Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Senior Test Engineer - Security Testing @ CGI

Home > Software Development






 Senior Test Engineer - Security Testing

Job Description

Role & responsibilities

Lead and perform advanced manual penetration testing across web, mobile, APIs, cloud, and infrastructure environments.
Utilize Burp Suite Pro and other industry-standard tools for vulnerability identification, exploitation, and reporting.
Define and improve penetration testing methodologies, processes, and best practices.
Manage and mentor junior testers, reviewing their findings and ensuring quality deliverables.
Act as primary point of contact for security testing engagements with clients and internal stakeholders.
Provide strategic recommendations on risk remediation and secure development practices.
Align testing practices with security frameworks, including:
o OWASP ASVS v5
o OWASP Top 10 (2021)
o NIST 800-115
o ISO/IEC 27001/27002
o PCI DSS (where applicable)
Participate in threat modeling exercises, red team/blue team activities, and adversary simulations.
Prepare and present executive-level reports and conduct stakeholder briefings.
Stay ahead of emerging threats, tools, and techniques, and introduce relevant innovations into the testing practice.


Preferred candidate profile

Must to have skills-

Penetration testing, DAST Testing, SAST Testing, OWASP top 10

  • Required Skills & Qualifications
    3+Years years of experience in penetration testing.
    Advanced skills in manual testing, exploitation techniques, and vulnerability chaining.
    Proficiency in Burp Suite Pro (all modules) and other tools such as Metasploit, Nmap, Nessus, etc.
    Strong understanding of cloud security testing (AWS, Azure, GCP).
    Experience in secure SDLC, DevSecOps, and integrating security testing into CI/CD pipelines.
    Familiarity with scripting/programming (Python, PowerShell, Bash, JavaScript, etc.).
    Demonstrated ability to mentor, coach, and lead teams.
    Excellent client communication and presentation skills.

Preferred Qualifications
Certifications such as OSCP, OSWE, OSEP, GXPN, GWAPT, GPEN, Burp Suite Certified Practitioner.
Experience with red teaming / purple teaming.
Knowledge of regulatory frameworks (NIS2, GDPR, HIPAA, MDR).
Proven track record of handling large-scale or complex penetration testing projects.

Soft Skills
Strong leadership and decision-making skills.
Ability to balance technical depth with business risk considerations.
Excellent communication skills (executive reporting + technical deep dives).
Collaborative mindset with a focus on mentoring and developing talent.

Good to have Skills- Python


Job Classification

Industry: IT Services & Consulting
Functional Area / Department: Engineering - Software & QA
Role Category: Software Development
Role: Software Development - Other
Employement Type: Full time

Contact Details:

Company: CGI
Location(s): Hyderabad

+ View Contactajax loader


Keyskills:   Security Testing DAST Testing Penetration Testing OWASP SAST Testing

 Fraud Alert to job seekers!

₹ -18 Lacs P.A

Similar positions

Senior Full Stack Developer

  • Seneca Global It
  • 8 - 12 years
  • Hyderabad
  • 2 days ago
₹ Not Disclosed

Walk-in || Java FSD

  • Tata Consultancy
  • 5 - 10 years
  • Bengaluru
  • 2 days ago
₹ Not Disclosed

Azure Databricks - 12th May (Tuesday) - Virtual Interview

  • Tata Consultancy
  • 4 - 9 years
  • Noida, Gurugram
  • 2 days ago
₹ Not Disclosed

Workato Integration Developer - 6th May- Virtual Interview

  • Tata Consultancy
  • 3 - 7 years
  • Hyderabad
  • 2 days ago
₹ Not Disclosed

CGI

CGI Information Systems and Management Consultants