Posted on: 08/04/2026
Role : Senior Application Security Engineer / Penetration Tester
Experience : 5 to 7 years
Key Responsibilities :
- Perform advanced penetration testing across web apps, mobile apps, and APIs
- Conduct business logic testing & fraud simulations (bid manipulation, replay attacks, price tampering, etc.)
- Identify vulnerabilities in authentication, session/token management, and APIs
- Simulate real-world attack scenarios including maker-checker bypass & transaction manipulation
- Deliver actionable insights highlighting business impact (financial/reputational risk)
- Use tools like Burp Suite, OWASP ZAP, Kali Linux, Metasploit + custom scripting
Must-Have Requirements :
- 5+ years total experience, with 3+ years in penetration testing / vulnerability assessment
- Strong expertise in application security, API testing, and fraud simulation
- Hands-on with advanced security tools & custom attack scripting
- Deep understanding of business logic vulnerabilities & exploit scenarios
- Bachelors in Engineering/IT (B.Tech/BE) or MCA
- At least one certification : OSCP / OSWE / CEH Practical / CREST
Good to Have :
- Experience working on Government / PSU / large-scale financial or procurement systems
- Exposure to e-procurement or transaction-heavy platforms.
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
Cyber Security
Job Code
1626776