Zybisys
Penetration Tester
Skills
Job description
Job Description Position - Penetration Tester Experience – 2-3 year Company - ZyBiSys Consulting Services LLP Location - Bangalore Role Overview As Penetration Tester Engineer, you will be responsible for simulating real-world cyberattacks to identify vulnerabilities, assess risks, and improve security defenses. You will work closely with security analysts, DevOps, and IT teams to enhance the organization's resilience against cyber threats. Key Roles & Responsibilities · Perform Web, API, Cloud, and Network penetration testing across FinTech infrastructures. · Conduct Red Team & adversary simulations (phishing, lateral movement, privilege escalation, persistence). · Execute cloud security assessments with focus on PCI DSS, SOC 2, ISO 27001. · Research, develop, and use custom exploits, scripts, and payloads. · Identify vulnerabilities, prepare exploit PoCs, and advise on remediation. · Deliver executive-level security reports and detailed technical findings. · Stay ahead of new exploits, malware tactics, and FinTech-specific attack surfaces. Required Skills Penetration Testing Tools: · Web & API: Burp Suite Pro, OWASP ZAP, Postman, sqlmap · Network: Nmap, Nessus, OpenVAS, Hydra, CrackMapExec · Exploitation: Metasploit, Cobalt Strike, Empire, Covenant · AD/Windows: BloodHound, Mimikatz, Rubeus, PowerView, SharpHound · Forensics/Monitoring: Wireshark, tcpdump, Zeek, Suricata Scripting & Programming: · Python, Bash, PowerShell (for exploit scripting & automation). Certifications (Preferred): · OSCP, OSWE, OSEP, CRTO, GPEN, CEH (Practical), eJPTv2. About Zybisys: At ZyBiSys, our success is driven by innovation and technical excellence. We deliver top-tier IT solutions and services, ensuring seamless connectivity and efficient infrastructure management for our clients. Additionally, we specialize in managing cybersecurity, information security, and compliance to safeguard our customers' digital environments.