Job Title

Penetration Tester

Company Name
Siemens
Job Type
Full-time
Qualification
B.Tech/B.E.
Experience
4 Years
Vacancies
1
Salary Offered
Not Disclosed
Job Category
Location
Bangalore, Karnataka, India
Job Description

As a Senior Cybersecurity Penetration Tester, you'll drive vulnerability assessment and penetration testing (VAPT) activities for multiple R&D applications in the Industrial Automation Control Systems (IACS) domain.
You'll additionally support the pentesting team in the implementation of automation tools for VAPT.

What part will you play?
You'll perform vulnerability assessments & penetration testing (VAPT) on networks, desktop, Edge, cloud and mobile applications
You'll identify threats, and develop test cases to target identified threats
You'll identify and exploit vulnerabilities in products under test
You'll prepare reports by documenting identified issues based on internal templates
You'll support and consult the project development teams to implement the required product & solution security (software and hardware)
You'll support research on emerging security topics, new attack vectors and keep up-to date

Education
B.Tech / M.Tech in CS / IT / EE / EC / EI

Cybersecurity Certifications
CE|H - Mandatory
OSCP - Preferred

Experience
At-least 4 years hands-on professional experience in product security testing domain

Competences
Computer Networking Concepts – Understanding of TCP/IP, common networking ports and protocols, OSI model - Advanced
Security Testing – Advanced
Methods - Vulnerability scanning & assessments, Penetration testing, Fuzz testing
Functions - Contribution to threat modeling, test scenario design & execution, industry-standard issue-reporting, collaboration with development teams to support fulfilment of security obligations etc.
Technologies - Pentesting of various applications - Firmware, Rich Client-Server, Web, Mobile (Android & iOS), Containers, Edge, Cloud (AWS / Azure), etc.
Tools - Experience in security assessment tools (e.g. NESSUS, NMap, BurpSuite, ZAP, OWASP tools, Kali Linux tools, Fuzzing tools)
Automation - Experience in Automating Security tests using scripting languages (e.g. Python, Perl, Ruby)
Standards - Experience working with NIST, OWASP, MITRE CWE, MITRE ATT&CK etc.
SW Development / Testing – Ability to code in C/C++/C# in Windows (using Visual Studio) / Linux (using gcc) - Basic
Written & Verbal Communication Skills – Advanced
Presentation Skills – Advanced
Domain (Industrial Automation) – Preferable

Recruiter's Name
--
Telephone
--
Posted Date
January 22, 2022
Additional information

--