← Back to jobs
BBugbusterslabs

Jr Security Engineer

Bugbusterslabs

Chennai
Full-Time
0-3 Years experience

Description

Company Description

Bugbusterslabs empowers organizations to protect their digital assets and create a safer online ecosystem by connecting ethical hackers, security researchers, and organizations worldwide through a trusted and innovative bug bounty platform. Bugbusterslabs offers a cutting-edge cybersecurity service that aids in identifying and addressing security vulnerabilities in digital assets. Our advanced solutions include Bug Bounty Platform, Penetration Testing Service, External Attack Surface Management, Red Teaming services, and Dark Web Monitoring. We aim to provide solutions that enhance security, efficiency, and productivity in today's ever-changing digital landscape.

Role Description

This is a full-time hybrid role for a Cyber Security Specialist based in Chennai, with some work from home flexibility. The Cyber Security Specialist will be responsible for conducting penetration tests, managing external attack surfaces, and monitoring the dark web for potential threats. Daily tasks include assessing and addressing security vulnerabilities, implementing security measures to protect digital assets, collaborating with ethical hackers and security researchers, and developing strategic security initiatives for clients.

Key Responsibilities

1. Security Operations

  • Monitor and analyze security alerts from SIEM, IDS/IPS, firewalls, and EDR tools.
  • Investigate and respond to incidents following established IR playbooks.
  • Perform malware analysis and triage suspected compromises.

2. Vulnerability Management

  • Conduct regular Vulnerability Assessments and Penetration Testing (VAPT) on web apps, APIs, and infrastructure.
  • Track and validate remediation through patch management and configuration hardening.
  • Use automated scanners (Nessus, OpenVAS, Nuclei, Burp Suite, etc.) and manual testing methods.

3. Threat Detection and Response

  • Develop and tune detection rules and correlation logic in SIEM/SOAR platforms (e.g., Splunk, Azure Sentinel, QRadar).
  • Contribute to threat intelligence correlation (MITRE ATT&CK, TTP mapping).
  • Simulate and analyze Red Team and Purple Team exercises.

4. Secure Architecture and Hardening

  • Review configurations for network devices, cloud workloads (AWS, Azure, GCP), and endpoints.
  • Implement security baselines (CIS Benchmarks, STIGs, NIST 800-53).
  • Support zero-trust and IAM strategies (MFA, PAM, RBAC).

5. Compliance and Governance

  • Assist in maintaining compliance with ISO 27001, SOC 2, PCI DSS, CERT-In, and GDPR.
  • Participate in audits, risk assessments, and policy reviews.
  • Document security processes and maintain asset inventories.

6. Security Automation and AI Integration

  • Integrate AI/ML models for anomaly detection, phishing simulations, and log analysis (e.g., using tools such as Mistral or Sentinel AI).
  • Support automated triaging workflows through SOAR or n8n pipelines.

Qualifications

  • Application Security and Cybersecurity skills
  • Network Security and Information Security skills
  • Experience in managing and mitigating cyber threats
  • Strong analytical and problem-solving skills
  • Excellent written and verbal communication skills
  • Ability to work independently and in a team environment
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field
  • Relevant certifications, such as CISSP, CEH, or equivalent, are a plus
  • Experience in ethical hacking or penetration testing is advantageous

Requirements

  • Education: B.Tech / B.E / MCA / M.Sc (Information Security, Computer Science, or related).

  • Experience: 2–6 years in Cybersecurity / Security Engineering / VAPT roles.

  • Certifications (preferred):

    • CEH / OSCP / GPEN / CompTIA Security+ / AZ-500 / CISSP (optional but valued).
  • Technical Skills:

    • Proficiency in Kali Linux, Burp Suite, Wireshark, Nmap, and Metasploit.
    • Familiarity with scripting (Python, PowerShell, or Bash).
    • Cloud Security understanding (AWS IAM, Azure Defender, GCP Security Command Center).
    • Good understanding of web app vulnerabilities (OWASP Top 10) and CVSS scoring.
  • Soft Skills:

    • Strong analytical and communication abilities.
    • Self-driven, with the ability to operate under minimal supervision.
    • Attention to detail and a continuous learning mindset.

Benefits

Compensation
Competitive salary with annual performance bonuses Health & Wellness Comprehensive medical insurance (employee + family), mental wellness program, and annual health check-up. Professional Growth Access to online courses (TryHackMe, HackTheBox, Coursera), internal CTFs, and sponsored conferences (BlackHat, BSides, c0c0n). Work Flexibility Hybrid work options, flexible hours, and optional WFH setup. Leave Policy 20 annual leaves + 10 public holidays + 5 wellness days. Rewards & Recognition "Security Champion of the Month" award, bug bounty participation rewards, and spot bonuses for threat detection. Career Path Growth into roles such as Senior Security Engineer, Threat Analyst, or Red Team Lead within 18–24 months based on performance.

About Bugbusterslabs

-

Industry: no-mentionEmployees: 5+Website