Penetration Tester – App & Cloud Security

JobCubby

Hinoba-an

On-site

PHP 796,000 - 1,194,000

Full time

5 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Target in Bengaluru seeks a Penetration Tester who will lead manual and automated security assessments across cloud infrastructure and applications. You will perform application-layer and network-layer testing, prioritize remediation, and document findings for engineering and product teams.

You should have 4+ years in security testing, knowledge of OWASP, scripting in Python/Go/Ruby, and experience with BurpSuite, SAST/DAST/IAST. Certifications like OSCP/CEH are a plus.

Qualifications

  • Minimum of 4+ years of hands-on experience in penetration testing, ethical hacking, or application security engineering.
  • Deep understanding of common web-based attacks (SQLi, XSS, CSRF, XXE) and mitigation at the application level.
  • Proficiency in scripting or programming languages such as Python, Go, Ruby, or Bash to automate security tasks.
  • Comprehensive knowledge of network protocols and security concepts (TCP/IP, DNS, HTTP/S, TLS, IPSEC).
  • Strong experience with security testing tools (BurpSuite Enterprise, SAST, DAST, IAST).
  • Working knowledge of OWASP security fundamentals and API identity/access management (OAuth 2.0, OIDC, JWT).
  • Ability to communicate technical findings clearly to technical and non-technical audiences.
  • Relevant information security certifications such as OSCP, CEH, OSWE, or CISSP.

Responsibilities

  • Perform comprehensive manual and automated application-layer penetration tests.
  • Conduct network-layer penetration tests across components supporting network functions and OS.
  • Validate segmentation and scope-reduction controls annually and after changes.
  • Triage and validate vulnerabilities from bug bounty programs.
  • Document and risk-rate findings with remediation guidance for engineering teams.
  • Verify remediation through re-testing and post-remediation assessments.
  • Collaborate with external security firms on penetration testing and threat hunting.
  • Ensure assessments meet PCI DSS, SOC, and regulatory obligations.

Skills

Penetration testing
Python
Networking
BurpSuite
OWASP
Security certifications

Education

Bachelor's degree in CS/IS

Tools

BurpSuite Enterprise
SAST
DAST
IAST

Job description

Target in Bengaluru seeks a Penetration Tester who will lead manual and automated security assessments across cloud infrastructure and applications. You will perform application-layer and network-layer testing, prioritize remediation, and document findings for engineering and product teams.

You should have 4+ years in security testing, knowledge of OWASP, scripting in Python/Go/Ruby, and experience with BurpSuite, SAST/DAST/IAST. Certifications like OSCP/CEH are a plus.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity – Senior Penetration Tester
Cybersecurity – Senior Penetration Tester

Radii Global • Philippines

On-site
PHP 1,200,000 - 1,800,000
Penetration Tester
Penetration Tester

Our Clients • Manila

On-site
PHP 1,200,000 - 1,800,000
Penetration Tester - Hybrid - BGC - up to 100K
Penetration Tester - Hybrid - BGC - up to 100K

weSource Management Consultancy Firm • Taguig

Hybrid
Penetration Tester
Penetration Tester

Create Synergies Inc. • Manila

On-site
PHP 700,000 - 1,100,000
Senior Penetration Tester & Security Assessment Lead
Senior Penetration Tester & Security Assessment Lead

Our Clients • Manila

On-site
PHP 1,200,000 - 1,800,000
Penetration Tester (SMB)
Penetration Tester (SMB)

BreachLock Inc. • Hinoba-an

On-site
PHP 800,000 - 1,200,000
Private Health Insurance
Penetration Tester - Up to 100K - Hybrid BGC - Midshift
Penetration Tester - Up to 100K - Hybrid BGC - Midshift

weSource Management Consultancy Firm • Metro Manila

Hybrid
PHP 80,000 - 100,000
SMB Penetration Tester – Offense & Automation
SMB Penetration Tester – Offense & Automation

BreachLock Inc. • Hinoba-an

On-site
PHP 800,000 - 1,200,000
Private Health Insurance
Penetration Tester (Reverse Engineering and Embedded Code experience)
Penetration Tester (Reverse Engineering and Embedded Code experience)

Dencom Consultancy and Manpower Services • Mandaluyong

On-site
Senior AppSec Pen Tester - Web, Mobile & Thick-Client
Senior AppSec Pen Tester - Web, Mobile & Thick-Client

Radii Global • Philippines

On-site
PHP 1,200,000 - 1,800,000