Penetration Testing Analyst

🔥 1 minute ago

🇮🇳 India – Remote

⏰ Full Time

🟡 Mid-level

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 10%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Sophos

Sophos

1001 - 5000 employees

Founded 1985

💼 Consulting

🏥 Healthcare

🏭 Manufacturing

💰 Post-IPO Equity on 2021-08

Consulting • Healthcare • Manufacturing

Sophos is a leading cybersecurity company that specializes in protecting businesses against advanced cyber threats. The company offers a comprehensive suite of security solutions, including endpoint protection, managed detection and response (MDR), network security, and cloud security. With a prevention-first approach, Sophos aims to stop ransomware and other cyber threats before they cause harm. Sophos provides services such as threat research, security training, and operational support to ensure robust defense against cyberattacks. Their solutions cater to various industries including finance, healthcare, government, manufacturing, and retail. The Sophos Central platform delivers centralized security management, integrating seamlessly with existing IT infrastructure to enhance security posture.

📋 Description

• Coordinate activities, documentation, readiness schedules, and information between business, clients, and project teams • Act as the point of contact for testing readiness and communicate readiness status • Use project management tools to monitor tasks, responsible parties, timelines, and status • Report and escalate issues to management • Conduct application security assessments for web, mobile, and API applications, or network penetration testing assessments • Use off-the-shelf and internally developed exploitation tools for manual testing of advanced attacks • Produce and deliver professional security assessment reports detailing vulnerabilities and exploits • Lead client conference calls covering test readiness, troubleshooting, project kickoffs, high/critical findings, and close-out reviews • Perform proactive research on new threats, vulnerabilities, and exploits • Document exploitation findings for client remediation • Work independently and as part of a larger team • Perform other essential duties as assigned

🎯 Requirements

• 3+ years of experience in Information Security • Excellent client-facing and internal written and verbal communication skills • Minimum of 3 years of experience with penetration testing • Minimum of 3 years of experience with at least one of: Nmap, Metasploit, Kali Linux, Burp Suite • Ability to learn quickly and thrive in a high-energy team environment • Professional, “get it done” attitude and strong work ethic • Solid organizational skills, attention to detail, and multitasking skills • Experience with NMap Scanning (desirable) • Understanding of web application authentication methods (desirable) • Experience with Linux (desirable) • Understanding of networking appliances, including routers, load balancers, firewalls, WAF, IDS/IPS, and web content filter/proxy (desirable) • Understanding of tools to validate network access with a penetration testing platform (desirable) • Offensive certifications such as CEH, WAPT, GPEN, GWAPT, GAWN, or OSCP (desirable) • Knowledge of Microsoft Windows/Linux operating systems administration and internals (desirable) • Understanding of TCP/IP networking at a technical level (desirable) • Experience with application attack vectors, security test processes, and common vulnerabilities such as OWASP Top 10 (desirable) • Good troubleshooting, technical communication, analytical, and problem-solving skills (desirable) • Legal authorization to work in India without employer sponsorship

🏖️ Benefits

• Remote-first working model • Employee-led diversity and inclusion networks • Annual charity and fundraising initiatives • Volunteer days • Global employee sustainability initiatives • Global fitness and trivia competitions • Global wellbeing days • Monthly wellbeing webinars and training • Recruitment and selection process adjustments for accessibility

Apply Now

Similar Jobs

🔥 14 hours ago

Akamai Technologies

5001 - 10000

🔒 Cybersecurity

Security Architect detecting and mitigating real-time attacks for Akamai’s managed security customers. Analyzing network threats and deploying protections across Akamai’s distributed cloud and edge platform.

DNS

🕒 3 days ago

Weekday (YC W21)

11 - 50

💼 Consulting

👥 HR Tech

☁️ SaaS

Bilingual Security Tool Administrator managing enterprise cybersecurity platforms for Weekday's client. Supporting CrowdStrike, Proofpoint, Zscaler, vulnerability management, encryption, and major incident operations.

🗣️🇯🇵 Japanese Required

AWS

Cyber Security

ServiceNow

🕒 4 days ago

First Advantage

5001 - 10000

👥 HR Tech

☁️ SaaS

🤝 B2B

Senior offensive security engineer testing First Advantage’s products, cloud infrastructure, networks, and people. Building adversary simulations and driving remediation to reduce enterprise risk.

AWS

Azure

Cloud

Kubernetes

Linux

Python

Ruby

Go

🕒 5 days ago

SRM Technologies

501 - 1000

📦 Logistics

💼 Consulting

🏭 Manufacturing

Cloud Security Engineer securing multi-cloud environments, AI workloads, and cloud security operations. Investigating alerts, automating controls, and supporting incident response for a technology company.

AWS

Azure

Cloud

Cyber Security

Google Cloud Platform

Python

Terraform

🕒 August 25

BCD Travel

10,000+ employees

💼 Consulting

📦 Logistics

🏨 Hospitality

Information security compliance leader strengthening BCD Travel’s global corporate travel programs. Leading teams, certifications, audits, risk management, and AI-enabled compliance improvements.

Cyber Security

PMP