Search by job, company or skills

CLA Global Indus Value Consulting

Security Consultant (VAPT & Red Teaming)

This job is no longer accepting applications

new job description bg glownew job description bg glownew job description bg svg
  • Posted 2 months ago

Job Description

We Are Hiring: Security Consultant (VAPT & Red Teaming)

CLA Indus Value Consulting is looking for a skilled Security Consultants to join our team in Mumbai. If you have a passion for uncovering vulnerabilities and simulating real-world attacks to strengthen defences, we want to hear from you!

Role Overview

As a Security Consultant, you will perform comprehensive security assessments across web applications, APIs, Mobile Applications and networks. You will play a pivotal role in delivering actionable insights and remediation strategies to our clients.

  • Experience: 3 - 5 Years
  • Location: Mumbai (Onsite)
  • Core Focus: VAPT, Red Teaming, and Infrastructure Security

Key Responsibilities

  • Vulnerability Assessment: Conduct VAPT on web apps, APIs, Mobile Applications and infrastructure to identify weaknesses.
  • Exploitation: Perform manual and automated testing using industry-standard tools to simulate real-world attacks.
  • Reporting: Analyse findings and prepare detailed reports with risk ratings, PoCs, and remediation plans.
  • Collaboration: Work with internal teams and clients to prioritize and implement security fixes.
  • Mentorship: Participate in knowledge-sharing and help train junior team members.

Technical Skills & Toolset

  • Web, API & Mobile Application Security: Deep expertise in OWASP Top 10 (Web & Mobile), API security risks, and secure coding practices.
  • Network Security: Proficiency in scanning, enumerating, and exploiting network services and protocols.
  • Red Teaming: Hands-on experience with MITRE ATT&CK TTPs, including lateral movement, persistence, and privilege escalation.
  • Tools: Strong proficiency with Burp Suite, Nessus, Metasploit, Nmap, SQLmap, mobile testing tools, C2 frameworks (Cobalt Strike), and Wireshark.

Qualifications

  • Education: Bachelor's or master's degree in CS, IT, or a related field.
  • Certifications (mandatory): OSCP, OSEP, OSWE, PNPT, CRTO, CRTP, CRTE, ECPPT, or CPTS.

Good to Have

Proven bug bounty track record, strong rankings on Hack the Box / TryHackMe, conference speaking experience, and recognition through Hall of Fame listings or security appreciations.

More Info

Job Type:
Industry:
Employment Type:

Job ID: 140521527