🔔 FCM Loaded

Security Consultant (VAPT & Red Teaming)

CLA Global Indus Value Consulting

3 - 5 years

Mumbai

Posted: 31/01/2026

Getting a referral is 5x more effective than applying directly

Job Description

We Are Hiring: Security Consultant (VAPT & Red Teaming)


CLA Indus Value Consulting is looking for a skilled Security Consultants to join our team in Mumbai . If you have a passion for uncovering vulnerabilities and simulating real-world attacks to strengthen defences, we want to hear from you!


Role Overview

As a Security Consultant, you will perform comprehensive security assessments across web applications, APIs, Mobile Applications and networks. You will play a pivotal role in delivering actionable insights and remediation strategies to our clients.


  • Experience: 3 - 5 Years
  • Location: Mumbai (Onsite)
  • Core Focus: VAPT, Red Teaming, and Infrastructure Security


Key Responsibilities

  • Vulnerability Assessment: Conduct VAPT on web apps, APIs, Mobile Applications and infrastructure to identify weaknesses.
  • Exploitation: Perform manual and automated testing using industry-standard tools to simulate real-world attacks.
  • Reporting: Analyse findings and prepare detailed reports with risk ratings, PoCs, and remediation plans.
  • Collaboration: Work with internal teams and clients to prioritize and implement security fixes.
  • Mentorship: Participate in knowledge-sharing and help train junior team members.


Technical Skills & Toolset

  • Web, API & Mobile Application Security : Deep expertise in OWASP Top 10 (Web & Mobile), API security risks, and secure coding practices.
  • Network Security : Proficiency in scanning, enumerating, and exploiting network services and protocols.
  • Red Teaming : Hands-on experience with MITRE ATT&CK TTPs, including lateral movement, persistence, and privilege escalation.
  • Tools : Strong proficiency with Burp Suite, Nessus, Metasploit, Nmap, SQLmap, mobile testing tools, C2 frameworks (Cobalt Strike), and Wireshark.


Qualifications

  • Education: Bachelors or masters degree in CS, IT, or a related field.
  • Certifications (mandatory): OSCP, OSEP, OSWE, PNPT, CRTO, CRTP, CRTE, ECPPT, or CPTS.


Good to Have

Proven bug bounty track record, strong rankings on Hack the Box / TryHackMe, conference speaking experience, and recognition through Hall of Fame listings or security appreciations.

Services you might be interested in

Improve Your Resume Today

Boost your chances with professional resume services!

Get expert-reviewed, ATS-optimized resumes tailored for your experience level. Start your journey now.