Penetration Testing Engineer
- Experience: 2 - 7 Yrs
- Work Location: Magarpatta, Pune
- Work Mode: Work from office (at least 4 Days a week)
Role Overview
We are looking for a skilled
Penetration Testing Engineer with hands-on expertise in cybersecurity assessments, penetration testing, and application security across cloud and firmware-based environments.
Key Responsibilities
- Perform cybersecurity assessments for cloud and firmware hardware products.
- Conduct penetration testing, API security testing, and mobile application testing.
- Assess cloud-hosted applications and services across Azure, AWS, and other cloud platforms.
- Utilize security testing and assessment tools such as:
- Threat Modeler
- Kali Suite
- Burp Suite Pro
- Synopsys Security Tools
- Azure Security Toolkit
- Invicti
- Nessus
- QualysGuard
- HCL AppScan
- Identify vulnerabilities, analyze risks, and provide remediation recommendations.
- Collaborate with developers, product managers, and cross-functional teams during development and release cycles.
- Participate in Agile-based development and security testing activities.
- Support secure design reviews and release validation processes.
- Stay updated with the latest cybersecurity threats, vulnerabilities, and security best practices.
Required Skills & Experience
Strong hands-on experience in:
- Penetration Testing
- API Security Testing
- Mobile Application Security Testing
- Cloud Security Assessments
- Experience working with Azure, AWS, or other cloud platforms.
- Proficiency in industry-standard security assessment tools and vulnerability scanners.
- Understanding of secure development lifecycle (SDLC) and Agile methodologies.
- Strong analytical and troubleshooting skills.
- Good communication and collaboration skills.
Preferred Skills
- Knowledge of firmware security assessments.
- Experience in DevSecOps and secure CI/CD practices.
- Relevant cybersecurity certifications are an added advantage.
Cybersecurity,Firmware Security Testing,API Security Testing,Mobile Applicate Security Testing,Cloud Security Assessment,Azure/AWS