About the role
Call : 9987334349 Mail : zeba@contactxindia.com
Role & responsibilities
Experience: 3+ years with at-least 2-3 years in client facing advisory consulting role and managing a
medium sized team
Preferred Certifications: CEH, ECSA, OSCP, CISSP, CCSK, OCSE, CCSP, AWS Security
- Desired skill set:
-
Strong understanding of IT security standards and frameworks (OWASP, NIST, CIS)
-
Strong understanding of security risks in networks and application platforms
-
Strong understanding of network security, infrastructure security and application
security
-
Strong understanding of OSI, TCP/IP model and network basics
-
Demonstrate technical penetration testing skills on IT infrastructure, web applications,
mobile platforms and Red teaming
- Strong technical skills: Information security, network security, Windows security,
UNIX/Linux security, web and mobile application security, Cloud platforms
- Broad knowledge of security technologies for applications, databases, networks,
servers, and desktops
- Solid technical skills in both information security architecture and penetration testing
and ability to assess testing tools and deploy the right ones.
-
Scripting and programming experience is beneficial
-
Ability to perform manual penetration testing
-
Experience in Application Security Testing (Web, Mobile, ERP [SAP]), or related
functions Vulnerability Assessment, Penetration testing
- Perform penetration testing of various thick client software, web applications, and
communications infrastructure to assist in hardening the cybersecurity posture
against malicious actors
- Conduct security research on the latest emerging advanced persistent threats (APTs),
malware, and other security developments to assist in enterprise security efforts.
Apply this security research into assessments.
- Perform technical writing to communicate the preparation, testing, and
recommendation phases for various security tests. Work with stakeholders to
remediate system vulnerabilities.
- Train team members and colleagues on the latest cybersecurity tactics, techniques,
and procedures (TTPs) to grow the skill of the firm
- Understanding of various security technologies including end point security, perimeter
security, advanced threat protection, malware defense and security management
- Expertise in the phases of penetration testing. Familiarity with Kali Linux distribution
and the associated penetration testing tools suite. Experience in penetration testing
simulations like Hack the Box or Capture the Flag exercises considered a plus.
-
Good Understanding of OWASP top 10 and mitigation techniques
-
Experience in performing web application security assessments using hands on
techniques for identifying SQL injections, XSS, Security Misconfiguration, CSRF,
authentication/ authorization issues
-
Database testing: MySQL, Oracle, NoSQL
-
Understanding of cyber security management, cyber analytics, security intelligence
platforms and threat intelligence frameworks
-
Writing business proposals and response to client RFP/ RFIs
-
Identifying business opportunities and lead delivery and program management for
large cyber security programs
-
Delivery team and client relationship management
-
Experience on both commercial, open source tools and frameworks but not limited:
Burpsuite, Metasploit, Core-Impact, Kali-Linux, AppScan, WebInspect, SSLScan, Soap
UI Pro, SonarQube, Qualys, Nikto, Nessus, nmap, sqlmap, OWASP ZAP .
Preferred candidate profile
Millions of jobs, with real people getting hired every day
Questions, answered
Click "Apply with JobAssist" – we tailor your resume and application to this role and submit it for your approval.
Yes. This role at Contactx Resource Management was screened before publishing – we confirmed the employer before listing it.
The employer didn't disclose a salary range for this listing. JobAssist shows pay whenever it's available.
This position can be done from anywhere, with no in-office requirement.
Yes – every application is tailored from your profile and this job's requirements, and you can review and edit before it's sent.
