Security Consultant II (Web Application Penetration Tester)

NetSPI

NetSPI

IT
India Ā· Pune, Maharashtra, India
Posted on Nov 19, 2025

Security Consultant II (Web Application Penetration Tester)

Pune, MH (Hybrid)

NetSPIĀ® pioneered Penetration Testing as a Service (PTaaS) and leads the industry in modern pentesting. Combining world-class security professionals with AI and automation, NetSPI delivers clarity, speed, and scale across 50+ pentest types, attack surface management, and vulnerability prioritization. The NetSPI platform streamlines workflows and accelerates remediation, enabling our experts to focus on deep dive testing that uncovers vulnerabilities others miss. Trusted by the top 10 U.S. banks and Fortune 500 companies worldwide, NetSPI has been driving security innovation since 2001.

NetSPI is on an exciting growth journey as we disrupt and improve the proactive security market. We are looking for individuals with a collaborative, innovative, and customer-first mindset to join our team. Learn more about our award-winning workplace culture and get to know our A-Team at www.netspi.com/careers.

Join the mission as a Security Consultant II. We are seeking a skilled expert and detail-oriented Penetration Tester to conduct thorough security assessments, identify vulnerabilities, and provide expert recommendations to strengthen our clients' security posture. You will be responsible for performing Web Application Penetration Testing, in addition to competencies in problem solving, client service, written/verbal communication, and project execution. You will work to deliver clear, actionable reports and contribute to the development of security best practices.

Responsibilities:

  • Perform web and mobile application penetration tests
  • Create and deliver penetration test reports to clients
  • Collaborate with clients to create remediation strategies that will help improve their security posture
  • Research and develop innovative techniques, tools, and methodologies for penetration testing services
  • Help define and document internal, technical, and service processes and procedures
  • Contribute to the community through the development of tools, presentations, white papers, and blogs

Minimum Qualifications:

  • Bachelor’s degree or higher, preferred with a concentration in Computer Science, Engineering, Math, or IT, or equivalent experience
  • 2-4 years of experience with Application Security and/or Penetration Testing
  • Familiarity with offensive and defensive IT concepts
  • Knowledge of Linux and/or Windows administration

Preferred Qualifications:

  • Programming experience in one or more of the following languages: Ruby, Python, Perl, C, C++, Java, and C#
  • Strong communication and writing skills
  • GXPN, GPEN, OSCP, CISSP, GWAPT or similar certifications

We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law.