Grapes Worldwide
Website:
grapesworldwide.com
Job details:
Security Tester – Technology Department
Location: New Delhi / Hybrid
Department: Technology
Reporting To: Engineering Manager / Head of Technology
Company: Grapes Worldwide
About Grapes Worldwide
Grapes Worldwide is a digitally driven integrated communication and technology company that combines
creativity, data, media, and technology to deliver innovative solutions for leading brands. We are looking for a
highly skilled Security Tester who will play a critical role in ensuring the security, resilience, and compliance of our
digital products, platforms, and applications.
Position Overview
We are seeking a detail-oriented and proactive Security Tester to identify, assess, and mitigate security
vulnerabilities across web applications, mobile applications, APIs, cloud infrastructure, and internal systems. The
ideal candidate will have hands-on experience in penetration testing, vulnerability assessments, secure
development practices, and application security testing.
This role requires close collaboration with developers, DevOps engineers, product teams, and technology
leadership to ensure security is embedded throughout the software development lifecycle (SDLC).
Key Responsibilities
Security Testing & Assessment
● Conduct comprehensive vulnerability assessments and penetration testing (VAPT) of web applications,
mobile applications, APIs, and cloud environments.
● Identify, validate, and document security vulnerabilities using industry-standard methodologies.
● Perform manual and automated security testing throughout the development lifecycle.
● Evaluate application security against the latest security threats and attack vectors.
● Conduct authentication, authorization, session management, and access control testing.
Application Security
● Review application architecture and code for security weaknesses.
● Collaborate with developers to remediate vulnerabilities and implement secure coding practices.
● Validate security fixes and perform regression security testing.
● Assess APIs for security flaws, including authentication, authorization, and data exposure risks.
Cloud & Infrastructure Security
● Perform security assessments of cloud environments (AWS, Azure, GCP).
● Evaluate infrastructure configurations, network security controls, and IAM policies.
● Identify misconfigurations and security gaps in containerized and serverless environments.
Security Compliance & Governance
● Ensure adherence to security frameworks such as OWASP Top 10, OWASP ASVS, NIST, CIS Benchmarks, and
industry best practices.
● Assist in security audits, compliance assessments, and risk evaluations.
● Support security awareness initiatives and contribute to secure SDLC processes.
Reporting & Documentation
● Prepare detailed vulnerability assessment reports with risk ratings and remediation recommendations.
● Present findings to technical and non-technical stakeholders.
● Maintain documentation of security assessments, testing methodologies, and remediation tracking.
Required Qualifications
Education
● Bachelor's degree in Computer Science, Information Security, Cyber Security, Information Technology, or a
related field.
Experience
● 3–6 years of hands-on experience in Application Security Testing, Vulnerability Assessment, and
Penetration Testing.
● Experience testing web applications, APIs, mobile applications, and cloud environments.
● Prior experience working within Agile development teams.
Click on Apply to know more.