-
PwC India
View all jobs
IN-Associate _ VAPT SOC _Managed Services_ Advisory _Mumbai
India
· Full-time
·
Not Applicable
Line of Service
Advisory
Industry/Sector
FS X-Sector
Specialism
Risk
Management Level
Associate
Job Description & Summary
A career within Cybersecurity and Privacy services, will provide you with the opportunity to help our clients implement an effective cybersecurity programme that protects against threats, propels transformation, and drives growth. As companies pivot toward a digital business model, exponentially more data is generated and shared among organisations, partners and customers. We play an integral role in helping our clients ensure they are protected by developing transformation strategies focused on security, efficiently integrate and manage new or existing technology systems to deliver continuous operational improvements and increase their cybersecurity investment, and detect, respond, and remediate threats.
At PwC, we believe in providing equal employment opportunities, without any discrimination on the grounds of gender, ethnic background, age, disability, marital status, sexual orientation, pregnancy, gender identity or expression, religion or other beliefs, perceived differences and status protected by law. We strive to create an environment where each one of our people can bring their true selves and contribute to their personal growth and the firm’s growth. To enable this, we have zero tolerance for any discrimination and harassment based on the above considerations. "
Preferred Knowledge/Skills:
Requirement Criteria
"vapt" and ("oscp" or "EJPT" or "OSWE" or "CPENT" or "GPEN" or "GWAPT" or "OSCE") and security and "Penetration Testing" and mobile
Preferred Skill Sets
ISO
Years Of Experience Required
5+ Years
Education Qualification
BE, B.tech, ME, M.tech, MCA, (non mechanical)
Education (if blank, degree and/or field of study not specified)
Degrees/Field of Study required: Master of Engineering, Bachelor of Engineering
Degrees/Field Of Study Preferred
Certifications (if blank, certifications not specified)
Required Skills
SoCs
Optional Skills
Accepting Feedback, Accepting Feedback, Active Listening, Agile Methodology, Azure Data Factory, Communication, Cybersecurity, Cybersecurity Framework, Cybersecurity Policy, Cybersecurity Requirements, Cybersecurity Strategy, Emotional Regulation, Empathy, Encryption Technologies, Inclusion, Intellectual Curiosity, Managed Services, Optimism, Privacy Compliance, Regulatory Response, Security Architecture, Security Compliance Management, Security Control, Security Incident Management, Security Monitoring {+ 3 more}
Desired Languages (If blank, desired languages not specified)
Travel Requirements
Not Specified
Available for Work Visa Sponsorship?
No
Government Clearance Required?
No
Job Posting End Date
Advisory
Industry/Sector
FS X-Sector
Specialism
Risk
Management Level
Associate
Job Description & Summary
A career within Cybersecurity and Privacy services, will provide you with the opportunity to help our clients implement an effective cybersecurity programme that protects against threats, propels transformation, and drives growth. As companies pivot toward a digital business model, exponentially more data is generated and shared among organisations, partners and customers. We play an integral role in helping our clients ensure they are protected by developing transformation strategies focused on security, efficiently integrate and manage new or existing technology systems to deliver continuous operational improvements and increase their cybersecurity investment, and detect, respond, and remediate threats.
- Why PWC
At PwC, we believe in providing equal employment opportunities, without any discrimination on the grounds of gender, ethnic background, age, disability, marital status, sexual orientation, pregnancy, gender identity or expression, religion or other beliefs, perceived differences and status protected by law. We strive to create an environment where each one of our people can bring their true selves and contribute to their personal growth and the firm’s growth. To enable this, we have zero tolerance for any discrimination and harassment based on the above considerations. "
- Job Description & Summary: In-depth knowledge of application development processes and at least one programming and one scripting language (e.g., Java, Scala, C#, JavaScript, Angular, ReactJs, Ruby, Perl, Python, Shell).
- Knowledge on OS security (Windows, Unix/Linux systems, Mac OS, VMware), network security and cloud security.
Preferred Knowledge/Skills:
Requirement Criteria
- Graduation in EC or CS or IT or Information Security or Cyber Security or MCA.
- Working experience as a Penetration Testing Expert for 5 year(s)
- Hands on experience with security testing frameworks such as the PTES, OWASP, OSSTMM, SANS.
- In-depth knowledge of application development processes and at least one programming and one scripting language (e.g., Java, Scala, C#, JavaScript, Angular, ReactJs, Ruby, Perl, Python, Shell).
