IT Serve Qatar
Vulnerability Assessment and Penetration Testing Analyst
IT Serve QatarQatar2 hours ago
Full-timeQuality Assurance

We require VAPT Engineer specializing in Vulnerability Management.

You will play a critical role in identifying and mitigating vulnerabilities across our platforms. You will work closely with various departments to ensure network security and conduct proactive measures to protect our advanced digital infrastructure.


Key Responsibilities

  • Assist with security assessments of applications, cloud, and network environments.
  • Support vulnerability identification, risk analysis, and documentation.
  • Research and summarize emerging cybersecurity practices and trends.
  • Contribute to draft reports and recommendations.
  • Collaborate with team members on internal and client-focused initiatives.
  • Create/Update hardening documents and build audit file for automated testing.
  • Creating and updating reports from automated and manually gathered data


Skills & Knowledge Required

  • Full understanding of networking and operating systems (Linux/Windows).
  • Awareness of common security issues and frameworks.
  • Familiarity with tools such as Nmap, Burp Suite, Wireshark, Nessus/OpenVAS.
  • CEH (EC-Council) certification are highly preferred.


Candidate should have experience in Infrastructure Vulnerability Management

·      Practical experience with Linux and Windows operating systems

·      Working knowledge of ORACLE DB, MS SQL DB, MYSQL DB & Network Devices

·      Knowledge of secure configuration and hardening of systems

·      Knowledge of patching programs of major hardware/software manufacturers

·      Ability to analyse vulnerabilities to appropriately characterize threats and provide remediation advice. Familiarity with classes of vulnerabilities, appropriate remediation, and industry-standard classification schemes (CVE, CVSS, CPE).


·      Preferred: Script writing (Nessus Audit Policy / Python/Ruby)

·      Preferred: Security solutions technologies such as IPS, firewalls, endpoint protection, web/email filtering, DLP, Digital rights management, encryption, SEIM, and virtualization platforms

·      Preferred: Security related professional certification (e.g. CISSP, CISA, CISM, CRISC, CEH, LPT)


Competencies /Expertise Required (Functional & Behavioral)

Systematic problem-solving skills, with the ability to think.

Excellent in analytical thinking for translating data into informative visuals and reports.

Adaptable to change.

Key Skills

Ranked by relevance