HamburgerMenu
iimjobs
Job Views:  
256
Applications:  6
Recruiter Actions:  0

Posted in

IT & Systems

Job Code

1615570

Manager/Senior Manager - Vulnerability Assessment & Penetration Testing

Cubical Operations.6 - 8 yrs.Others
Posted 2 months ago
Posted 2 months ago

Job Title: VAPT Manager / Sr. Manager


Location: Mumbai / Gurgaon.


Experience: Minimum 6 years.


Job Type: Full-time.


Department: Cybersecurity / Information Security.

About the Role:


We are seeking a highly skilled and experienced Vulnerability Assessment and Penetration Testing (VAPT) Manager / Sr. Manager to join our growing cybersecurity team. The ideal candidate will lead the VAPT team in planning, executing, and reporting on security assessments for applications, networks, cloud environments, and infrastructure across the organization. This role involves both hands-on testing and strategic leadership responsibilities.

Key Responsibilities:


- Lead end-to-end VAPT projects across applications (web, mobile, APIs), networks, cloud platforms (AWS, Azure, GCP), and infrastructure.


- Manage a team of VAPT professionals, mentoring junior members and reviewing technical deliverables.


- Define and implement VAPT strategy, methodology, tools, and best practices aligned with business goals.


- Identify security vulnerabilities, misconfigurations, and risks through manual and automated testing.
- Perform threat modeling and risk assessments to prioritize testing efforts.


- Develop and present technical reports to stakeholders, including risk severity and recommended mitigations.


- Coordinate with application owners, DevOps, IT, and other teams to ensure remediation of identified vulnerabilities.


- Stay updated with the latest vulnerabilities, exploits, and threat intelligence.


- Manage third-party VAPT vendors and ensure quality and compliance of their deliverables.


- Ensure compliance with relevant security standards (OWASP, NIST, ISO 27001, PCI-DSS, etc.

Required Skills and Qualifications:


- Bachelors degree in Computer Science, Information Security, or a related field.


- Minimum of 6 years of experience in cybersecurity, with at least 4 years focused on VAPT.


- Strong knowledge of tools such as Burp Suite, Nessus, Nmap, Metasploit, Qualys, Nikto, Wireshark, etc.


- Expertise in identifying and exploiting vulnerabilities in web applications, APIs, mobile apps, networks, and cloud infrastructure.


- Hands-on experience in secure code review and reverse engineering is a plus.


- Strong understanding of OWASP Top 10, SANS Top 25, MITRE ATT&CK framework.


- Industry certifications such as OSCP, OSWE, CEH, GWAPT, GPEN, or CISSP are preferred.


- Excellent communication, reporting, and stakeholder management skills.

Preferred Qualifications:


- Experience managing or mentoring VAPT teams.


- Exposure to DevSecOps and integrating security into CI/CD pipelines.


- Familiarity with regulatory requirements and audits (e.g., GDPR, RBI, ISO, etc.


- Cloud security experience (AWS/GCP/Azure certifications are a plus).

Employment Type:


Full-time | Permanent.

Work Mode:


Hybrid / On-site (as per business requirement).


Didn’t find the job appropriate? Report this Job

Job Views:  
256
Applications:  6
Recruiter Actions:  0

Posted in

IT & Systems

Job Code

1615570

UPSKILL YOURSELF

My Learning Centre

Explore CoursesArrow