6+ Metasploit Jobs in Bangalore (Bengaluru) | Metasploit Job openings in Bangalore (Bengaluru)
Apply to 6+ Metasploit Jobs in Bangalore (Bengaluru) on CutShort.io. Explore the latest Metasploit Job opportunities across top companies like Google, Amazon & Adobe.
- OWASP Secure Code review,• Basic programing knowledge in any programming language and knowledge on secure development practices.
- OWASP TOP 10 vulnerabilities and their mitigations
- Hands on experience in Web Application Security Testing tools (SAST & DAST) and Penetration testing tools such as HP Fortify, Checkmarx, Acunetix, Nessus, Burp Suite, Metasploit., Qualys Guard, Kali Linux , etc.
- Understand/modify exploit code and find logical security flaws in applications
- Should have knowledge and experience on Network Security, Application Security, Internet Security, attack vectors.
- To carry out technical vulnerability assessments, identify potential vulnerabilities and provide recommended controls and support to mitigate them.
A BIT ABOUT US
Appknox is one of the top Mobile Application security companies recognized by Gartner and G2. A profitable B2B SaaS startup headquartered in Singapore & working from Bengaluru.
The primary goal of Appknox is to help businesses and mobile developers secure their mobile applications with a focus on delivery speed and high-quality security audits.
Appknox has helped secure mobile apps at Fortune 500 companies with Major brands spread across regions like India, South-East Asia, Middle-East, US, and expanding rapidly. We have secured 300+ Enterprises globally.
We are a 40+ incredibly passionate team working to make an impact and help some of the biggest companies globally. We work in a highly collaborative, very fast-paced work environment. If you have what it takes to be part of the team, we are excited, and let’s speak further.
The Opportunity
To join the security team engaging with multiple clients, helping them with end-to-end security audits, also researching new topics and vulnerabilities to be added to the scanner, present research at conferences.
What An Ideal Candidate Would Look Like:
- Skills - Application Penetration Testing, experience with IoT testing, source code audits.
- Technology Stack: Python
- Responsibilities: Engage with clients for scoping call, perform security audits, and remediation call with clients to patch the issues, research on new technologies/vulnerabilities
Minimum Requirements
- Should have at least 2 years of experience in security or show something that proves experience doesn’t matter
- Must be comfortable with tools like burp suite,
- Strong Analytical Skills
- Strong grasp of fundamentals of information security
- Strong Grasp of Web and API Pen-Testing
- Self-taught learner willing to read and keep up-to-date on technological changes and how they could be used
- Can accurately define an issue and create detailed Proof-of-concept and write-up of the findings.
- Provide appropriate remediation and mitigations of the identified vulnerabilities.
Responsibilities
- Security assessment of web applications.
- Develop and interpret security standards and guides
- Automation of security test cases
- Understand and explain the results with impact on business and compliance status
- Continuously learning and training on the latest tools and techniques
Work Expectations
Within 1 month
Training on processes, security workflow
Within 3 months
Pentesting Web, Mobile and API endpoints
Within 6 months
Research and publish whitepapers, contribute to the Appknox Web Scanner
Personality traits we admire:-
- A confident and dynamic working persona, which can bring fun to the team, and a sense of humor, is an added advantage.
- Great attitude to ask questions, learn and suggest process improvements.
- Has attention to detail and helps identify edge cases.
- Highly motivated and coming up with fresh ideas and perspectives to help us move towards our goals faster.
- Follow timelines and have an absolute commitment to deadlines.
Interview Process - would be team specific
- Round 1 - Profile Evaluation
- Round 2 - Appknox CTF Challenge
- Round 3 -Technical Interview with security team members
- Round 4 - Technical Interview with the CTO and Team Lead
- Round 5 - HR Round
Compensation
- As per Industry Standards
Why Join Us:-
- Freedom & Responsibility: If you are a person who enjoys challenging work & pushing your boundaries, then this is the right place for you. We appreciate new ideas & ownership as well as flexibility with working hours.
- Great Salary & Equity: We keep up with the market standards & provide pay packages considering updated standards. Also as Appknox continues to grow, you’ll have a great opportunity to earn more & grow with us. Moreover, we also provide equity options for our top performers.
