ApplySarthi Match jobs to your CV

Penetration Testing Analyst 3

Jobgether

Make my CV for this job, freeView job and applyYour CV, rewritten for this role using only your real experience. Sign in with Google and upload your CV. Nothing to install.

Skills named in this job

Read from the description itself, not inferred.

This role on the market

19 open penetration roles across 13 companies are on ApplySarthi right now, most of them in Bengaluru (1).

What penetration roles keep asking for: Penetration testing (63%), Python (37%), Java (32%), LLMs (26%), AWS (21%), Go (21%), Docker (16%), Kubernetes (16%) — counted across their open postings here.

Linux jobs · Penetration testing jobs

Jobgether has 3,942 open roles listed here.

Counted across 14 company job boards, updated as roles open and close.

Preparing for this interview

Interviews for penetration roles keep coming back to Penetration testing, Python, Java, LLMs. Practise those questions before you sit with Jobgether.

Questions you are likely to be asked

  1. Why do you want to join Jobgether?
  2. What is your experience with Penetration testing? Tell me one thing you learned the hard way.
  3. Tell me about a serious bug you caught before release. How did you find it?
  4. What would you automate first, and what would you keep manual?
  5. How do you write a bug report that a developer can act on straight away?

Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.

Practise the Penetration Testing Analyst 3 at Jobgether interview free →

Accountabilities: Coordinate testing readiness activities, documentation, schedules, dependencies, and information across business, client, and project teams. Act as a primary point of contact for testing readiness, communicating engagement status and resolving or escalating readiness issues as required. Use project management tools to track key tasks, responsibilities, timelines, dependencies, and engagement status. Identify, troubleshoot, and escalate project or technical issues to management when appropriate. Conduct penetration testing and security assessments in one or more areas, including web applications, mobile applications, APIs, external networks, or internal networks. Perform manual security testing and advanced exploitation using established penetration testing tools as well as internally developed or self-developed tooling. Research emerging threats, vulnerabilities, exploits, and attack techniques to strengthen assessment capabilities. Conduct exploitation testing and document technical findings, evidence, impact, reproduction steps, and remediation recommendations. Prepare professional security assessment reports that clearly communicate vulnerabilities and exploit information to clients. Lead client-facing calls throughout engagements, including readiness and troubleshooting sessions, project kick-offs, high- and critical-finding notifications, and close-out reviews. Explain technical findings, evidence, attack paths, and remediation recommendations clearly to technical and non-technical stakeholders. Take ownership of new challenges and identify opportunities to improve engagement quality and add value to client outcomes. Work effectively as both an independent contributor and a collaborative member of a broader security team. Participate in other security and project activities as required. Support occasional travel of up to approximately 10%. Requirements 3+ years of professional information security experience , including at least 3 years of hands-on penetration testing experience. Practical experience with at least one major penetration testing platform or tool such as Nmap, Metasploit, Kali Linux, or Burp Suite . Experience conducting penetration testing in either application security or network security; experience across both areas is advantageous. For application security, familiarity with web, mobile, or API testing, authentication mechanisms, application attack vectors, and common vulnerabilities such as those covered by the OWASP Top 10. For network security, understanding of external and internal penetration testing, TCP/IP networking, network appliances, firewalls, WAFs, IDS/IPS, proxies, and network-access validation tools. Strong understanding of Linux and familiarity with Windows operating systems, administration, and relevant internals. Ability to research unfamiliar vulnerabilities and attack techniques and translate that knowledge into practical testing approaches. Strong client-facing communication skills, both written and verbal, with the ability to explain complex security findings clearly. Excellent analytical, troubleshooting, and problem-solving capabilities. Strong organizational skills, attention to detail, and the ability to manage multiple priorities and engagement activities. Self-directed and proactive approach, with the ability to work independently while contributing effectively to a collaborative team. Professional, accountable, and delivery-focused mindset with a strong commitment to quality. Ability to learn quickly and adapt in a fast-paced cybersecurity environment. Offensive security certifications such as CEH, WAPT, GPEN, GWAPT, GAWN, OSCP , or comparable credentials are desirable. Experience with Nmap scanning, web application authentication, operating system internals, and security testing methodologies is advantageous. Legal authorization to work in India without requiring employer sponsorship. Benefits Remote-first working model with the opportunity to work remotely from India. Opportunity to conduct real-world penetration testing and identify vulnerabilities across diverse client environments. Exposure to application security, network security, threat intelligence, vulnerability research, and advanced exploitation techniques. Direct interaction with clients throughout security assessment engagements. Opportunity to continuously develop offensive security skills through research into emerging vulnerabilities and attack methods. Collaboration with experienced cybersecurity professionals in a global and technically focused environment. Employee-led diversity and inclusion networks supporting community, education, and advocacy. Annual charity, fundraising, and employee volunteer initiatives. Global sustainability initiatives supporting environmental responsibility. Global fitness and trivia activities. Dedicated wellbeing days and monthly wellbeing webinars and training. Inclusive workplace committed to equal opportunity and fair treatment. Support for reasonable adjustments during the recruitment and selection process where needed.

Match this job to your CV

ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.

Check my match →

Similar open roles

Need answers during your interview? Try Live Sarthi.

Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.

Try Live Sarthi free →

A Windows app, from the same team as ApplySarthi.

Listed on lever · posted 2026-09-23. ApplySarthi collects openings and links to application pages; the role is advertised by Jobgether, not by us.