Search Jobs

Search by job, company or skills

Cyber Threat Investigator

Cyber Threat Investigator

Unthinkable Solutions
Early Applicant
  • Posted 7 hours ago
  • Be among the first 10 applicants

Job Description

VAPT & Red Teamer Specialist – Web, API, Network & Active Directory

Experience: 3–5 Years | Domain: Security Consulting

Role Overview

Seeking a hands-on Penetration Tester / Red Teamer experienced in Web, API, Network, and Active Directory security testing, with strong skills in exploitation, attack-path analysis, reporting, and client communication.

Key Responsibilities

  • Conduct VAPT and Red Team engagements across Web, API, Network, Internal Infrastructure, and Active Directory.
  • Perform manual/automated testing covering OWASP Top 10, authentication, authorization, injection, business logic, and data exposure.
  • Execute Red Team operations, including reconnaissance, initial access, privilege escalation, lateral movement, persistence, and attack-path analysis within authorized scope.
  • Perform AD enumeration, privilege escalation, lateral movement, and attack-path analysis.
  • Use tools including Burp Suite, Nmap, Nessus/Qualys, BloodHound, Impacket, Rubeus, Mimikatz, Certipy, and Metasploit.
  • Develop security automation/scripts using Python, PowerShell, or Bash.
  • Deliver technical reports with risk, evidence, reproduction, business impact, and remediation guidance.
  • Present findings to technical/non-technical stakeholders and support remediation validation.
  • Operate strictly within approved Rules of Engagement (RoE) and authorized scopes.

Must Have

  • 3+ years of penetration testing/red teaming experience.
  • Strong hands-on Web, API, Network & AD testing expertise.
  • Proficiency with Burp Suite and security testing tools.
  • Practical knowledge of AD enumeration, privilege escalation, lateral movement, and attack paths.
  • Scripting skills in Python, PowerShell, or Bash.
  • Strong reporting, communication, and client-facing skills.
  • Experience working under formal RoE.

Tools & Frameworks

Burp Suite | Nmap | Nessus/Qualys | BloodHound | Impacket | Rubeus | Mimikatz | Certipy | Metasploit | Python | PowerShell | Bash | Kali Linux

Frameworks: OWASP Top 10 | MITRE ATT&CK

Certifications

OSCP, CRTE, CRTO, or equivalent preferred.

Interested candidates apply on this link- https://docs.google.com/forms/d/1JJZ0ULJkWWMqEP5VT8bJK_ftxb8M7PAZ-HBC2twx_Vs/preview

More Info

Job Type:
Industry:
Employment Type:

Key Skills

MITRE ATT CK

Rubeus

Impacket

Mimikatz

Certipy

BloodHound