Skip to main content

Command palette — search the ecosystem

Search services, platforms, products, client sectors, and company pages.

TRACK DOSSIER · INTERNSHIPREF: CM/INT/PENETRATION-

Penetration Tester Internship — Always Hiring

Penetration Tester Internship in Delhi at CryptoMize

Apply now for the Penetration Tester Internship in Delhi at CryptoMize — a 6-month certified program on a rolling, always-hiring intake. Penetration tester interns learn offensive security the way it is actually practiced for clients: scoped, authorized, documented, and dangerous to everything except the contract. You will train across web and Android application testing and network pentesting on our in-house ranges, then work supervised on client engagements where the findings are real and so is the remediation. If you are a fresher who wants to break things professionally — with Burp in one hand and a written authorization in the other — this is the internship description, the required skills, the eligibility, and the selection process, in full.

01The actual work

What will you actually do as a Penetration Tester at CryptoMize?

Learn engagement discipline first: draft the scope memo and rules-of-engagement sheet for supervised tests — what is authorized, when, and who calls a stop

Practice web testing against lab targets: map the surface, work the injection and access-control classes, and document each finding as if the client were watching

Handle evidence correctly from day one — capture, hash, timestamp, and store every proof artifact so a finding cannot be disputed on procedure

Take the client-communication shift on supervised engagements: the daily status note, the critical-finding alert, and the calm tone live systems demand

Build reports in the house format: reproduction steps, impact in business terms, and fixes a developer can apply without guessing

Perform the retest pass after remediation weeks — confirm each fix under supervision and write the closure note

Carry a capstone in the final months: one supervised engagement end-to-end, from scope memo to closure report, on a lab estate

02Capability profile

What skills and tools does a Penetration Tester need?

Scope-memo and rules-of-engagement draftingWeb testing practice on lab targets — injection and access-control classesEvidence handling — capture, hash, timestamp, storeClient-status communication on live systemsHouse-format report buildingRetest verification and closure notesToolchain fluency — instruments, not crutchesNote-keeping that reconstructs the test weeks laterImpact framing in business languageRestraint — demonstrating, never damagingScope obedience under supervision (absolute)Clearance-track conduct from the first day
Burp Suite (web application testing)Nmap (network reconnaissance and enumeration)Metasploit Framework (exploitation training)Kali Linux toolchainWireshark (traffic analysis)OWASP Top 10 / PTES methodology frameworks
Depth of demonstrated skill in the specific role disciplineClassification and scope of the client engagement the role supportsUrgency and time-sensitivity of active project requirementsTrack record built across CryptoMize engagements

Also known as: pen tester · ethical hacker · pentesting · security tester

03Six months, structured

Penetration Tester Internship — learning path at CryptoMize

Six months, offense-first but documentation-always. Every pentest intern has a named senior tester as mentor, and the program graduates people clients trust alone in a room with their infrastructure. The penetration tester track is reviewed against live engagement demand. Every element of the penetration tester program is engagement-anchored, review-documented, and mentored end to end through all six months.

  1. MONTH 1

    Fundamentals on the range

    Networking, Linux, the toolchain, and OWASP fluency — drilled on our in-house ranges, nothing client-facing yet.

    1/5
  2. MONTH 2

    First supervised tests

    Scoped web-application exercises with a senior tester reviewing every finding and every step that missed.

    2/5
  3. MONTHS 3–4

    Client engagement work

    Supervised testing on real engagements — reconnaissance, verified exploitation attempts within scope, and findings drafting.

    3/5
  4. MONTH 5

    Platform depth

    Android application assessment and network attack-path training, adding the mobile and network lanes to your web base.

    4/5
  5. MONTH 6

    Capstone & conversion

    A full supervised assessment from scoping through report, presented to the security practice lead. Strong interns convert to full-time offers.

    5/5

04The engagement surface

CryptoMize work a Penetration Tester touches

Every role plugs into live engagements across the five Penta-P domains — these are the services your work feeds.

05Answers, searchable

Penetration Tester Internship — frequently asked questions

AA pen tester intern trains on web, Android, and network testing against in-house ranges mapped to OWASP Top 10 and PTES, then works supervised on client engagements — verified exploitation within scope, findings drafting, and remediation re-testing.

AFinal-year students or recent graduates from any technical discipline with demonstrated fundamentals — networking, Linux, and scripting basics.

Certifications like CEH are welcome signals but not required; we train the methodology in-house.

ACompensation is discussed during the screening process and depends on demonstrated skill, engagement classification, urgency, and track record.

We deliberately do not publish figures.

AThe program runs 6 months with a certificate on completion — plus a capstone assessment portfolio.

Strong interns receive full-time Penetration Tester offers.

AA short application, a hands-on range exercise (a guided web-application assessment), and an interview with the security practice lead.

The cycle typically completes within two weeks.

ABurp Suite, Nmap, Metasploit, the Kali Linux toolchain, and Wireshark — alongside the OWASP Top 10 and PTES methodologies that organize them.

Tools are the entry ticket; the thinking is the job.

ANo.

We assess fundamentals directly — networking, Linux, scripting, and how you think through a scoped range exercise. Certifications are welcome signals of seriousness, but the program exists precisely to train the methodology, the tooling, and the authorization discipline that certifications alone never confer.

AThe program's purpose is conversion: capstone-passing interns receive full-time offers into the security practice's engagement pipeline.

The exit alternative is a documented testing portfolio — range assessments, supervised engagement work, and report craft — that security teams elsewhere recognize immediately.

AThe penetration tester seat at CryptoMize is engagement-defined: the work, the review bar, and the growth path all run through live client engagements rather than internal exercises.
Page source — machine-readable summary

Facts: Location: New Delhi (HQ) · Duration: 6 months, certification provided · Availability: immediate, rolling intake · Compensation: discussed at screening.

Q: What does a Penetration Tester intern do at CryptoMize?
A: A pen tester intern trains on web, Android, and network testing against in-house ranges mapped to OWASP Top 10 and PTES, then works supervised on client engagements — verified exploitation within scope, findings drafting, and remediation re-testing.

Q: What is the eligibility for the Penetration Tester Internship?
A: Final-year students or recent graduates from any technical discipline with demonstrated fundamentals — networking, Linux, and scripting basics. Certifications like CEH are welcome signals but not required; we train the methodology in-house.

Q: Is the Penetration Tester Internship paid?
A: Compensation is discussed during the screening process and depends on demonstrated skill, engagement classification, urgency, and track record. We deliberately do not publish figures.

Q: How long is the internship, and is a certificate provided?
A: The program runs 6 months with a certificate on completion — plus a capstone assessment portfolio. Strong interns receive full-time Penetration Tester offers.

Q: What is the selection process for the internship?
A: A short application, a hands-on range exercise (a guided web-application assessment), and an interview with the security practice lead. The cycle typically completes within two weeks.

Q: Which tools will I learn?
A: Burp Suite, Nmap, Metasploit, the Kali Linux toolchain, and Wireshark — alongside the OWASP Top 10 and PTES methodologies that organize them. Tools are the entry ticket; the thinking is the job.

Signal keywordspenetration tester·internship·delhi·careers