Skip to main content
TRACK DOSSIER · JOB OPENINGREF: CM/JOB/PENETRATION-

Penetration Tester Job — Always Hiring

Penetration Tester Job in Delhi at CryptoMize

Penetration Tester jobs in Delhi at CryptoMize are open on a rolling, always-hiring basis — client demand for web, Android, and network pentesting runs continuously across our security practice, and we staff ahead of it. This is a full-time, permanent position with immediate joining, based at our New Delhi HQ, executing authorized offensive-security engagements for clients who need to know what a determined adversary would actually reach. Below is the complete posting: the responsibilities, the requirements, the seniority ladder, and the selection process. Testers whose findings developers thank them for should read to the end.

01The actual work

What will you actually do as a Penetration Tester at CryptoMize?

Run commissioned test engagements from kickoff to close: scope confirmation, test windows, communication protocol, and the daily check-ins clients on live systems require

Attack web applications the way a real intruder would: map the attack surface, chain the weak points, and demonstrate impact with controlled proof — never destruction

Test mobile builds on real devices: storage exposure, interception points, weak certificate pinning, and the trust decisions an app makes about its own server

Probe internal networks from a foothold: privilege paths, trust relationships, and the route from one compromised workstation to the crown jewels

Write the report the client's engineers will actually work from: reproduction steps, evidence captures, severity with rationale, and fixes that name the file to change

Return for verified retests: confirm each fix holds, close what holds, and escalate what was patched in name only

Test the human protocol too — authorized phishing simulations and physical-entry checks where the engagement's rules permit

02Capability profile

What skills and tools does a Penetration Tester need?

Engagement management on live client systems — communication protocol, windows, rollback triggersAttack-surface mapping before touching anythingChained exploitation demonstrated with controlled proofMobile assessment on real devicesInternal privilege-path probing from a footholdEngineer-readable reporting — reproduction, evidence, named fixesVerified-retest disciplineAuthorized phishing and physical-entry simulation where scope permitsTool judgment — proxy suites, exploit frameworks, custom scripts each in their right placeScope obedience (absolute — the authorization is the job)Clearance eligibility and client-trust verificationTeaching testers the craft through engagement review
Burp Suite Professional (web application testing)Nmap (reconnaissance and enumeration)Metasploit Framework (exploitation)Kali Linux toolchainWireshark (traffic analysis)Custom Python/Bash tooling for engagement-specific needs
Depth of demonstrated skill in the specific role disciplineClassification and scope of the client engagement the role supportsUrgency and time-sensitivity of active project requirementsTrack record built across CryptoMize engagements

Also known as: pen testing jobs · pentester vacancy · ethical hacker · security tester

03Seniority ladder

Penetration Tester — seniority path at CryptoMize

Tester progression follows engagement quality — the findings you produced, the clients who requested you back, and the juniors you leveled up. The ladder below is how the security practice is actually organized.

  1. Penetration Tester

    Owns full-cycle assessments on assigned engagements, with report sign-off and client-facing findings duties.

    1/4
  2. Senior Penetration Tester

    Leads multi-platform engagements, defines rules of engagement, reviews all findings, and mentors testers and interns.

    2/4
  3. Red Team Lead

    Runs the offensive-security capability — adversary simulation programs, methodology standards, and engagement staffing across the practice.

    3/4
  4. Security Practice Principal

    The crossover track: testers who graduate into principal-level client counsel across the five domains, defending infrastructure at strategy altitude.

    4/4

04The engagement surface

CryptoMize work a Penetration Tester touches

Every role plugs into live engagements across the five Penta-P domains — these are the services your work feeds.

05Answers, searchable

Penetration Tester Job — frequently asked questions

ADemonstrated offensive-security capability — engagements or lab work you can walk through with your methodology and findings — advanced web-application skills, and network/AD attack-path competence.

Certifications (OSEP/OSCP/CEH-class) are signals, not substitutes.

AYes — full-time at our New Delhi HQ, with remote and on-site client assessment travel as engagements require.
AThis posting targets experienced testers; freshers enter through the 6-month Penetration Tester Internship, which is the primary conversion channel into these roles.
AThe ladder runs Penetration Tester → Senior Penetration Tester → Red Team Lead, with a Security Practice Principal track for testers who grow into client counsel.

Advancement follows engagement quality, not tenure.

ACompensation is discussed at screening and depends on demonstrated skill, engagement classification, urgency, and track record.

We do not publish figures — each offer is built individually.

AApplication, a practical assessment (a scoped range engagement with report), and a panel interview with the Red Team Lead plus a practice principal.

Typical cycle: two to three weeks.

Page source — machine-readable summary

Facts: Location: New Delhi (HQ) · Employment: full-time permanent · Availability: immediate, rolling intake · Compensation: discussed at screening.

Q: What are the requirements for Penetration Tester jobs at CryptoMize?
A: Demonstrated offensive-security capability — engagements or lab work you can walk through with your methodology and findings — advanced web-application skills, and network/AD attack-path competence. Certifications (OSEP/OSCP/CEH-class) are signals, not substitutes.

Q: Are the Penetration Tester job openings in Delhi?
A: Yes — full-time at our New Delhi HQ, with remote and on-site client assessment travel as engagements require.

Q: Is there a pen testing vacancy for freshers?
A: This posting targets experienced testers; freshers enter through the 6-month Penetration Tester Internship, which is the primary conversion channel into these roles.

Q: What is the career growth for a Penetration Tester at CryptoMize?
A: The ladder runs Penetration Tester → Senior Penetration Tester → Red Team Lead, with a Security Practice Principal track for testers who grow into client counsel. Advancement follows engagement quality, not tenure.

Q: What is the salary for a Penetration Tester at CryptoMize?
A: Compensation is discussed at screening and depends on demonstrated skill, engagement classification, urgency, and track record. We do not publish figures — each offer is built individually.

Q: How does the selection process work?
A: Application, a practical assessment (a scoped range engagement with report), and a panel interview with the Red Team Lead plus a practice principal. Typical cycle: two to three weeks.

Signal keywordspenetration tester·jobs·delhi·careers