HamburgerMenu
hirist

Job Description

Job Description : Senior Security Engineer

Location : Bangalore

Experience : 2-10 Years

Key Responsibilities :

- Conduct vulnerability assessments and penetration testing across multiple platforms, including web applications, mobile applications, networks, and APIs.

- Perform secure code reviews to identify and mitigate security vulnerabilities in software.

- Develop detailed penetration testing reports, including findings, impact analysis, and actionable remediation recommendations.

- Continuously stay updated with emerging security trends, attack vectors, and mitigation techniques.

- Performing red teaming activities.

- Should be capable of understanding customer requirements for security testing.

- Capable of providing security solutions to the customer for complex security testing/risk requirements.

- Should be capable of handling escalations.

- Provide guidance on security-related issues and support developers during the mitigation process.

- Experience with any programming language is a plus.

- Having hands-on experience in manual secure code review is a plus.

Requirements :

- Should have a minimum of 8 years or equivalent skills in the security domain.

- Conduct thorough penetration tests on web applications, mobile applications, and other systems to identify vulnerabilities and weaknesses.

- Experience in Network VAPT, Active Directory penetration testing.

- Perform in-depth assessments using both manual and automated testing methodologies.

- Proficient in mobile application penetration testing (android and iOS) and thick client.

- Experience in secure code review (manual and automated).

- Proficiency with penetration testing tools such as Burp Suite, Metasploit, Nmap, Nessus, OWASP ZAP, etc.

- In-depth knowledge of OWASP Top 10, SANS Top 25, and other relevant security standards.

- Familiarity with scripting languages like Python, Bash, or PowerShell.

- Excellent analytical, problem-solving, and communication skills.

Certified in any of these certifications - OSCP, OSWA, PNPT, eJPT, eCPPTv2, CRTP, CRTE, CRTO and any other relevant.

info-icon

Did you find something suspicious?