{bc}
company_site

Principal Security Consultant

Claranet
IND
Full-time
Senior Level
Hybrid
Discovered 3 weeks ago
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan
Smart Apply

Full Job Posting

Position Summary

  • Deliver high-impact security training programs across private clients, public events, and industry conferences, with a focus on Web Security, DevSecOPS and Application Security enabling participants to effectively identify and remediate real-world vulnerabilities
  • Continuously develop and enhance training content, labs, and vulnerable applications to reflect the latest offensive security techniques and emerging threats, including AI/LLM
  • Lead and execute advanced penetration testing engagements across web, mobile, API, secure code review to identifying complex attack paths and security weaknesses
  • Perform secure code reviews, including SAST/DAST assessment
  • Provide clear, actionable, and risk-based security recommendations to clients, effectively communicating technical findings to both technical and non-technical stakeholders
  • Build and maintain strong client relationships by acting as a trusted security advisor and delivering consistently high-quality consulting and training services
  • Mentor and develop junior consultants, contributing to internal capability building, knowledge sharing, and the growth of future trainers within the organization

Duties And Responsibilities

  • Demonstrated ability to develop and deliver technical security training, including hands-on workshops and lab-based courses for enterprise customers or public audiences
  • Experience designing training content, including vulnerable applications, attack labs, demonstrations, and courseware based on real-world penetration testing scenarios
  • Work individually or as a part of team delivering security assessments to NotSoSecure clients both remotely and onsite
  • Perform web, infrastructure, mobile, AI/LLM penetration testing and secure code reviews
  • Exploit vulnerabilities identified in client systems and communicate vulnerabilities to customers
  • Create assessment reports explaining technical and business risk of the vulnerabilities discovered including remediation recommendations for the clients
  • Manage project related tasks as per communicated deadlines
  • Keep abreast with latest technology risks and utilise them in projects
  • Participate in project conference calls and lead the technical content on those calls

Position Specifications

  • Extensive experience in Information Security with strong expertise in penetration testing and application security
  • Established in designing and delivering technical security training for security professionals, developers or DevSecOps
  • Proven ability to build structured training programs, including hands-on labs, vulnerable applications, and real-world attack simulations
  • Demonstrated ability to create structured training programs, including hands-on labs, vulnerable applications, and real-world attack scenarios
  • Strong ability to simplify and communicate complex security concepts and vulnerabilities to technical and non-technical audiences
  • Hands-on expertise in web, API, mobile, and AI/LLM penetration testing, with the ability to demonstrate real-world exploitation techniques during training
  • Experience performing secure code reviews and translating findings into developer-focused remediation guidance
  • Solid understanding of modern application architectures, secure SDLC practices, and DevSecOps principles
  • Proficiency with security testing tools such as Burp Suite Pro, Kali Linux, SQLMap, Nessus, and similar toolsets, with the ability to incorporate them into training delivery
  • Strong scripting or programming skills (e.g., Python, JavaScript, Bash, Java, .NET) to build training labs, automation, or demonstrations
  • Excellent presentation, facilitation, and communication skills, with confidence in delivering training to large and diverse audiences
  • Passion for continuous learning and contributing to the security community through research, content creation, or conference presentations
  • High ethical standards and professionalism in handling client engagements and training delivery
  • Willingness and ability to travel for delivering training sessions, workshops, and conferences (as required)

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at Claranet