Expert Penetration Tester Needed
Budget: ₹5,000 – ₹10,000 INR
Project Description:
We are hiring a penetration testing expert to execute a manual-first Vulnerability Assessment & Penetration Testing (VAPT) engagement as part of a pilot project with a fast-growing development agency.
The engagement may covers 1 or more of the following areas:
Web Applications
APIs
Mobile Apps (Android/iOS)
Cloud Infrastructure (AWS/GCP)
This is a hands-on, short-term project with the potential to scale into regular backend audit delivery work under our cybersecurity brand VyomaSec.
Scope (Select Based on Assignment):
1 web app (10–15 endpoints)
REST APIs (token-secured, 10–15 endpoints)
Android APK or iOS IPA testing (basic DAST/SAST)
Cloud IAM & configuration audit (up to 2 cloud accounts)
Responsibilities:
Perform deep manual testing (no scan-and-dump approach)
Identify exploitable vulnerabilities based on OWASP Top 10, SANS 25
Create a professional-grade PDF report with:
CVSS scoring
Reproducible POCs
Visuals/screenshots
Clear remediation guidance
Align testing to ISO 27001, PCI-DSS, SOC2 principles
Retesting after patching (if required)
Ideal Skills:
Experience with Burp Suite, ZAP, MobSF, Postman, AWS IAM tools
Ability to handle compliance-focused VAPT
Reporting experience for enterprise clients
Clear communication, confidentiality, deadline adherence
We are hiring a penetration testing expert to execute a manual-first Vulnerability Assessment & Penetration Testing (VAPT) engagement as part of a pilot project with a fast-growing development agency.
The engagement may covers 1 or more of the following areas:
Web Applications
APIs
Mobile Apps (Android/iOS)
Cloud Infrastructure (AWS/GCP)
This is a hands-on, short-term project with the potential to scale into regular backend audit delivery work under our cybersecurity brand VyomaSec.
Scope (Select Based on Assignment):
1 web app (10–15 endpoints)
REST APIs (token-secured, 10–15 endpoints)
Android APK or iOS IPA testing (basic DAST/SAST)
Cloud IAM & configuration audit (up to 2 cloud accounts)
Responsibilities:
Perform deep manual testing (no scan-and-dump approach)
Identify exploitable vulnerabilities based on OWASP Top 10, SANS 25
Create a professional-grade PDF report with:
CVSS scoring
Reproducible POCs
Visuals/screenshots
Clear remediation guidance
Align testing to ISO 27001, PCI-DSS, SOC2 principles
Retesting after patching (if required)
Ideal Skills:
Experience with Burp Suite, ZAP, MobSF, Postman, AWS IAM tools
Ability to handle compliance-focused VAPT
Reporting experience for enterprise clients
Clear communication, confidentiality, deadline adherence