
Security Testing Engineer
Full Job Description
CGI is seeking a highly skilled Senior Test Engineer/Lead Analyst specializing in Security Testing. This is a full-time opportunity within our Software Development/Engineering category, operating on a general shift schedule. The role is hybrid, with opportunities in Bengaluru, Hyderabad, Chennai, Pune, and Mumbai. We are looking for a Penetration Tester to join our offensive security initiatives, requiring expertise in manual security testing, Burp Suite, and industry security standards. The ideal candidate will not only perform advanced penetration tests but also lead, mentor, and guide a team, define methodologies, and ensure alignment with compliance and risk management frameworks.
In this role, you will lead and conduct advanced manual penetration testing across web, mobile, APIs, cloud, and infrastructure. You will utilize Burp Suite Pro and other industry tools for vulnerability identification and exploitation. Key responsibilities include defining and improving penetration testing methodologies, managing and mentoring junior testers, serving as the primary contact for security testing engagements, and providing strategic recommendations on risk remediation and secure development practices.
You will align testing practices with frameworks such as OWASP ASVS v5, OWASP Top 10 (2021), NIST 800-115, ISO/IEC 27001/27002, and PCI DSS. Participation in threat modeling, red/blue team activities, and adversary simulations is expected. You will also prepare executive-level reports and present findings to stakeholders, staying current with emerging threats and innovations.
Required qualifications include 3+ years of experience in penetration testing, advanced manual testing and exploitation skills, and proficiency in Burp Suite Pro and tools like Metasploit, Nmap, and Nessus. Strong understanding of cloud security testing (AWS, Azure, GCP), secure SDLC, DevSecOps, and CI/CD integration is essential. Familiarity with scripting languages (Python, PowerShell, Bash, JavaScript) and demonstrated team leadership abilities are crucial. Excellent client communication and presentation skills are a must.
Soft skills include strong leadership, decision-making, and the ability to balance technical depth with business risk. You should possess excellent communication skills for both executive reporting and technical discussions, along with a collaborative mindset focused on mentoring and talent development.
Position ID: J0326-2373