IN_Senior Associate_ Security Testing_Strategy & Governance_ Advisory_Mumbai
PWC
5 - 10 years
Mumbai
Posted: 3/19/2025
Job Description
Line of Service
AdvisoryIndustry/Sector
Not ApplicableSpecialism
RiskManagement Level
Senior AssociateJob Description & Summary
At PwC, our people in cybersecurity focus on protecting organisations from cyber threats through advanced technologies and strategies. They work to identify vulnerabilities, develop secure systems, and provide proactive solutions to safeguard sensitive data.In threat intelligence and vulnerability management at PwC, you will focus on identifying and analysing potential threats to an organisation's security, as well as managing vulnerabilities to prevent cyber attacks. You will play a crucial role in safeguarding sensitive information and enabling the resilience of digital infrastructure.
Job Description & Summary: In-depth knowledge and hands-on experience in VAPT , including: Web Application Vulnerability Assessment & Penetration Testing, Mobile Application Vulnerability Assessment & Penetration Testing , API and Network Penetration Testing, Cloud Security, Network Security, SOC Monitoring and Incident management.
Responsibilities:
Vulnerability Assessment and Penetration Testing (VA/PT)
- Conduct VAPT Program Management including Remediation and Closure Management
- Conduct secure configuration review
- Conduct/ Manage Secure Code review
- Conduct/ Manage API secure testing
- Conduct/ Manage VA/PT for new web/ app development
- Conduct/ Manage Application Security
- Conduct/ Manage Red Teaming
- Conduct/ Manage DevSec/DevSecOps
- Conduct/ Manage Patch Management
Mandatory skill sets:
VAPT
- In-depth knowledge of security issues, exploitation techniques and remediation measures.
- Hands-on Experience in Vulnerability Assessments & Penetration Testing (Automated + Manual) on business critical assets ( IP,Web,Mobile,API and AWS)
- Hands-on experience with well-known security tools BurpSuite, Nessus, Nmap, Accunetix, Metasploit Netsparker, Qualys etc
- Understanding of web application security vulnerabilities (OWASP Top 10), including XSS, SQL injection, CSRF, and others.
- Strong knowledge of network security concepts, firewalls, VPNs, IDS/IPS, and TCP/IP protocols.
- Familiarity with mobile security vulnerabilities in iOS and Android platforms, including reverse engineering, mobile app testing, and OWASP Mobile Security Project.
- Strong written and verbal communication skills for delivering clear, concise security reports and presenting findings to stakeholders.
Preferred skill sets:
- Strong organizational, teamwork, multitasking & time management skills.
- Outstanding communication abilities. Ability to effectively communicate the required recommendations.
Years of experience required:
- 4+ Years
Education qualification:
- Minimum Qualification: BE/ BTech
Education (if blank, degree and/or field of study not specified)
Degrees/Field of Study required: Bachelor of Engineering, Bachelor of TechnologyDegrees/Field of Study preferred:Certifications (if blank, certifications not specified)
Required Skills
Burp Suite, Nessus Vulnerability Scanner, Structured Query Language (SQL)Optional Skills
TeamworkDesired Languages (If blank, desired languages not specified)
Travel Requirements
Available for Work Visa Sponsorship?
Government Clearance Required?
Job Posting End Date
About Company
PricewaterhouseCoopers (PwC) is a global professional services firm providing audit, tax, and consulting services. PwC helps organizations manage financial risks, comply with regulations, and improve performance through its expertise in industries like finance, healthcare, and technology.
Services you might be interested in
One-Shot Campaign
Reach out to ideal employees in one shot!
The intelligent campaign for reaching out to the ideal audience to whom you can ask for help (guidance or referral).