HamburgerMenu
hirist

Indusface - Security Researcher

Indus face Private Limited
3 - 8 Years
Bangalore

Posted on: 29/04/2026

Job Description

Description :


Job Description :


- Create signatures for Indusface WAS & WAF products to detect & protect from Web application vulnerabilities.


- Reproducing vulnerabilities to understand the working of an exploit, etc. on need basis to verify existing WAS/WAF coverage.


- Problem solving and troubleshooting skills are a must, as solutions to many problems might not be obvious.


- Develop tools for the automation of security processes using Python, PERL, PowerShell, etc.


- Collaborate with engineering teams to support/maintain/design backend applications and other operational platforms.


Candidate Profile :


- 3+ years of experience in the area of information security with strong understanding of security basics, network vulnerabilities and analysing/developing IPS/IDS/WAF signatures.


- Good understanding of :


1. Firewalls, proxies, SIEM, antivirus, and IDPS concepts


2. Windows & Linux operating systems (REDHAT)


3. Network security, network layers (OSI Layer-3 and Layer-4)


4. Protocols like TCP/IP, DNS, HTTP, HTTPS, SSH etc.


5. Network Penetration testing and techniques


- Identify and Analyse network vulnerabilities, Attack reproduction.


- Programming languages like C/C++, Java and Scripting language like Python, Perl, etc.


- Hands-on experience in :


1. Web-app security (SQL Injection, XSS, CSRF etc.), OWASP-10, SANS Top 25


2. Network analysis tools like tcpdump, Wireshark, Burpsuite


3. Crafting Regular Expressions, Verification & Validation


4. Vulnerability scanners, IDS/IPS, Application Firewall, VAPT tools : Metasploit, Nessus, etc.


5. Analysing existing or writing new POCs


- Effective written and verbal communication skills.


Good to have :


- Developing security related tools / programs


- Knowledge on Cloud infrastructure services


- Virtualization software (VMWare , Virtual PC / Virtual Box , XEN , etc), VPNs


- Knowledge on ModSecurity and Rule writing


- Experience in any of Java, Test NG, Linux Scripting, shell scripting, Python, Perl


- Experience/Knowledge in Amazon Web Services

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in