Senior Penetration Tester

NTT DATA BUSINESS SOLUTIONS

Hyderabad

Hybrid

INR 2,500,000 - 4,000,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Hybrid Working

Job summary

NTT DATA BUSINESS SOLUTIONS in Hyderabad invites a Senior Penetration Tester to lead advanced security assessments across networks, apps and databases. You will perform ethical hacking, craft payloads, and deliver actionable risk reports to stakeholders.

You will mentor junior team members, refine testing methodologies, and collaborate with Security DevOps to improve automation and defenses in a global delivery model.

Qualifications

  • Bachelor's degree or equivalent in Information Technology or Computer Science or related field.
  • Security certifications desirable (OSWE, OSEP, OSCP, OSCE, CRTP, GPEN, or CREST).
  • Experience with security testing tools and scripting languages.

Responsibilities

  • Plan, execute and manage complex penetration testing engagements across networks, apps and databases.
  • Perform simulated cyber-attacks and assess resilience to threats.
  • Analyze results and produce detailed reports for stakeholders.
  • Mentor junior testers and contribute to security awareness initiatives.
  • Develop and refine security testing methodologies and automation.

Skills

Penetration testing
Burp Suite
Metasploit
Nmap
Wireshark
Security reporting
Mentorship

Education

Bachelors in IT/CS

Tools

Burp Suite
Metasploit
Nmap
Wireshark

Job description

Job Summary

The Senior Penetration Tester is an advanced subject matter expert responsible for assessing and evaluating the security posture of the company's information systems, networks, applications and infrastructure. This role involves conducting rigorous and complex penetration testing and ethical hacking activities to identify vulnerabilities and potential weaknesses for exploitation. This role collaborates with cross functional teams and provides strategic security recommendations and assists in strengthening the organization's overall cybersecurity defenses. The Senior Penetration Tester serves as a mentor to junior members and is highly experienced in relevant exploits, tooling, exploit writing and is a pivotal role in the company's continuous assessment program.

Responsibilities
  • Plans, executes and manages complex penetration testing engagements on various IT assets, including networks, applications and databases.
  • Conducts simulated cyber-attacks, including social engineering, to identify vulnerabilities and assesses the organization's resilience to cyber threats.
  • Performs penetration tests against internal and external facing systems.
  • Analyzes and interprets penetration test results and provides detailed reports to relevant stakeholders.
  • Provides input to improve the quality and effectiveness of tests in a highly scaled and global environment.
  • Articulates complex technical risks through creation of reports and delivering presentations to key stakeholders.
  • Works with Security DevOps teams to test the orchestration and automation processes and platforms, feed results into a testing program.
  • Supports the assessment risk and the development and/or recommends appropriate mitigation countermeasures based on empirical testing.
  • Provides comprehensive technical expertise with web, application and database vulnerability testing.
  • Supports the development of the security automation framework and the implementation roadmap.
  • Provides actionable security recommendations and mitigation strategies to address identified vulnerabilities.
  • Ensures that penetration testing activities align with relevant industry standards, compliance regulations, and best practices and to ensure program integrity and independence within the organization.
  • Contributes to any security awareness training and education programs to promote a culture of cybersecurity within the organization.
  • Stays up to date with the latest cybersecurity threats, attack vectors, and defensive technologies to continuously improve testing methodologies.
  • Mentors and guides less experienced members of the penetration testing team, sharing knowledge and best practices.
  • Crafts payloads and executables to specific environments using obfuscation techniques to evade detection from advanced EDR systems.
Requirements
  • Ability to work independently and manage multiple projects within remote environment.
  • Demonstrates a strong ability to engage with various stakeholders, have a team-based approach and work towards share goals and outcomes.
  • Ability to think outside the box and a passion to improve your skills and drive innovation.
  • Ability to compromise systems and demonstrate ways to laterally move post compromise.
  • In-depth knowledge of common security assessment methodologies, such as OWASP, PTES, or NIST SP PHONE_NUMBER.
  • Strong understanding of various operating systems, network protocols, and application security.
  • Advanced proficiency in using penetration testing tools and frameworks, such as Metasploit, Burp Suite, Nmap, and Wireshark.
  • Advanced knowledge of security assessment tools and technologies used to evaluate web applications, databases, and network infrastructure.
  • Excellent analytical and problem-solving skills to identify and exploit vulnerabilities effectively
  • Strong written and verbal communication skills to deliver clear and concise reports and recommendations to stakeholders.
  • Ethical and professional conduct with a commitment to confidentiality and data privacy.
Qualifications
  • Bachelor's degree or equivalent in Information Technology or Computer Science or related field.
  • Security related certifications such as OSWE, OSEP, OSCP, OSCE, CRTP, GPEN, or CREST is desirable.
Experience
  • Advanced penetration testing experience and ethical hacking gained within a similar global environment.
  • Advanced experience with both commercial and open-source security tools and scripting languages.
  • Advanced exposure to security testing scenarios e.g. Capture the Flag / Red Team / Blue Team is desirable.
  • Advanced experience with various testing platforms e.g. Hack the Box / Vulnhub / PentesterLab is desirable.
Workplace Type

Hybrid Working

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Penetration Tester
Penetration Tester

NTT DATA BUSINESS SOLUTIONS • Hyderabad

Hybrid
INR 1,200,000 - 2,200,000
Hybrid Working
Penetration Tester ME
Penetration Tester ME

BreachLock, Inc. • Dadri

On-site
INR 900,000 - 1,500,000
Private Health Insurance
Senior Penetration Tester
Senior Penetration Tester

NTT Limited • Hyderabad

Hybrid
INR 1,500,000 - 2,300,000
Hybrid Working
Penetration Tester SMB
Penetration Tester SMB

BreachLock, Inc. • Dadri

On-site
INR 1,200,000 - 2,400,000
Private Health Insurance
Application Penetration Tester
Application Penetration Tester

Cortex Consultants LLC • Chennai District

On-site
INR 500,000 - 700,000
Senior Penetration Tester
Senior Penetration Tester

Tekskills • Bengaluru

On-site
INR 350,000 - 650,000
Cyber Security Specialist
Cyber Security Specialist

Muthoot FinCorp (MFL) • India

On-site
INR 1,200,000 - 2,400,000
Penetration Tester
Penetration Tester

Michael Page • Hyderabad

Hybrid
INR 2,500,000 - 5,500,000
Penetration Tester, SMB
Penetration Tester, SMB

Jobtailor • Dadri

On-site
INR 900,000 - 1,300,000
Senior Penetration Testing Consultant
Senior Penetration Testing Consultant

EY • Bengaluru

On-site
INR 1,800,000 - 3,200,000