3 months ago
Bengaluru, IndiaStaff+
Responsibilities
- Establish and lead Saviynt’s Application Security and offensive security function.
- Conduct advanced white-box penetration testing of web applications and APIs.
- Perform security assessments and penetration testing of AWS and Azure cloud infrastructure.
- Assess Kubernetes clusters and containerized applications, including EKS and AKS environments.
- Define the offensive security roadmap and adopt advanced testing techniques and tools.
- Advise Architecture, Engineering, and DevOps teams on secure design patterns and remediation strategies.
- Design and execute multi-stage attack paths against LLMs and AI-integrated systems.
- Lead customer-facing discussions and address Application Security concerns.
- Conduct advanced threat modeling for major initiatives.
- Analyze, prioritize, and communicate security findings based on risk, exploitability, and business context.
- Select, customize, and deploy security tools while developing proprietary testing tools and frameworks.
- Prepare executive-level reports and technical security findings.
- Mentor and formally guide senior and principal-level penetration testers.
Requirements
- Bachelor’s or master’s degree in Computer Science, Information Security, or a related field.
- 15+ years of hands-on, progressive experience in penetration testing and offensive security.
- Advanced application and API security assessment experience.
- Complex penetration testing experience across AWS and Azure cloud infrastructures.
- Experience testing Kubernetes and containerized environments, including AKS and EKS.
- OSCP certification or equivalent is preferred but not required.
Benefits
- Tremendous growth and learning opportunities through challenging work.
- Welcoming and positive work environment.
- Annual security training and adherence to company information security and privacy policies.
- Equal opportunity employment environment.
