Position: Senior Security Consultant
Location: Remote
Experience Required: Minimum 3+ Years
About the Role
We are seeking an experienced and highly skilled Senior Security Consultant to join our team. The role involves leading Vulnerability Assessment & Penetration Testing (VAPT) activities for clients’ critical applications and infrastructure, ensuring proactive risk mitigation and compliance with security standards. The ideal candidate will be hands-on, detail-oriented, and able to guide teams in delivering high-quality security solutions.
Roles & Responsibilities
- Conduct Vulnerability Assessments & Penetration Testing (VAPT) for web, mobile, network, and cloud environments (manual + automated).
- Analyse VAPT findings, provide detailed risk assessments and recommend remediation measures.
- Support and track remediation efforts with clients, ensuring timely closure of vulnerabilities.
- Perform regular security audits to ensure compliance with standards and frameworks (OWASP, SANS, MITRE ATT&CK, etc.).
- Research and stay updated on emerging threats, exploitation techniques, and countermeasures.
- Lead and mentor a team of vulnerability analysts and testers.
- Engage with clients, provide consulting on security best practices, and deliver detailed assessment reports.
- Perform thick client security assessments and advise on mitigation strategies.
- Collaborate cross-functionally to integrate security into development, deployment, and operations processes.
Key Skills & Requirements
- Strong hands-on expertise in VAPT (manual & automated) of applications, networks, and cloud assets.
- Proficiency with security tools such as BurpSuite, Nessus, Nmap, Acunetix, Metasploit, Netsparker, Qualys, etc.
- Good understanding of mobile application security (Android & iOS).
- Strong knowledge of CVE, CWE, OWASP Top 10, SANS Top 25, and related frameworks.
- Exposure to network security technologies (Firewall, IPS, VPN, Proxy, Web Filtering).
- Familiarity with MITRE ATT&CK & D3FENCE framework.
- In-depth understanding of cloud security trends and technologies.
- Excellent analytical and problem-solving skills with strong attention to detail.
- Strong communication and client engagement skills.
- Ability to work under pressure in fast-paced environments.
Educational Qualification
- B.E./B.Tech in Computer Science, Information Technology, Electronics, Cybersecurity or equivalent.
- MCA or equivalent qualifications in Information Security / Cybersecurity.
Certifications (Preferred)
- eJPT, CEH (or other recognised security certifications like OSCP, GPEN, GWAPT, etc.)
Desired Attributes
- Strong organisational, multitasking, and time management abilities.
- Team leadership and mentoring skills.
- Passion for cybersecurity and a continuous learning mindset.