Base Career helps you apply smarter for this job.
Key skills for this role
Advanced knowledge of common penetration testing tools (Burp Suite, Metasploit, Wireshark, etc.).
Proficient in reverse engineering tools (IDA Pro, Ghidra, Binary Ninja, etc.).
Deep understanding of cloud-native security issues and technologies (containers, Kubernetes, serverless, etc.).
Strong knowledge of application security principles, including OWASP Top 10, secure coding practices, and common vulnerabilities.
Understanding of product security practices and secure software development life cycles.
Your everyday work will look like: Lead application security assessments including web, mobile, and thick client applications.
Perform Secure Code Reviews (manual and automated) across multiple programming languages and frameworks.
Conduct vulnerability assessments, penetration testing, and configuration reviews for applications, networks, and cloud environments.
Identify, validate, and document vulnerabilities with detailed remediation guidance.
Develop and enhance internal testing methodologies, scripts, and frameworks for security assessments.
Collaborate with red team, application security, and dev teams during remediation and retests. Review and design security architectures, ensuring alignment with standards (OWASP, NIST, ISO 27001, CIS, etc.).
Support clients with remediation planning, security awareness, and incident response guidance.
Contribute to pre-sales and proposal development by scoping technical requirements and security service offerings.
Mentor and guide junior consultants in performing security assessments and documentation.
Minimum 5+ years of hands-on experience in penetration testing, security research, or related fields.
Skip the repetitive application forms
Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.
Trusted by over 500,000 job seekers on Base Career
More from this employer
Pune, IND
Pune, IND
Pune, IND
Pune, IND
Bengaluru, IND
Pune, IND
Pune, IND
, IND
Proven track record in performing complex security assessments on cloud environments (AWS, Azure, GCP), thick client applications, and enterprise systems.
Strong experience with reverse engineering (static and dynamic analysis) of software and binaries.
Expertise in threat modelling, risk assessment, and security design for software products.
Extensive experience in vulnerability analysis and exploitation techniques across diverse platforms. Familiarity with SDLC , DevSecOps , and threat modeling .
Excellent report writing and client communication skills.
Certifications :
Relevant certifications such as OSWE, OSCP, OSCE, AWAE, eWAPT, eMAPT, GWAPT , or CISSP/CISM .
Additional certifications or training in cloud security, reverse engineering, or product security are a plus. Experience with automation frameworks for repetitive testing tasks.
Knowledge of reverse engineering or binary analysis is a plus.
Verified company details for this employer are not available yet.
Full-time
Senior · 5+ years experience
Onsite
Apply faster on company sites with our extension.