Team Lead: VAPT & DevSecOps

Role Overview:

You will lead the technical security front for our software house, ensuring that our applications and infrastructure are resilient against attacks. You will bridge the gap between development and security, ensuring that the SDLC is inherently secure.

Role & Responsibilities:

  • Full-Stack Penetration Testing: Lead VAPT cycles for web, mobile, and cloud-native applications.
  • DevSecOps & SDLC: Coordinate with DevOps to embed automated security (SAST/DAST) into CI/CD pipelines. You must ensure security gates are enforced throughout the Software Development Life Cycle.
  • Red Teaming: Conduct adversary simulations to test the organization’s detection and response capabilities.
  • Remediation Guidance: Provide developers with technical “how-to” fixes for identified vulnerabilities.

Requirements:

  • Mandatory Certifications: OSCP (Offensive Security Certified Professional) or CRT (CREST Registered Tester).
  • Technical Skills: Expert in Kali Linux, Burp Suite, and secure code review.
  • Education: Bachelor’s/Master’s in Computer Science or Cybersecurity.
  • Focus: Offensive Security, CI/CD Integration, and Technical Testing.

Experience: 5 years
Job Category: Infosecurity
Job Type: Full Time
Job Location: Karachi

Apply for this position

Allowed Type(s): .pdf, .doc, .docx