This website uses cookies to ensure you get the best experience on our website. By continuing to use this site, you agree to our cookie  & privacy policy.Accept

checked This is a sample alert

Consultant - Senior Security Analyst

  • Full Time
  •  On-Site - Delhi / NCR
  • 6 months
  • Project posted on: 27/02/2025
add_new View Project Details

Consultant - Senior Security Analyst

  • Information Technology
  • Information Security

On-Site - Delhi / NCR

Full Time

6 months

 27/02/2025

Assignment Details

Our client, A leading energy solutions provider, is looking to engage a Consultant - Senior Security Analyst to Perform Vulnerability assessments and remediation for web, mobile (Both Android & iOS), IoT firmware and thick client testing domains. (Recommended to have expertise in more than 1 domain).
 

Monitor and research on security threats and vulnerabilities, manage security controls, logs and risk mitigation strategies and implement security policies based on regulatory standards and framework. Should have understanding of regulatory standards and IoT framework (IEC 62443, ISO 27001, NIST, CIS benchmark etc.) Knowledge of TCP/IP, OSI Layer, IPv4 & IPv6, Network Protocols and Wireless Communication skills preferred.
 

Hands on experience on Azure Security Tools like Microsoft Defender for Cloud, Azure monitor, Azure Key Vault, WAF etc. and other pen testing tools like burp suite pro, ZAP, MoBSF, Ghidra, Binwalk etc. Manage the implementation of diverse SOC and SIEM Tools, OSINT and platforms such as cloud, dockers/container infra etc.

 

Tasks and Responsibilities:

  • Develop and implement incident response plan.
  • Continuously monitor and analyze security alerts from various sources.
  • Do research and perform forensics on incidents.
  • Develop and enforce security policies and procedures.
  • Draft reports based on tests performed and provide remediation based on security best practices.
  • Conduct regular security audits to assess effectiveness of security controls.
  • Identify and analyze complex security vulnerabilities and threats through social engineering attacks and manual testing.
  • Assess network architecture, configurations for security vulnerabilities.
  • Contribute to the development of innovative security testing methodologies and Tools.
  • Write technical and executive reports and aware stakeholders of security events.
  • Ability to perform malware analysis.
  • Automate common testing techniques to improve efficiency.
  • Communicate findings to both technical staff and executive leadership.
  • Validate security improvements with additional testing.

Skills Required

Skills: 

  • OWASP Top 10, SANS 25, MITRE CWE, CVE, secure code review.
  • Threat intelligence and forensics
  • Proficient in coding in one or more Programming languages, especially for scripting (Python, BASH, JavaScript, Ruby, Perl)
  • Hands on performing vulnerability assessment through tools like Azure Defender, WAF, Burp Suite Pro, ZAP, MoBSF, Ghidra, Binwalk, Nessus etc.
  • OWASP, SANS and IoT/OT security Testing Methodologies and some hands on pen testing.
  • Basic reverse engineering skills (Familiarity with IDA Free, Ghidra, etc.) Basics of ARM exploitation.
  • Cryptography and certificate management practices
  • Experience working in public cloud environment (Azure, GCP etc.) 
  • Familiarity working with Linux, Windows, and MacOS environments.
  • Strong understanding of infrastructure/cloud architecture. This will include using security Tools, manual testing etc.
  • Technical writing and documentation
  • Strong communication skill

About the Client

A leading energy solutions provider

Industry

IT Services & Consulting

Minimum Experience:

2+ years

Additional Skills:

  • ZAP
  • GCP
  • azure defender
  • manual testing
  • Coding
  • pen testing
  • Burp Suite Pro
  • IoT/OT Security
  • Testing
  • Javascript
  • Ghidra
  • python
  • WAF
  • Binwalk
  • cyber security
  • ruby
  • MoBSF
  • perl
  • Nessus
  • Azure
  • IoT Framework
  • BASH

No of open positions:

1

How it works

  • 1

    Build your
    skill profile

  • 2

    Strengthen it
    with feedback

  • 3

    Determine your
    optimal fee level

  • 4

    Apply for matching
    projects

  • 5

    Get finalized

  • 6

    Stay Engaged

Build your skill prodile

Project
step1
shape_step

Request feedback from prior projects and/or work stints

shape_step

Determine your optimal fee level

  • starFeeBee helps consultants understand how to price their services.
  • starEnter your skill & location to get ranges for what similar professionals have charged on projects.
  • starUnlock more details e.g., best paying sub-skills, ranges by projects durations, by simply adding a benchmark from a orior projects.
graph_step2
shape_step

Apply for matching projects

shape_step

Get finalized!

Project
step5
shape_step

Stay Engaged!

Project
step6
shape_step

Similar Freelance Projects you can apply to.

View More Projects btn btn

More than 3000 clients rely on Flexing It today

Frequently asked questions.

We host both full-time & part-time projects from top clients for 100+ skill categories. We also help connect experts like you with clients for short consultation calls called Flexperts

You just need to create a ‘boutique firm’ account during the registration process. The rest of the application process remains the same.

Our freelancers fee benchmarking tool, FeeBee helps our freelancers and consultants find out what their peers charged for similar projects. Built on 600K+ verified benchmarks, registered users get unlimited access to it.

As a freelancing platform, we do not provide permanent positions or full-time job to our consultant network.

Flexing It will be involved end to end right from contracts to invoicing. Once you are finalized, your payment details are transparently laid out in your contract terms with your client and our team actively liaises with the client finance team to ensure timely payments.

We do not charge any fee or commission from you. Your fee quote will be paid out to you in full as per your project contract.