- Home
- Jobs
- BAE Systems
- Security Analyst VAPT & Penetration Testing
Security Analyst VAPT & Penetration Testing
Job Description Roles & Responsibilities The candidate will be responsible for conducting comprehensive Vulnerability Assessment and Penetration Testing (VAPT) across enterprise IT environments, applications, networks, infrastructure, cloud platforms and security systems. Key Responsibilities Conduct internal and external penetration testing across networks, servers, firewalls, endpoints and infrastructure. Perform web application and API penetration testing, including testing against OWASP vulnerabilities. Conduct vulnerability assessments and manually validate identified vulnerabilities and false positives. Perform controlled exploitation to determine the actual impact and severity of identified security weaknesses. Conduct security testing of network devices, firewalls, routers, switches, VPNs, load balancers and servers. Perform application security testing covering authentication, authorization, session management, input validation, encryption and business-logic vulnerabilities. Conduct source-code security reviews and support SAST/DAST activities. Assess security of cloud environments and operating systems. Perform security assessments using tools such as Burp Suite, Nmap, Nessus, Metasploit, Wireshark and Kali Linux. Develop or automate penetration-testing/security activities using Python. Prepare detailed penetration-testing and vulnerability-assessment reports containing evidence, risk ratings, business impact and remediation recommendations. Work with technical teams to remediate identified vulnerabilities. Conduct retesting and validation after remediation. Follow established penetration-testing methodologies and cybersecurity best practices. Support security teams in identifying attack vectors and improving the organization s overall security posture. Required Technical Skills Strong hands-on knowledge of: Vulnerability Assessment & Penetration Testing (VAPT) Network Penetration Testing Web Application Penetration Testing API Security Testing Infrastructure Security Testing Cloud Security Testing Vulnerability Exploitation & Validation OWASP Top 10 SAST & DAST Source-Code Security Analysis Secure Coding Practices Network & Operating System Security Python/Security Automation Burp Suite Nmap Nessus Metasploit Wireshark Kali Linux Requirements Standards / Framework Knowledge The candidate should have good knowledge of relevant cybersecurity standards and methodologies, including: OWASP NIST ISO/IEC 27001 PCI DSS Penetration-testing methodologies and security best practices Company Industry IT - Software Services Department / Functional Area Equipment Operations - MachineCraneForklift Keywords Security Analyst VAPT & Penetration Testing Get real-time job updates only on our App
Ready to apply?
You are viewing this role on JobSphere AI. Applications are completed on the original employer / source website.
Apply NowOpens the employer's site in a new tab
- CompanyBAE Systems
- LocationQatar
- CategoryCybersecurity
- SourceNaukrigulf
- Listed3 days ago
Related Cybersecurity jobs
Senior System Engineer
Design, implement, and manage enterprise-grade Windows Server environments, including Active Directory, DNS, DHCP, Group Policy, File Services, and Identity…
Project Manager - Cloud Applications
Manage SaaS application deployment and integration initiatives. Manage cloud application migration, rollout, and adoption projects. Coordinate Microsoft Azure…
Cloud Engineer - Officer
The role will be responsible for managing, maintaining, and enhancing our AWS and OCI environments while ensuring high availability, security, and operational…
IT and Project Manager
ROLE SUMMARY We are looking for an experienced Project Manager to lead the end-to-end delivery of technology and digital projects. You will act as the bridge…