This website uses cookies to ensure you get the best experience on our website. By continuing to use this site, you agree to our cookie  & privacy policy.Accept

checked This is a sample alert

Consultant Pen Tester

  • Full Time
  •  On-Site - Bangalore
  • 12 months
  • Project posted on: 5/09/2024

Consultant Pen Tester

  • Information Technology
  • Quality Assurance & Testing
  • Information Security

On-Site - Bangalore

Full Time

12 months

 5/09/2024

Assignment Details

Our client, a leading global specialist in energy management and automation is looking to engage with a Consultant Pen Tester with RED teaming experience.
About the role: Secure Software applications and infrastructure from potential vulnerabilities and attacks. Drive product privacy and cybersecurity features and enhancements. Ability to work in a fast-paced, rapidly changing, Agile, competitive environment.

Key responsibilities:
·  Assess architectures and designs for security vulnerabilities and suggest and implement proper alternatives
·  Oversee the management and remediation of identified security flaws within our development platforms
· Build and maintain monitoring, auditing, and reporting frameworks that produces artifacts that support security and compliance needs
·  Drive vulnerability assessment and penetration testing (VAPT) activities for multiple R&;D applications, implement DEVSECOPS across the product line
·  CI/CD integration of SAST and DAST platforms.

Duration: 12 months (Extendable)
Capacity: Full time
Location: Bangalore (Onsite)

Skills Required

- Education: B.Tech / M.Tech in CS / IT / EE / EC / EI
- Cybersecurity Certifications: CEH / OSCP - Preferred.
- A professional with a certain level of knowledge and at least 8 years of expertise in Software application pen testing
- Knowledge of the DevSecOps framework, understanding on NIST, OWASP, MITRE,CWE etc
-  An understanding of programming languages such as C#, Perl, JavaScript, Python and/or PHP.
- Understanding of TCP/IP, common networking ports and protocols, OSI model
- Knowledge of Threat modelling and risk assessment techniques.
- Up-to-date knowledge of cybersecurity threats, current best practices, and latest software.
- An understanding of programs such as HP Fortify, Puppet, Chef, ThreatModeler, Checkmarx, Aqua. They may also need to know Kubernetes/ Docker. Security assessment tools (e.g. NESSUS, NMap, BurpSuite, ZAP, OWASP tools, Kali Linux tools, Fuzzing tools)
- Significant knowledge of security best practices for client-server product architectures, focusing predominantly on cloud-based server development
- Knowledge of one or more SSO methodologies (SAML, LDAP, OpenID)
- Experience extracting pertinent security data from SIEM solutions and AWS audit, logs, and reports
- Deep product knowledge to ensure the clinical functionality, expected operating environment, and interoperability to accurately determine a product’s privacy and security risks.

About the Client

A leading global specialist in energy management and automation

Industry

IT Services & Consulting

Minimum Experience:

8+ years

Additional Skills:

  • CEH
  • Security Assessment tools
  • VAPT
  • NIST
  • Cybersecurity threats
  • Vulnerability Assessment And Pentration testing
  • RED teaming
  • SSO Methodologies
  • OSCP
  • Pen Tester
  • OWASP
  • CWE
  • MITRE
  • Pen Testing
  • Cybersecurity

No of open positions:

2

How it works

  • 1

    Build your
    skill profile

  • 2

    Strengthen it
    with feedback

  • 3

    Determine your
    optimal fee level

  • 4

    Apply for matching
    projects

  • 5

    Get finalized

  • 6

    Stay Engaged

Build your skill prodile

Project
step1
shape_step

Request feedback from prior projects and/or work stints

shape_step

Determine your optimal fee level

  • starFeeBee helps consultants understand how to price their services.
  • starEnter your skill & location to get ranges for what similar professionals have charged on projects.
  • starUnlock more details e.g., best paying sub-skills, ranges by projects durations, by simply adding a benchmark from a orior projects.
graph_step2
shape_step

Apply for matching projects

shape_step

Get finalized!

Project
step5
shape_step

Stay Engaged!

Project
step6
shape_step

Similar Freelance Projects you can apply to.

View More Projects btn btn

More than 3000 clients rely on Flexing It today

Frequently asked questions.

We host both full-time & part-time projects from top clients for 100+ skill categories. We also help connect experts like you with clients for short consultation calls called Flexperts

You just need to create a ‘boutique firm’ account during the registration process. The rest of the application process remains the same.

Our freelancers fee benchmarking tool, FeeBee helps our freelancers and consultants find out what their peers charged for similar projects. Built on 600K+ verified benchmarks, registered users get unlimited access to it.

As a freelancing platform, we do not provide permanent positions or full-time job to our consultant network.

Flexing It will be involved end to end right from contracts to invoicing. Once you are finalized, your payment details are transparently laid out in your contract terms with your client and our team actively liaises with the client finance team to ensure timely payments.

We do not charge any fee or commission from you. Your fee quote will be paid out to you in full as per your project contract.