VAPT Analyst

Sveltetech Technologies
Posted on

Experience
Up to 6 yrs
Job Location
Gurugram, India
Vacancy
15
Designation
Cyber Security Analyst
Job Type
Not specified

Job Description

ABOUT THE ROLE


We are hiring VAPT Analysts with strong hands-on expertise in manual security testing and real-world attack methodologies. This role is for professionals who possess deep technical understanding and can identify vulnerabilities that go beyond what automated scanners surface.


You will perform comprehensive security assessments across web applications, APIs, mobile applications, networks, infrastructure, and enterprise environments including mission-critical and high-sensitivity systems for our clients.


KEY RESPONSIBILITIES


Conduct Vulnerability Assessment and Penetration Testing for web applications, APIs, mobile applications, networks, and infrastructure environments.


Perform detailed manual security testing to identify complex vulnerabilities and attack paths.


Validate and exploit identified vulnerabilities to assess real-world risk exposure.


Conduct authenticated and unauthenticated security assessments.


Perform network reconnaissance, enumeration, exploitation, and privilege escalation activities.


Prepare detailed technical assessment reports with risk ratings and clear remediation recommendations.


Support red teaming and adversary simulation exercises where required.


Stay updated with emerging vulnerabilities, exploitation techniques, and attack trends.


SVELTETECH TECHNOLOGIE S


VAPT Analyst


Coordinate with development, infrastructure, and security teams for remediation validation and closure.


REQUIRED SKILLS & EXPERIENCE


17 years of experience in VAPT, Penetration Testing, or Offensive Security roles.


Strong hands-on expertise in manual web application and API security testing.


Solid understanding of OWASP Top 10, SANS Top 25, authentication flaws, business logic vulnerabilities, and infrastructure exploitation.


Practical experience with tools such as Burp Suite, Nmap, Metasploit, Nessus, Wireshark, SQLMap, and similar platforms.


Strong grasp of networking concepts, operating systems, web technologies, and attack methodologies.


Experience with infrastructure, wireless, and Active Directory security assessments is preferred.


Demonstrated ability to identify vulnerabilities beyond automated scanners through manual analysis and exploitation.


Strong analytical, documentation, and reporting skills — able to communicate findings clearly to both technical and business audiences.

PREFERRED QUALIFICATIONS


Certifications such as OSCP, CEH, eWPT, CRTP, PNPT, or equivalent.


Prior experience working on enterprise or critical infrastructure environments.


Exposure to red teaming activities and attack simulation exercises.


Contributions to the security community — CVEs, bug bounty disclosures, CTF participation, research write-ups, or open-source security tooling.


WORK LOCATION


Onsite role based out of the Sveltetech Gurugram office (Sector 61, Golf Course Extension Road) or client locations, depending on project requirements.


No Referrers Available

There are currently no referrers available for this job. You can still apply, will let you know once there is any referrer available.