Job Summary:
We are seeking a skilled Vulnerability Assessment & Penetration Testing (VAPT) Consultant to join our dynamic cybersecurity team. The ideal candidate will have between 1 to 3 years of experience in information security focusing on vulnerability assessments penetration testing and risk analysis. You will play a crucial role in identifying security weaknesses and helping our clients strengthen their security posture.
Key Responsibilities:
- Conduct Network/System Vulnerability Assessments Penetration Testing using tools to evaluate attack vectors identify system vulnerabilities & provide appropriate remediation plans for mitigation of the identified vulnerabilities.
- Conduct Application vulnerability assessments Penetration Testing for web applications identify & report vulnerabilities provide recommendations & track closure of identified vulnerabilities.
- Perform Configuration compliance assessments for Endpoints/Assets/Network devices & help maintain the security settings at compliant level with Specific Security Standards.
- Perform regular monitoring of patch compliance of the assets in the network Analyze Patch Advisories and provide remediation steps for the stakeholders.
- Performing comprehensive review and threat adversary modelling for web applications.
- Conduct Vulnerability Assessments Penetration Testing Device Hardening Application Security Assessments Log Review Review of Documents Network Monitoring and Reporting
- Conduct & compile findings on new vulnerabilities new tools for departmental use.
- Create project deliverables/reports & assist the client with remediation discussions.
- Abide by the project timelines and maintain project discipline.
Requirements
Technical Skills Required:
- Handson Experience is performing Network Security Assessment & vulnerability Assessment.
- Good understanding of OSI layers & fundamental Operating system concepts security settings for various flavors of Windows/Linux platforms.
- Manual Penetration Testing skills and techniques are required besides automated tools and frameworks.
- Familiar working with Publicly available exploits codes.
- Sound knowledge about infrastructure vulnerability scans identifying security vulnerabilities weaknesses threats and assessing related risks that exist within an IT Infrastructure or business processes.
- Sound knowledge about Application vulnerability assessments and relevant knowledge of OWASP top 10 vulnerabilities and SANS.
- Good understanding of firewalls Switches and Router s configuration settings and policies relevant experience in performing rule base reviews and configuration reviews for network devices.
Qualifications:
- Bachelor s degree in computer science Information Technology Cybersecurity or a related field.
- 1 to 3 years of relevant experience in vulnerability assessment & penetration testing.
- Familiarity with various VAPT testing tools (e.g. OWASP Burp Suite Nessus Metasploit).
- Understanding of networking protocols security architectures & cloud security (e.g. Nmap tool).
- Candidate must have cybersecurity related certifications such as CEH/eJPT/eWPT/CRTP OR any other similar certification.
- Candidates must have handson experience in red teaming OR source code review (e.g. Sonarqube/Fortify SCA) OR cloud configuration review in addition to VAPT.
- Strong analytical skills and attention to detail.
- Ability to work independently and collaboratively in a team environment.
Technical Skills Required: Hands-on Experience is performing Network Security Assessment & vulnerability Assessment. Good understanding of OSI layers & fundamental Operating system concepts, security settings for various flavors of Windows/Linux platforms. Manual Penetration Testing skills and techniques are required besides automated tools and frameworks. Familiar working with Publicly available exploits codes. Sound knowledge about infrastructure vulnerability scans, identifying security vulnerabilities, weaknesses, threats, and assessing related risks that exist within an IT Infrastructure or business processes. Sound knowledge about Application vulnerability assessments and relevant knowledge of OWASP top 10 vulnerabilities and SANS. Good understanding of firewalls, Switches, and Router s configuration settings and policies, relevant experience in performing rule base reviews and configuration reviews for network devices. Qualifications: Bachelor s degree in computer science, Information Technology, Cybersecurity, or a related field. 1 to 3 years of relevant experience in vulnerability assessment & penetration testing. Familiarity with various VAPT testing tools (e.g., OWASP, Burp Suite, Nessus, Metasploit). Understanding of networking protocols, security architectures & cloud security (e.g., Nmap tool). Candidate must have cybersecurity related certifications such as CEH/eJPT/eWPT/CRTP OR any other similar certification. Candidates must have hands-on experience in red teaming OR source code review (e.g., Sonarqube/Fortify SCA) OR cloud configuration review in addition to VAPT. Strong analytical skills and attention to detail. Ability to work independently and collaboratively in a team environment.