Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
JobTailor Logo

See all jobs on JobTailor

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Sophos

Senior Penetration Testing Analyst

Sophos

Senior penetration testing analyst conducting application and network security assessments for Sophos, a global cybersecurity provider. Producing client reports, leading security reviews, and researching emerging threats.

Posted 9/8/2026full-timeRemote • 🇮🇳 IndiaSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates extensive experience in application security assessments, penetration testing, and vulnerability analysis, with proficiency in tools such as Nmap, Metasploit, and Burp Suite. Strong technical communication and problem-solving skills are essential for effectively collaborating with clients and delivering comprehensive security reports.

Highest-signal resume keywords
Penetration TestingNmapMetasploitCEH CertificationOWASP Top 10

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Application Security AssessmentsExploitation TestingVulnerability AnalysisTCP/IP NetworkingSQLHigh-Level Languages
Soft Skills
Technical CommunicationAnalytical SkillsProblem-Solving Skills
Tools & Technologies
Kali LinuxBurp SuiteNetSparkerAppScan
Certifications & Qualifications
CEHWAPTGPENGWAPTGAWNOSCP
Industry Keywords
Web ApplicationsMobile ApplicationsAPI ApplicationsSecurity Assessment ReportsCommon Vulnerabilities

Tech Stack

Tools & technologies
LinuxSQLTCP/IP

About the role

Key responsibilities & impact
  • Conduct application security assessments for web, mobile, and API applications, or network penetration testing assessments
  • Use off-the-shelf and internally developed exploitation tools for manual testing and advanced attacks
  • Produce and deliver professional security assessment reports containing vulnerability and exploit information
  • Lead client conference calls, including project kick-off, high/critical finding notifications, and close-out reviews
  • Review test findings, evidence, reproduction steps, and remediation recommendations with clients
  • Perform proactive research to identify and understand new threats, vulnerabilities, and exploits
  • Conduct exploitation testing and document findings for client remediation
  • Work independently and as part of a larger team
  • Travel up to 10% may be required
  • Perform other essential duties as assigned

Requirements

What you’ll need
  • Typically 6+ years of related professional experience with a Bachelor’s degree; or 5+ years with a Master’s degree; or 3+ years with a PhD; or equivalent experience
  • Minimum of 4 years of experience with penetration testing
  • Minimum of 4 years of experience with at least one of Nmap, Metasploit, Kali Linux, or Burp Suite
  • Offensive certifications such as CEH, WAPT, GPEN, GWAPT, GAWN, or OSCP
  • Knowledge of NetSparker and AppScan is desirable
  • Knowledge of Microsoft Windows/Linux operating system administration and internals is desirable
  • Experience with application attack vectors, security test processes, and common vulnerabilities such as OWASP Top 10
  • Technical understanding of TCP/IP networking
  • Bachelor of Science degree in Computer Science, Computer Engineering, Electrical Engineering, or a related technical field; or equivalent professional experience
  • Working knowledge of SQL and high-level languages
  • Strong written and verbal technical communication skills
  • Strong analytical and problem-solving skills
  • Legal authorization to work in India without employer sponsorship

Benefits

Comp & perks
  • Remote-first working model
  • Employee-led diversity and inclusion networks
  • Annual charity and fundraising initiatives
  • Volunteer days
  • Global employee sustainability initiatives
  • Global fitness and trivia competitions
  • Global wellbeing days
  • Monthly wellbeing webinars and training
  • Recruitment and selection adjustments available to support candidates with disabilities or other needs