HamburgerMenu
hirist

Security Tester

Burgeon IT Services
4 - 7 Years
Anywhere in India/Multiple Locations

Posted on: 22/05/2026

Job Description

Description :

Security Tester (Penetration Testing Specialist) with strong expertise in Burp Suite, vulnerability management, and DevSecOps practices.

The candidate will be responsible for identifying, assessing, and mitigating security risks across applications and infrastructure

Key Responsibilities :

- Perform Application Security Testing (Web/API) using tools such as Burp Suite

- Conduct manual and automated penetration testing to identify vulnerabilities

- Execute OWASP Top 10 validation and security assessments

- Manage end-to-end vulnerability lifecycle :

1. Identification

2. Risk assessment

3. Reporting

4. Remediation tracking

- Collaborate with development teams to integrate security in SDLC (DevSecOps model)

- Perform secure code review (preferred)

- Configure and monitor security scanning tools (DAST/SAST)

- Generate detailed security assessment reports with actionable recommendations

- Support compliance and audit activities (ISO, internal security standards if applicable)

Required Skills & Expertise :

Core Security Skills :

- Strong hands-on experience in :

1. Penetration Testing (Web & API)

2. Burp Suite (Pro preferred)

- Deep understanding of :

1. OWASP Top 10 vulnerabilities

2. Common attack vectors (XSS, SQL Injection, CSRF, SSRF, etc.)

Vulnerability Management :

- Experience in :

1. Vulnerability scanning tools (Qualys, Nessus, etc.)

2. Tracking and remediation lifecycle

3. Risk classification and reporting

DevSecOps :

- Knowledge of integrating security tools in CI/CD pipelines

- Experience with tools such as :

1. SAST/DAST tools

2. Git, Azure DevOps / Jenkins pipelines

- Familiarity with shift-left security practices

Preferred Skills :

- Experience in cloud security (Azure/AWS)

- Knowledge of container security (Docker/Kubernetes)

- Exposure to API security testing tools (Postman, Insomnia, etc.)

- Certifications (Good to have) : CEH / OSCP / GWAPT / Security+

Soft Skills :

- Strong analytical and problem-solving skills

- Ability to clearly communicate security risks to technical and non-technical stakeholders

- Experience working in Agile/Scrum environments

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...