, including at least three of: internet, intranet, web application, wireless, social engineering, physical and Red Team assessments
  • One of the following certifications: OSCP, OSCE, OSEP, OSWE, CREST, CRTE, eCPTX, or eWPTX
  • Knowledge of Windows, Linux, UNIX, or other major operating systems
  • 3-4-9 years of work experience in Strategy and Operations projects
  • Strong Excel and PowerPoint skills
  • Understanding of web-based application vulnerabilities and OWASP Top 10
  • Understanding of enterprise security controls in Active Directory / Windows environments
  • Understanding of TCP/IP network protocols
  • Understanding of network security and popular attack vectors
  • Experience with Operational Technology / Internet of Things, cloud technologies (AWS, Azure, GCP), Active Directory and 802.1x penetration testing
  • Strong understanding of security principles, policies, and industry best practices
  • Technical writing skills for engagement reports, presentations and operating procedures
  • Project management skills are ideally desired
  • Ideally, certifications such as CISSP, GPEN, or GWAPT
Core Competencies

Demonstrates expertise in penetration testing across various environments, including web applications and wireless systems, while effectively communicating complex security concepts to diverse audiences. Proficient in automating security solutions and supporting secure software development life cycles.

Highest-signal resume keywords
  • Penetration Testing
  • Red Team Assessments
  • OWASP Top 10
  • Automation of DAST/SAST
  • Security Vulnerability Analysis
Hard Skills
  • Penetration Testing
  • Web Application Security
  • Network Security
  • Vulnerability Assessment
  • Technical Writing
  • Security Principles
  • TCP/IP Protocols
  • Active Directory Security
  • Cloud Technologies
  • SDLC Application Security
Soft Skills
  • Communication Skills
  • Project Management
  • Technical Leadership
Certifications & Qualifications
  • OSCP
  • OSCE
  • OSEP
  • OSWE
  • CREST
  • CRTE
  • ECPTX
  • EWPTX
  • CISSP
  • GPEN
Industry Keywords
  • Internet of Things
  • Operational Technology
  • Security Best Practices
  • Agile Environments
  • Social Engineering
Tools & Technologies
  • DAST Tools
  • SAST Tools
  • Excel
  • PowerPoint
  • AWS
  • Azure
  • GCP
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Penetration Testing Manager
Penetration Testing Manager

Jobtailor • Thiruvananthapuram

On-site
INR 1,400,000 - 2,200,000
Senior Consultant, Offensive Security
Senior Consultant, Offensive Security

Jobtailor • Bengaluru

On-site
INR 1,800,000 - 3,000,000
Penetration Tester, SMB
Penetration Tester, SMB

Jobtailor • Dadri

On-site
INR 900,000 - 1,300,000
Penetration Tester – ME
Penetration Tester – ME

Jobtailor • Dadri

On-site
INR 900,000 - 1,300,000
Senior Penetration Tester
Senior Penetration Tester

NTT DATA BUSINESS SOLUTIONS • Hyderabad

Hybrid
INR 2,500,000 - 4,000,000
Hybrid Working
Penetration Tester ME
Penetration Tester ME

BreachLock, Inc. • Dadri

On-site
INR 900,000 - 1,500,000
Private Health Insurance
Senior Security Testing Engineer
Senior Security Testing Engineer

Allied Boston Consultants India • Dadri

On-site
INR 900,000 - 1,300,000
Senior Penetration Tester
Senior Penetration Tester

Tekskills • Bengaluru

On-site
INR 350,000 - 650,000
Penetration Tester
Penetration Tester

Alignity Solutions • Hyderabad

Hybrid
INR 1,200,000 - 1,800,000
Cyber Security Specialist
Cyber Security Specialist

Muthoot FinCorp (MFL) • India

On-site
INR 1,200,000 - 2,400,000