HamburgerMenu
hirist

VAPT Triaging & TechOps Engineer - Security Operations

Peoplemint Consultants
4 - 6 Years
Noida

Posted on: 29/09/2026

Job Description

Job Summary :

We are looking for a hybrid VAPT Triaging & TechOps Engineer to manage our vulnerability lifecycle and act as the technical liaison between our Security, Infrastructure, and Application Engineering teams. In this role, you will not just pass along security reports; you will deeply analyze, validate, and prioritize vulnerabilities discovered through Vulnerability Assessment and Penetration Testing (VAPT) and automated scanning tools.

Crucially, you will act as a TechOps bridge, translating security findings into actionable, technical engineering tasks. You will work side-by-side with infra and app teams to help them understand how to remediate risks without breaking production environments.

Key Roles & Responsibilities :

- VAPT Triaging & Validation : Review, validate, and deduplicate vulnerability findings from internal/external penetration tests, and automated scanners.

- Risk Contextualization : Perform root-cause analysis on vulnerabilities to determine their actual risk business context (exploitability, impact, and reachability), eliminating false positives before they reach engineering queues.

- The TechOps Liaison : Act as the primary technical interface between Information Security, Infrastructure (Cloud/SysOps), and Application Dev teams. Translate complex exploit PoCs (Proof of Concepts) into clear, step-by-step remediation tickets (like Jira).

- Remediation Assistance & Advisory : Don't just point out flaws - help fix them. Provide hand-on technical guidance to Application teams on securing code, and to Infrastructure teams on patching, hardening OS images, updating dependencies, and adjusting network/cloud configurations.

- SLA & Lifecycle Management : Track the remediation lifecycle from discovery to closure. Ensure all technical teams are adhering to agreed-upon security SLAs (Service Level Agreements) based on vulnerability severity.

- Re-testing & Verification : Perform technical verification and regression testing to confirm that implemented fixes successfully remediate the vulnerability without impacting system uptime or performance.

- Metrics & Reporting : Maintain up-to-date vulnerability dashboards. Provide technical metrics to management regarding patch velocity, recurring risk trends, and systemic bottlenecks between teams.

Technical Requirements :

- Experience : 3 - 5+ years of experience in a highly collaborative technical role, such as Application Security, VAPT, DevSecOps, Systems Engineering, or Technical Operations.

- Triaging Expertise : Strong understanding of vulnerability classification frameworks.

- Systems & Application Fluency : Ability to read and understand code (e.g., Python, Java, JavaScript, or Go) and navigate infrastructure setups (Linux/Windows administration, basic networking, Docker containers, and cloud concepts).

- Penetration Testing Tools : Familiarity with the tools used to find and validate flaws, such as Burp Suite, Nessus, Qualys, Nmap, or Metasploit.

- Cross-Team Collaboration : Exceptional communication skills. You must be able to speak "Security" to auditors, "Code" to developers, and "Infrastructure" to system administrators.

- Ticketing & Workflow Automation : Advanced experience with Jira, ServiceNow, or Azure DevOps, specifically around setting up security workflows, tracking metrics, and technical documentation.

info-icon

Did you find something suspicious?

Similar jobs that you might be interested in

Loading chat...