- Holistic Growth: We foster a culture of continuous learning and take a much more holistic approach to train and develop our assets: the employees. We shall also support you all on that journey of yours.
- Transparency: Being a part of a start-up is an amazing experience, one of the reasons being open communication & transparency at multiple levels. Working with Appknox will allow you to experience it all first-hand.
at Gipfel & Schnell Consultings Pvt Ltd
Senior Security Architect
The Security Architect leads the design and development of innovative security architectures for protecting data deployed into different types of cloud and cloud/hybrid systems. This position will directly contribute to the overall global enterprise cloud architecture and lead the security vision and strategy around cloud-based applications, across all types (including Infrastructure, Platform, and Software as a Service (IaaS/PaaS/SaaS).
Job Description
The Security Architect will serve as the central point of contact for other Technology teams within the Organization for all matters related to cloud security.
The successful candidate possesses the excellent interpersonal and communication skills required to partner with other leaders across the business to identify opportunities and risks and develop and deliver solutions that support business strategies and protect the intellectual property globally.
Expertise – Collaborate with Application Owners, Technical Owners, Platform Leads, and Information Security teams, to architect and design cloud security solutions.
Knowledge of cloud security services such as Azure and AWS is essential
Delivery – Complete architecture assessments across projects, prove use of security solutions to support new distributed computing solutions that span private cloud and public cloud services.
Security Technology Strategy – Work with engineering, service and business teams to create technology roadmaps.
Responsibilities Include
• Design and develop security architectures for cloud and cloud/hybrid based systems. Possess a firm understanding of the offerings within both Amazon Web Services (AWS) and the Microsoft Azure platforms. Based on business requirements, design and implement cloud-native architecture and design that will allow those requirements to be met with a minimal degree of risk and with appropriate security controls present.
• Represent the Corporate Information Security Office in development and implementation of the overall global enterprise cloud architecture.
• Act as the ambassador and senior technical representative for Information Security while engaging with other senior technical leaders throughout the Organization in design and implementation of cloud and cloud/hybrid based implementations and solutions.
• Work with Engineering, Infrastructure Services, and Application Development organizations to choose appropriate technology solutions and facilitates complete integration. Develops standards in partnership with Engineering, Infrastructure Services, and Application Development.
• Lead training and technical forums, serve as both a formal and informal mentor, and execute other initiatives designed to share knowledge across Security and Technology groups.
• Identify, recommend, coordinate, and/or conduct informal/formal training sessions to deliver timely knowledge to support teams regarding technologies, processes or tools.
• Develop and execute strategies to increase Cloud Security knowledge throughout the enterprise, as well as developing and mentoring more-junior security analysts and engineers.
• 5-8 years of experience with Security Architect and/or Engineering.
• 3-5 years of experience with Cloud platforms such as Microsoft Azure and Amazon Web Services (AWS).
• Experience architecting solutions within Microsoft Azure, Amazon Web Services (AWS) and, preferably, other cloud providers.
• Experience with assessment, development, implementation, optimization, and documentation of a comprehensive and broad set of security technologies and processes (secure software development (Application Security), data protection, cryptography, key management, identity and access management (IAM), network security) within SaaS, IaaS, PaaS, and other cloud environments.
• Working knowledge of common and industry standard cloud-native/cloud-friendly authentication mechanisms (OAuth, OpenID, etc).
• Experience with deployment orchestration, automation, and security configuration management preferred.
• Experience with service-oriented architecture for cloud-based services.
• Experience working with cloud security and governance tools, cloud access security brokers (CASBs), and server virtualization technologies.
• Experience with enterprise applications (architecture, development, support, and troubleshooting).
• Experience performing threat modeling and design reviews to assess security implications and requirements for introduction of new technologies.
• Experience representing technical viewpoints to diverse audiences and in making timely and prudent technical risk decisions.
• Experience with enterprise architecture and working as part of a cross-functional team to implement solutions.
