About the Role
We are looking for a Cybersecurity & Development Engineer who can work across both cybersecurity and software development. The ideal candidate should be comfortable understanding security vulnerabilities, performing security assessments, developing security-focused applications and tools, and automating repetitive security processes.
This role is ideal for someone who enjoys working at the intersection of Application Security, VAPT, Automation, APIs, Web Development, and Security Engineering.
You will work closely with cybersecurity and engineering teams to build internal tools, automate security workflows, develop security solutions, and help identify and remediate vulnerabilities across applications and infrastructure.
Key ResponsibilitiesCybersecurity
- Perform Vulnerability Assessment and Penetration Testing (VAPT) for web applications, APIs, networks, and other technology environments.
- Identify, validate, and document security vulnerabilities.
- Understand common vulnerabilities including OWASP Top 10, API Security risks, authentication/authorization issues, injection vulnerabilities, XSS, SSRF, IDOR, misconfigurations, etc.
- Conduct basic security testing using tools such as Burp Suite, Nmap, Nessus/OpenVAS, OWASP ZAP, Metasploit, and similar security tools.
- Analyze vulnerability findings and provide practical remediation recommendations.
- Assist with application security assessments and secure code reviews.
- Support security automation and integration of security testing into development workflows.
- Stay updated with emerging vulnerabilities, attack techniques, security tools, and industry best practices.
Software Development
- Develop internal cybersecurity tools, dashboards, scripts, APIs, and automation solutions.
- Build integrations between security tools, APIs, databases, and internal systems.
- Develop automation for vulnerability discovery, validation, reporting, monitoring, and remediation workflows.
- Write clean, maintainable, and secure code.
- Develop backend services and APIs where required.
- Work with frontend technologies to create security dashboards and internal interfaces.
- Integrate third-party security APIs and platforms.
- Debug, test, and improve existing security applications and automation workflows.
Security Automation & DevSecOps
- Automate repetitive cybersecurity activities using scripting and programming.
- Develop security checks that can be integrated into CI/CD pipelines.
- Assist in implementing DevSecOps practices.
- Integrate SAST, DAST, dependency scanning, secrets detection, and other security tools into development workflows.
- Build automated security reporting and notification systems.
- Work with Git-based development workflows and version control.
Required Technical SkillsCybersecurity
- Strong understanding of VAPT methodologies.
- Knowledge of OWASP Top 10 and API security.
- Understanding of web application architecture and common attack vectors.
- Familiarity with Burp Suite.
- Basic-to-intermediate experience with tools such as:
- Nmap
- Nessus / OpenVAS
- OWASP ZAP
- Metasploit
- Wireshark
- Understanding of HTTP/HTTPS, TCP/IP, DNS, authentication, authorization, sessions, cookies, APIs, and common web technologies.
- Ability to understand vulnerability reports and security findings.
Development
Strong programming knowledge in at least one of the following:
- Python
- JavaScript / TypeScript
- Node.js
- Java
- PHP
- Go
Experience with:
- REST APIs
- JSON
- Git/GitHub/GitLab
- SQL and databases
- Authentication mechanisms such as JWT/OAuth
- Web application development
- API integration
- Automation and scripting
Preferred Skills
- React / Next.js or similar frontend frameworks
- Node.js / Python backend development
- Docker
- Linux
- AWS / Azure / GCP
- CI/CD pipelines
- PostgreSQL / MySQL / MongoDB
- Redis or similar caching systems
- Security automation
- SAST / DAST / SCA
- Secure SDLC
- DevSecOps
What We're Looking For
We are looking for someone who can think like a security researcher and build like a software engineer.
The candidate should:
- Have strong problem-solving and analytical skills.
- Be comfortable switching between cybersecurity assessments and development tasks.
- Be able to understand vulnerabilities at both the technical and code level.
- Have an interest in security automation and tooling.
- Be willing to research unfamiliar technologies and attack techniques.
- Write secure and maintainable code.
- Be able to independently troubleshoot technical issues.
- Communicate security findings clearly to both technical and non-technical stakeholders.
Education & Experience
- Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field is preferred.
- 1–4 years of experience in cybersecurity, software development, application security, or a related technical role.
- Candidates with strong practical projects, cybersecurity labs, GitHub repositories, CTF experience, or relevant certifications may also be considered.
Preferred Certifications
Any of the following would be an advantage:
- CEH
- eJPT
- OSCP
- Security+
- PNPT
- API Security / AppSec certifications
- Cloud Security certifications
Certifications are not mandatory if the candidate demonstrates strong practical skills.
Key Performance Areas
The successful candidate will be expected to contribute to:
- VAPT and application security assessments
- Security tooling and automation
- Internal cybersecurity platforms
- Security dashboards and reporting systems
- API and software integrations
- DevSecOps implementation
- Vulnerability management workflows
- Secure software development
- Continuous improvement of cybersecurity processes
Why Join Us?
- Work on real-world cybersecurity projects.
- Gain hands-on exposure to both offensive security and software engineering.
- Build cybersecurity tools and automation used in practical security operations.
- Work across VAPT, AppSec, DevSecOps, automation, APIs, and security engineering.
- Opportunity to develop both cybersecurity and engineering expertise.
- Work in a technically challenging environment where security and development intersect.
Pay: ₹25,000.00 - ₹30,000.00 per month
Benefits:
Work Location: In person