Senior Security Testing Engineer

Allied Boston Consultants India

Dadri

On-site

INR 900,000 - 1,300,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Allied Boston Consultants India is seeking a security testing professional to develop and execute comprehensive security tests across web, mobile, API, and infrastructure. You will review designs, run manual and automated tests, and simulate attacks to uncover vulnerabilities and logic flaws.

Collaboration with clients and teams will be key to delivering actionable risk assessments. The role emphasizes adherence to security standards, mentoring juniors, and documenting detailed findings with

Qualifications

  • Strong knowledge of network protocols, firewalls, cloud configurations and overall application architecture.
  • Understanding of secure coding practices and how vulnerabilities map to code structures.
  • Experience with security testing methodologies, frameworks and standards (OWASP, CWE/SANS, NIST).
  • Familiarity with cyberattack vectors, exploit techniques, and threat modeling.
  • Scripting skills (Python, Bash) for automation and testing.
  • Excellent analytical, documentation, reporting and communication skills.
  • Ability to work independently, mentor juniors and manage testing priorities.
  • Awareness of cloud security and zero-trust concepts.

Responsibilities

  • Develop and maintain security test plans, methods, suites and scripts.
  • Review test design specifications and ensure coverage of vulnerabilities.
  • Perform manual and automated security testing of web, mobile, API and infrastructure.
  • Conduct VAPT on Web/Mobile/API and IT Infra devices.
  • Do configuration audits on IT Infra devices.
  • Use Burp Suite, Nmap, Wireshark, Metasploit, Nessus and similar tools.
  • Simulate attacks to identify weaknesses and communicate findings.
  • Collaborate with clients and internal teams to drive project execution.
  • Analyze applications for logic errors and scenario-specific risks.
  • Ensure compliance with OWASP Top 10, SANS 25, ISO 27001 standards and report risks.

Skills

Network protocols
Firewalls
Cloud configurations
Application architecture
Security testing methodologies
Vulnerability standards
Cyberattack vectors
Threat modeling
Python/Bash scripting
Documentation & reporting
Communication
Independent work & mentoring
Cloud security / zero trust

Education

B.Tech / M.Tech in Computer Science / IT or related
BCA / MCA or equivalent

Job description

Key Responsibilities:
  • Develop and maintain security test plans, test methods, test suites, and test scripts in line with regulatory and industry best practices.
  • Review test design specifications and ensure complete coverage of potential vulnerabilities and threat vectors.
  • Perform manual and automated security testing of web, mobile, API, and infrastructure components.
  • Conduct VAPT on Web/Mobile/ API and IT Infra devices.
  • Conduct Configuration audits on IT Infra devices.
  • Use industry-recognized tools such as Burp Suite, Nmap, Wireshark, Metasploit, Nessus, etc.
  • Simulate attacks to identify and analyze potential security weaknesses in systems and applications.
  • Collaborate with clients and internal stakeholders to ensure the project execution.
  • Analyze applications beyond technical vulnerabilities to uncover logic errors, workflow bypasses, and scenario-specific scenarios.
  • Ensure adherence to relevant standards such as OWASP Top 10, SANS 25, ISO 27001.
  • Prepare detailed test reports, including risk severity, PoCs, and recommendations.
  • Collaborate with client development teams to explain identified vulnerabilities and ensure clear communication of findings to both technical and non-technical stakeholders.

Required Qualifications:
Academic Qualifications:
  • B.Tech / M.Tech in Computer Science, IT, or related discipline
  • BCA / MCA or other equivalent qualifications

Professional Certifications:
  • CEH (Certified Ethical Hacker)
  • OSCP/OSCP+
  • NSE1/NSE2
  • ISO 27001
  • ISO 17025
  • CISSP
  • CISM

Desired Skills & Competencies:
  • Strong knowledge of network protocols, firewalls, cloud configurations, and overall application architecture.
  • Solid understanding of application code structures and how they relate to security vulnerabilities.
  • Proven experience with security testing methodologies, frameworks, and vulnerability standards (OWASP, CWE/SANS, NIST, etc.).
  • Good understanding of cyberattack vectors, exploit techniques, and threat modeling practices.
  • Familiarity with scripting languages (e.g., Python, Bash) for automation and custom testing is an advantage.
  • Excellent analytical, documentation, reporting, and communication skills.
  • Ability to work independently, mentor junior engineers, and manage testing priorities in a fast-paced environment.
  • Awareness of cloud security, zero trust architecture, and other emerging security concepts is an added advantage.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Application Testing Engineer
Application Testing Engineer

Quess • Chennai District, Bengaluru, Pune District

Hybrid
INR 700,000 - 1,500,000
Senior Security Engineer
Senior Security Engineer

Crossbow Cybersecurity • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Competitive salary and benefits
Medical Insurance – Self & family
Parental Support – Maternity Leave
+3
Cyber Security Engineer
Cyber Security Engineer

AMIT International Group • Delhi

On-site
INR 800,000 - 1,500,000
Application Security Testing Engineer
Application Security Testing Engineer

Infosys • Bengaluru

On-site
INR 900,000 - 1,200,000
Appsec Specialist - Lead
Appsec Specialist - Lead

Adani Group • Ahmedabad District

On-site
INR 2,800,000 - 4,200,000
Application Security Engineer
Application Security Engineer

Cynosure Corporate Solutions • Chennai District

On-site
INR 1,500,000 - 2,500,000
Application Security Engineer
Application Security Engineer

Cyberpwn • Bengaluru

On-site
INR 900,000 - 1,300,000
Senior Penetration Tester
Senior Penetration Tester

NTT DATA BUSINESS SOLUTIONS • Hyderabad

Hybrid
INR 2,500,000 - 4,000,000
Hybrid Working
Security Tester
Security Tester

Disprz • Chennai District

On-site
INR 1,800,000 - 3,600,000
Application Security Engineer - Red Team
Application Security Engineer - Red Team

Air India • Gurugram District

On-site
INR 2,500,000 - 4,000,000