• Strong interpersonal and communication skills; ability to work in a team environment
• Ability to work independently with minimal direction; self-starter/self-motivated
• Detailed understanding of SSL/TLS protocols and certificate-based solutions
• Technical writing experience
Preferred Qualifications
• Minimum of 15 years of formal education - Graduate / Postgraduate in Computer Science / Information Technology Professional work experience between 10-15 and at least 6-8 years as a Security Architect / Junior Security Architect
• Working Experience with distributed team preferred.
• Relevant industry certifications such as CISSP, CISM, or CCSP
Responsibilities:
● Develop and implement a comprehensive IT strategy aligned with business goals.
● Manage and optimize IT infrastructure, including hardware, software, and networks.
● Ensure data security and compliance with all relevant regulations.
● Lead a team of IT professionals and provide them with coaching and mentoring.
● Develop and implement IT projects on time and within budget.
● Identify and implement new technologies that can improve efficiency and productivity.
● Stay up-to-date on the latest IT trends and best practices.
● Manage IT budget and resources effectively.
● Build strong relationships with key stakeholders across the organization.
Qualifications:
● Bachelor's degree in Computer Science, Information Technology, or a related field.
● Master's degree preferred.
● 10+ years of experience in IT management, with at least 5 years in a leadership role.
● Proven experience in developing and implementing IT strategy.
● Experience managing IT infrastructure, including hardware, software, and networks.
● Strong understanding of data security and compliance requirements.
● Experience in leading and motivating a team of IT professionals.
● Excellent project management skills.
● Strong communication and interpersonal skills.
● Ability to work independently and as part of a team.
Skills and experience:
● Dealer Management Applications
● Customer Order collection applications
● Knowledge of Antivirus, IT infra monitoring, GCP, Security firewall
● IT supports Partner Contract management skills/ SLA monitoring / IT Project management skills.
● Manage IT administrative & Technical staff.
● Excellent time management skills.
Our client is software services company based in Bangalore
- Document technical and functional specifications
- Perform unit testing of objects/ solutions created
- Perform configuration, integration, and personalizations in Oracle HCM EBS/Cloud
- Work in a functional and technical capacity and analyze business requirements, design, develop and deploy solutions
- Excellent troubleshooting, analytical and problem-solving skills
- Explore & investigate the client's pain areas, extend the scope, and keep the client satisfied
Experience and Skills:
- Minimum a Bachelor’s degree.
- 3 to 10 years of experience as an Oracle HCM Techno-Functional Consultant
- 30% Functional and 70% Technical
- Strong experience in core HR, Payroll, Fast Formula, OTL and SSHR
- Should have expertise in Oracle HCM Cloud advanced tools such as HCM Extracts, HDL, PBL, BI Publisher, OTBI, Application Security, Page Composer, Page Configurator, REST APIs, SOAP, Webservices
- Able to provide strong leadership to develop best practices for effective Techno functional support for the enterprise business process area
- Good communication skills
- In-depth knowledge of the business process and capability to understand business requirements.
Requirements:
- Overall experience in the field of Information risk and security related initiatives/ projects.
- Experience in the areas of Infrastructure Security Audit, IT Security, Vulnerability Assessment, Risk Assessment, Web Application Security, Network Security Review, Network Architecture Review, Mobile Application Security Testing, Configuration Review, Source Code Review, Wireless Pentest, Process Review etc.
- Ability to understand business concepts and integrate business risk elements into security operations.
- Experience in conducting VAPT.
- Experience with web application vulnerability scanning tools (e.g., IBM AppScan, HP Web inspect, Acunetix, NTO Spider, BurpSuite Pro).
- Strong ethics and understanding of ethics in business and information security.
- Should have exposure to Code review, Network VA/PT and App VA/PT work.
- Understanding and familiarity with common code review methods and standards.
- Experience with code scanning toolsets such as Fortify and Ounce.
- Understanding of HTTP and web programming.
- Knowledge of OWASP tools and methodologies, common security requirements within ASP.NET application, standard SDLC practices.
- Knowledge of Network Security technology in areas of Firewall, IPS, VPN, Gateway security solutions (proxy, web filtering).
- In-depth understanding on Common Vulnerability Exposure (CVE)/ Cert advisory database.