Flag job

Report

VAPT (Web & network) Team Lead

Location

Bengaluru, Karnataka, India

JobType

full-time

About the job

Info This job is sourced from a job board

About the role

ISECURION

Website: isecurion.com
Job details:

Job Title: VAPT (Web & network) Team Lead

Department: Information Security / Cybersecurity

Location: Bengaluru

Job Type: Full-time

Experience: 1-3 Years

Notice Period: Immediate Joiner


Company Description:

ISECURION is a leading cybersecurity services provider, ISO 27001:2022 certified and CERT-IN empanelled. We offer innovative solutions and cutting- edge research to address the evolving threats in the cyber landscape. We work with a diverse clientele, both global and Indian, to safeguard their digital assets, deliver strategic security consulting, and enhance their cyber resilience. Are You Passionate About Cybersecurity?


Job Summary:

We are seeking an experienced and highly skilled VAPT & WAPT Team Lead to manage and lead our penetration testing team. The ideal candidate will be responsible for overseeing all aspects of internal and external security testing initiatives, including vulnerability assessments and penetration testing of networks, systems, applications, and cloud environments. This individual should have deep hands-on experience in offensive security, a strong understanding of cybersecurity principles, and the ability to mentor a team of security testers.


Key Responsibilities:

  • Lead and manage a team of VAPT/WAPT professionals to ensure timely and high-quality security assessments.
  • Plan and conduct internal and external penetration tests on web applications, APIs, mobile apps, infrastructure, and cloud environments.
  • Validate and exploit vulnerabilities to demonstrate risk and provide remediation recommendations.
  • Design and implement security testing methodologies, tools, and frameworks to standardize assessment practices.
  • Ability to coordinate and communicate effectively with customers to understand requirements, provide updates, and ensure successful project delivery.
  • Coordinate with stakeholders to scope engagements, set timelines, and communicate findings clearly.
  • Develop and deliver detailed technical reports and executive summaries with actionable recommendations.
  • Conduct retesting to verify remediations and close the vulnerability lifecycle.
  • Stay updated on the latest threats, attack vectors, and exploits in the cybersecurity landscape.
  • Provide mentorship, training, and development for team members; assist with hiring and onboarding.
  • Ensure compliance with industry standards and regulations such as OWASP, NIST, PCI-DSS, ISO 27001, etc.


Required Qualifications:

  • Bachelor’s or master’s degree in Cybersecurity, Computer Science, Information Technology, or a related field.
  • 4+ years of experience in offensive security or penetration testing roles.
  • 2+ years of experience in a team leadership or managerial capacity.
  • Strong expertise in tools like Burp Suite, Metasploit, Nmap, Nessus, Qualys, Wireshark, and Kali Linux.
  • Proficient in manual testing and business logic assessments beyond automated scans.
  • In-depth understanding of OWASP Top 10, MITRE ATT&CK framework, and CVSS scoring.
  • Hands-on experience with scripting (Python, Bash, PowerShell) for automation and exploitation.
  • Knowledge of secure coding principles, SDLC, DevSecOps, and CI/CD security integrations.


Preferred Certifications (one or more):

  • OSCP (Offensive Security Certified Professional)
  • OSWE (Offensive Security Web Expert)
  • CREST CRT or CCT
  • CEH (Certified Ethical Hacker)


Soft Skills:

  • Strong leadership and people management skills.
  • Excellent communication and reporting abilities (both technical and non-technical).
  • Problem-solving mindset and attention to detail.
  • Ability to work under pressure and manage multiple concurrent engagements.



 To Apply: Send your resume to hr@isecurion.com

Email Subject Line: "Application for VAPT & WAPT Team Lead at ISECURION"

 

Click on Apply to know more.

Skills

Python
penetration testing
PCI-DSS
Bash
compliance
information security
Linux
people management
PowerShell
SDLC