logo

JobNob

Your Career. Our Passion.

Security Analyst - Red Team


HackIT Technology and Advisory Services


Location

Mumbai | India


Job description

About HackIT :Job Title : Security Analyst (Red Team)Location : MumbaiJob Overview : We are seeking a Security Analyst (Red Team) to join our dynamic Security Testing dream team and take lead in performing red teaming assessments. Hands-on role that also requires oversight and collaboration with team of security analysts.Job Responsibilities :Deliver Red Team Exercises Conduct state-of-the-art penetration testing against webapplications, network infrastructures, user workstations,network appliances and other devices and technologies. Manual and automated security testing of Web applications,APIs, and Mobile Applications. Static and Dynamic testing (SAST & DAST) of thick clients /applications Develop Proof-of-Concept (PoC) for the identifiedvulnerabilities. Provide remediation guidance to identified vulnerabilities. Develop and execute security testing project plans. Incorporate metrics providing comprehensive insight aboutthe security posture of an organization that will help senior management with decision making.Technical Skillsets (Mandatory) : Write offensive security software such as: backdoors,keyloggers, password dumpers, spear phishing payloads, and webshells Knowledgeable about the cyber kill-chain, and candemonstrate that he or she can: persist on a machine,escalate privileges, steal credentials and move laterally onother machines Find and exploit vulnerabilities in web applications, network services and enterprise network infrastructures Write in at least two of the following programminglanguages: C, Golang, Ruby and Python Experienced and knowledgeable in reading Java, C#, C, PHP, Objective C Experienced with databases: MySQL, Postgresql, Oracle Experienced with security tools: Burp proxy, Metasploit,Nessus, Kali, and others Sound understanding of security frameworks (OWASP Top10, NIST, MITRE ATT&CK)Technical Skillsets (Preferred) : Threat Modelling Exposure to DevSecOps and Security Architecture reviewNon-Technical Skillsets : Estimate Project efforts and meet delivery milestones anddeadlines Excellent and effective report writing and verbalcommunication skills Deliver results within stipulated time-lines Team Player with good interpersonal skills Should be able to work independently with minimum andleast supervision in complex, dynamic and challenging environment. Self-driven and self-managed technical team leader. Communicate project requirements and influence stakeholders with minimal supervision. (ref:hirist.tech)


Job tags



Salary

All rights reserved