Job Summary
Network/Infrastructure Penetration Tester with hands-on experience in offensive security testing. The ideal candidate will play a critical role in minimizing risks to the organization’s information assets by identifying, exploiting, and reporting vulnerabilities across network and infrastructure environments. This role requires a proactive mindset, strong technical aptitude, and the ability to collaborate across teams to strengthen our security posture.
Key Responsibilities
• Penetration Testing & Vulnerability Assessment.
• Conduct penetration testing and vulnerability assessments on network and infrastructure assets, including on-premises and cloud environments.
• Perform offensive security testing to simulate real-world attack scenarios and assess the effectiveness of existing security controls.
• Apply knowledge of the MITRE ATT&CK framework to enhance testing methodologies and reporting.
• Risk Minimization & Security Architecture.
• Ensure risks posed by cyber threats (e.g., cyberattacks, insider threats, data theft/corruption) are identified and minimized.
• Support technology architecture reviews from a cybersecurity risk perspective and provide input to minimize vulnerabilities in new and existing systems.
• Continuous Threat Exposure Management (CTEM) & Red Teaming o Contribute to the maturation of the CTEM program by supporting red teaming activities and continuous security assessments.
• Analyze and report findings to management, including publishing dashboards and metrics for senior leadership.
• Collaboration & Communication o Build and maintain effective working relationships with business units, IT teams, and management.
• Communicate findings, remediation recommendations, and risk updates to both technical and non-technical stakeholders.
• Participate in ongoing dialogue with technical leads, internal business partners, and senior management to ensure alignment on security objectives.
• Process Improvement & Compliance o Assist in the development and implementation of security standards, controls, and best practices (e.g., ISMS, SSAE16, PCI DSS).
• Support external certification/attestation audits and facilitate management reviews as needed.
• Track and report on the effectiveness of security controls, highlighting areas for improvement.
• Professional Development o Stay updated on emerging threats, vulnerabilities, and security tools.
• Support personal and team development through knowledge sharing and training.
Required Skills & Experience
• Experience in penetration testing, with a focus on network and infrastructure security.
• Demonstrated experience in offensive security testing, including hands-on exploitation of vulnerabilities.
• Familiarity with the MITRE ATT&CK framework and its application in penetration testing and threat modeling.
• Proficiency with penetration testing tools such as Nessus, Metasploit, Nmap, and similar.
• Understanding of risk scoring methodologies (e.g., CVSS, NIST) to assess and prioritize vulnerabilities.
• Basic knowledge of cloud security concepts and experience with cloud security assessment tools is a plus.
• Strong analytical, problem-solving, and communication skills.
• Ability to document findings clearly and work collaboratively with cross functional teams.
Key Responsibilities
2. To adhere to quality standards (voice and accent , Tech Monitoring), regulatory requirements and company policies.
3. To ensure positive customer experience and CSAT through First Call Resolution and minimum average handling time ( AHT), rejected resolutions / Reopen Cases.
4. To maintain high login Efficiency (Availability) for customers.
5. To update worklogs and follow shift/ escalation process to escalate complex problem to appropriate support specialists/route problems to 2nd and 3rd level IT support staff as the case be.
6. Work on value adding activities such Knowledge base update & self development.