SISA Information Security - Associate Consultant - Application Security

SISA

Bagaluru

On-site

INR 900,000 - 1,300,000

Full time

39 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

SISA in Bagaluru, Karnataka invites an Associate Consultant to join our cybersecurity team. The role focuses on penetration testing for web, mobile, API, and thick-client applications, along with secure code reviews and vulnerability remediation collaboration.

Ideal candidates possess 4–8 years of experience, strong tool proficiency, and excellent client communication skills to drive remediation efforts effectively.

Qualifications

  • Experience performing web, API and mobile penetration testing.
  • Proficient with popular pentest tools and security testing methodologies.
  • Familiarity with OWASP Top 10, SANS CWE Top 25, and NIST standards.

Responsibilities

  • Perform penetration testing on web, mobile, API, and thick-client apps to identify weaknesses.
  • Conduct automated and manual secure code reviews.
  • Identify and exploit vulnerabilities per OWASP Top 10 and SANS Top 25.
  • Interact with clients to provide project updates and remediation status.
  • Collaborate with developers and product teams for remediation support.
  • Retest fixes and follow up with stakeholders on open vulnerabilities.

Skills

Penetration Testing
OWASP Top 10
SANS Top 25
Secure Code Review
Client Interaction
Report Walkthrough
Communication Skills

Education

BE/B.Tech in Computer Science
BE/B.Tech in Information Science
M.Tech in Computer Science
M.Tech in Information Science

Tools

Burp Suite
OWASP ZAP
Postman
Nmap
SQLMap
Metasploit
Echo Mirage
MobSF
Frida

Job description

Associate Consultant : 4-8 Years.
  • Conduct penetration testing on web, mobile (android + ios), API, and thick-client applications to identify security weaknesses.
  • Conduct automated and manual Secure code review.
  • Identify and exploit vulnerabilities such as OWASP Top 10, SANS Top 25, and business logic flaws.
  • Client interaction on project updation/status.
  • Collaborate with developers, product teams for Remediation support.
  • Perform retest post confirmation on the fixes.
  • Follow-up with the relevant stakeholders on the remediation of open vulnerabilities.
Roles And Responsibilities
  • Conduct penetration testing on web, mobile (android + ios), API, and thick-client applications to identify security weaknesses.
  • Conduct automated and manual Secure code review.
  • Identify and exploit vulnerabilities such as OWASP Top 10, SANS Top 25, and business logic flaws.
  • Client interaction on project updation/status.
  • Collaborate with developers, product teams for Remediation support.
  • Perform retest post confirmation on the fixes.
  • Follow-up with the relevant stakeholders on the remediation of open vulnerabilities.
Mandatory Skills Required For The Role
  • Web, API and Mobile Penetration Testing.
  • Proficiency With Penetration Testing Tools Such As :
  • Burp Suite, OWASP ZAP, Postman, Nmap, SQLMap, Metasploit, Echo mirage.
  • Mobile testing tools (e.g., MobSF, Frida) is a plus.
  • Good understanding on OWASP Top 10, SANS CWE Top 25, NIST standards.
  • Good written and spoken communication skills.
  • Ability to do report walkthrough with relevant stakeholder.
  • Understanding of programming languages such as PHP, HTML, javascript, etc.
Education Requirements
  • BE/B.Tech in Computer Science or Information Science Or M.Tech in Computer Science or Information Science.
  • Certifications: CEH, CompTIA, PenTest+, GPEN, OSCP, CREST CRT preferable.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SISA Information Security - Senior Consultant - Penetration Testing
SISA Information Security - Senior Consultant - Penetration Testing

SISA • Bengaluru

On-site
INR 1,200,000 - 2,400,000
Application Security Consultant
Application Security Consultant

ERM Placement Services • Lucknow

On-site
INR 1,400,000 - 2,100,000
Application Security Consultant
Application Security Consultant

ERM Placement Services • Surat

On-site
INR 1,600,000 - 2,800,000
Application Security Consultant
Application Security Consultant

ERM Placement Services • India

On-site
INR 1,200,000 - 1,800,000
Application Security Consultant
Application Security Consultant

ERM Placement Services • Gurugram District

On-site
INR 1,800,000 - 2,700,000
Application Security Consultant
Application Security Consultant

ERM Placement Services • Coimbatore District

On-site
INR 2,500,000 - 4,200,000
Associate Application Security Specialist
Associate Application Security Specialist

Publicis Re:Sources • Gurugram District

On-site
Security Analyst / Sr. Security Analyst
Security Analyst / Sr. Security Analyst

Nio Stars Technologies LLP • Mumbai

On-site
INR 800,000 - 1,400,000
Application Security
Application Security

Airtel • India

On-site
INR 1,200,000 - 2,400,000
Security-focused culture
application security Professional
application security Professional

Security Brigade • Mumbai

On-site
INR 800,000 - 1,100,000
OSCP sponsorship
Mentorship from senior researchers
Active security community involvement