IN Senior Associate Security Testing Strategy & Governance Advisory Mumbai

Mumbai Shivaji Park, India

PwC

We are a community of solvers combining human ingenuity, experience and technology innovation to help organisations build trust and deliver sustained outcomes.

View all jobs at PwC

Apply now Apply later

Line of Service

Advisory

Industry/Sector

Not Applicable

Specialism

Risk

Management Level

Senior Associate

Job Description & Summary

At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide proactive solutions to safeguard sensitive data.

In threat intelligence and vulnerability management at PwC, you will focus on identifying and analysing potential threats to an organisation's security, as well as managing vulnerabilities to prevent cyber attacks. You will play a crucial role in safeguarding sensitive information and enabling the resilience of digital infrastructure.

*Why PWCAt PwC, you will be part of a vibrant community of solvers that leads with trust and creates distinctive outcomes for our clients and communities. This purpose-led and values-driven work, powered by technology in an environment that drives innovation, will enable you to make a tangible impact in the real world. We reward your contributions, support your wellbeing, and offer inclusive benefits, flexibility programmes and mentorship that will help you thrive in work and life. Together, we grow, learn, care, collaborate, and create a future of infinite experiences for each other. Learn more about us.At PwC, we believe in providing equal employment opportunities, without any discrimination on the grounds of gender, ethnic background, age, disability, marital status, sexual orientation, pregnancy, gender identity or expression, religion or other beliefs, perceived differences and status protected by law. We strive to create an environment where each one of our people can bring their true selves and contribute to their personal growth and the firm’s growth. To enable this, we have zero tolerance for any discrimination and harassment based on the above considerations.

Job Description & Summary: In-depth knowledge and hands-on experience in VAPT , including:  Web Application Vulnerability Assessment & Penetration Testing, Mobile Application Vulnerability Assessment & Penetration Testing , API and Network Penetration Testing, Cloud Security, Network Security, SOC Monitoring and Incident management.

Responsibilities:

Vulnerability Assessment and Penetration Testing (VA/PT)

  • Conduct VAPT Program Management including Remediation and Closure Management
  • Conduct secure configuration review
  • Conduct/ Manage Secure Code review
  • Conduct/ Manage API secure testing
  • Conduct/ Manage VA/PT for new web/ app development
  • Conduct/ Manage Application Security
  • Conduct/ Manage Red Teaming
  • Conduct/ Manage DevSec/DevSecOps
  • Conduct/ Manage Patch Management

Mandatory skill sets:

VAPT

  • In-depth knowledge of security issues, exploitation techniques and remediation measures.
  • Hands-on Experience in Vulnerability Assessments & Penetration Testing (Automated + Manual) on business critical assets ( IP,Web,Mobile,API and AWS)
  • Hands-on experience with well-known security tools BurpSuite, Nessus, Nmap, Accunetix, Metasploit Netsparker, Qualys etc
  • Understanding of web application security vulnerabilities (OWASP Top 10), including XSS, SQL injection, CSRF, and others.
  • Strong knowledge of network security concepts, firewalls, VPNs, IDS/IPS, and TCP/IP protocols.
  • Familiarity with mobile security vulnerabilities in iOS and Android platforms, including reverse engineering, mobile app testing, and OWASP Mobile Security Project.
  • Strong written and verbal communication skills for delivering clear, concise security reports and presenting findings to stakeholders.

Preferred skill sets:

  • Strong organizational, teamwork, multitasking & time management skills.
  • Outstanding communication abilities. Ability to effectively communicate the required recommendations.

Years of experience required:

  • 4+ Years

Education qualification:

  • Minimum Qualification: BE/ BTech

Education (if blank, degree and/or field of study not specified)

Degrees/Field of Study required: Bachelor of Engineering, Bachelor of Technology

Degrees/Field of Study preferred:

Certifications (if blank, certifications not specified)

Required Skills

Burp Suite, Nessus Vulnerability Scanner, Structured Query Language (SQL)

Optional Skills

Teamwork

Desired Languages (If blank, desired languages not specified)

Travel Requirements

Available for Work Visa Sponsorship?

Government Clearance Required?

Job Posting End Date

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0
Category: Compliance Jobs

Tags: Android APIs Application security AWS Burp Suite Clearance Clearance Required Cloud CSRF DevSecOps Firewalls Governance IDS iOS IPS Metasploit Mobile security Monitoring Nessus Network security Nmap OWASP Pentesting Qualys Red team Reverse engineering Risk management SOC SQL SQL injection Strategy TCP/IP Threat intelligence VPN Vulnerabilities Vulnerability management XSS

Perks/benefits: Career development

Region: Asia/Pacific
Country: India

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.