- Knowledge on OS security (Windows, Unix/Linux systems, Mac OS, VMware), network security and cloud security.
- Hands on experience in BurpSuite, Nessus, Checkmarx, Acunetix and Kali Linux penetration testing tools etc.
- Knowledge on Threat Modelling, Source Code Reviews, Secure Architecture Reviews
- One of the certifications – OSWE/OSCP/OSCE/eJPT/CPENT- ECCouncil /LPT(Licensed Penetration Tester-ECCouncil)/GPEN(GIAC Penetration Tester)/ GWAPT(GIAC Web Application Penetration Tester) is mandatory (preferably OSCP)
- Security testing of mobile applications, web applications, APIs etc.
- Perform SAST, DAST & VAPT with new standards from time to time. Review sufficient security controls are in place as per, but not limited to, client's policy, industry best practice/process and regulatory requirements.
- Identify the Individual Application security risk portfolio / threats. Gaps identified along with recommendations to be submitted in Customized reports as requested by client.
- Review of API/middleware/SFTP etc. interfaces between applications.
- Develop/Review Baseline document for OS/Application Security/ API.
- Review the security architecture of various applications deployed/to be deployed (including cloud based) and assess risk associated and suggest mitigation & resolution.
- Evaluation/Security Assessment of open-source applications.
- Vetting of Network and data flow Diagrams, with respect to security aspect, for new applications, in co-ordination with the vendors and clients.
- Review application architecture, data flow diagram, network diagram, database configuration, crypto standards.
- Perform Application threat modeling.
- Gap assessment of the Cloud applications, solutions, platforms, process to fill the gaps.
- Minimum Qualification: BE/ BTech/MBA/Mtech/MCA (Non Mechanical)
- Postgraduates in any stream would be preferred (not mandatory)
"vapt" and ("oscp" or "EJPT" or "OSWE" or "CPENT" or "GPEN" or "GWAPT" or "OSCE") and security and "Penetration Testing" and mobile
Preferred Skill Sets
ISO
Years Of Experience Required
5+ Years
Education Qualification
BE, B.tech, ME, M.tech, MCA, (non mechanical)
Education (if blank, degree and/or field of study not specified)
Degrees/Field of Study required: Master of Engineering, Bachelor of Engineering
Degrees/Field Of Study Preferred
Certifications (if blank, certifications not specified)
Required Skills
SoCs
Optional Skills
Accepting Feedback, Accepting Feedback, Active Listening, Agile Methodology, Azure Data Factory, Communication, Cybersecurity, Cybersecurity Framework, Cybersecurity Policy, Cybersecurity Requirements, Cybersecurity Strategy, Emotional Regulation, Empathy, Encryption Technologies, Inclusion, Intellectual Curiosity, Managed Services, Optimism, Privacy Compliance, Regulatory Response, Security Architecture, Security Compliance Management, Security Control, Security Incident Management, Security Monitoring {+ 3 more}
Desired Languages (If blank, desired languages not specified)
Travel Requirements
Not Specified
Available for Work Visa Sponsorship?
No
Government Clearance Required?
No
Job Posting End Date
Key Skills
Ranked by relevance
cybersecurity
cloud
penetration testing
network security
javascript
angular
reactjs
python
vmware
scala
java
ruby
perl
c
cyber security
kali linux
nessus
linux
owasp
oscp
Related Jobs
3 roles aligned with this opportunity
View Job Details
Related
Cybersecurity Consultant
2026-05-28
Full-time
Associate
Belgium
Business Consulting
Consulting
View Job Details
Related
Kotlin Developer
2026-05-27
Full-time
Mid-Senior
India
Business Consulting
Quality Assurance
View Job Details
Related
Software Engineer
2026-05-27
Full-time
Mid-Senior
India
Business Consulting
Information Technology
Login to Apply
- Posted
- Apr 26, 2025
- Type
- Full-time
- Level
- Not Applicable
- Location
- Mumbai
- Company
- PwC India
Industries
Business Consulting
Services
Categories
Other
Related Jobs
3 roles aligned with this opportunity
View Job Details
Related
Cybersecurity Consultant
2026-05-28
Full-time
Associate
Belgium
Business Consulting
Consulting
View Job Details
Related
Kotlin Developer
2026-05-27
Full-time
Mid-Senior
India
Business Consulting
Quality Assurance
View Job Details
Related
Software Engineer
2026-05-27
Full-time
Mid-Senior
India
Business Consulting
Information Technology