{"id":1285672,"url":"https://alion.io/job/sisainfosec-network-security-engineer","title":"Network Security Engineer","company":{"id":2278839,"name":"Sisainfosec","domain":"sisainfosec.com","url":"https://alion.io/company/sisainfosec","size_band":null,"is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":null,"truth_index":null},"role":"Security","role_family":"Security","seniority":"senior","employment_type":null,"work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Bengaluru, India"],"countries":["IN"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":19500,"max_usd":43000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":12},"experience_years_min":7,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Active Directory","optional":false},{"name":"AWS","optional":false},{"name":"Azure","optional":false},{"name":"BloodHound","optional":false},{"name":"C++","optional":false},{"name":"Cobalt Strike","optional":false},{"name":"Covenant","optional":false},{"name":"Evilginx2","optional":false},{"name":"GCP","optional":false},{"name":"GoPhish","optional":false},{"name":"Hashcat","optional":false},{"name":"Havoc","optional":false},{"name":"IAM","optional":false},{"name":"Impacket","optional":false},{"name":"Metasploit","optional":false},{"name":"Mimikatz","optional":false},{"name":"MITRE ATT&CK","optional":false},{"name":"Mythic","optional":false},{"name":"Nessus","optional":false},{"name":"NetExec","optional":false},{"name":"Nmap","optional":false},{"name":"Pacu","optional":false},{"name":"PowerShell","optional":false},{"name":"Prowler","optional":false},{"name":"Python","optional":false},{"name":"Red Teaming","optional":false},{"name":"Responder","optional":false},{"name":"ScoutSuite","optional":false},{"name":"Sliver","optional":false},{"name":"Wireshark","optional":false},{"name":"Docker","optional":true},{"name":"Kubernetes","optional":true}],"status":"live","first_seen_at":"2026-08-13T04:49:06Z","employer_posted_date":null,"last_verified_at":"2026-08-13T04:49:06Z","board_verified":false,"closed_at":null,"days_open":48,"trust":{"level":"not_scored","repost_count":null,"flags":[],"days_open":48},"description":"Experience : 7 - 10 years.\n\nLocation : Bangalore.\n\nEmployment Type : Full-time.\n\nRole Summary :\n\nWe are looking for a senior offensive security professional with strong expertise in red team operations, adversary emulation, black-box network penetration testing, cloud penetration testing, phishing simulations, C2 operations, and custom exploit development.\n\nThe role requires hands-on capability to simulate real-world attacker behavior, develop attack paths, bypass security controls in authorized environments, and deliver high-quality technical findings with practical remediation guidance.\n\nKey Responsibilities :\n\n- Lead red team, adversary emulation, black-box network, cloud, and infrastructure penetration testing engagements.\n\n- Plan and execute attack scenarios covering reconnaissance, initial access, exploitation, privilege escalation, lateral movement, persistence, and objective-based actions.\n\n- Use adversary emulation platforms and C2 frameworks such as Cobalt Strike, Sliver, Mythic, Havoc, Metasploit, and similar tools in authorized assessments.\n\n- Design and execute phishing simulation campaigns, payload delivery scenarios, and initial access simulations.\n\n- Perform custom exploit development, exploit modification, payload customization, and proof-of-concept development for identified vulnerabilities.\n\n- Conduct Active Directory and hybrid identity attack simulations, including credential attacks, lateral movement, privilege escalation, and domain compromise scenarios.\n\n- Perform cloud penetration testing across AWS, Azure, and GCP, focusing on IAM abuse, exposed assets, storage misconfigurations, insecure networking, excessive permissions, and privilege escalation paths.\n\n- Assess endpoint, network, identity, cloud, and email security controls from an attackers perspective.\n\n- Support purple team and detection validation exercises by mapping techniques to MITRE ATT&CK.\n\n- Prepare detailed reports covering attack chains, exploited weaknesses, business impact, evidence, and remediation recommendations.\n\n- Present findings and attack narratives to technical teams, leadership, and client stakeholders.\n\n- Mentor junior team members and contribute to red team playbooks, tooling, labs, and methodologies.\n\nRequired Skills :\n\n- Strong hands-on expertise in red teaming, adversary emulation, black-box testing, network penetration testing, and cloud pentesting.\n\n- Practical experience with C2 and adversary emulation platforms such as Cobalt Strike, Sliver, Mythic, Havoc, Metasploit, Covenant, or similar frameworks.\n\n- Experience in phishing simulations, payload delivery, social engineering assessments, and initial access simulation.\n\n- Ability to perform custom exploit development, exploit chaining, payload customization, and proof-of-concept creation.\n\n- Strong knowledge of Active Directory attack techniques, including Kerberoasting, AS-REP roasting, NTLM relay, pass-the-hash, pass-the-ticket, delegation abuse, ACL abuse, and domain escalation paths.\n\n- Good understanding of cloud attack techniques across AWS, Azure, and GCP, including IAM abuse, storage exposure, metadata service abuse, key leakage, role assumption, and privilege escalation.\n\n- Experience with tools such as BloodHound, Mimikatz, Impacket, NetExec/CrackMapExec, Responder, Evilginx, GoPhish, Nmap, Masscan, Nessus, Burp Suite, Wireshark, Hashcat, Hydra, Pacu, Prowler, ScoutSuite, AzureHound, ROADtools etc.\n\n- Scripting and automation skills in Python, PowerShell, Bash, Go, or C/C++.\n\n- Good understanding of OPSEC, payload handling, evasion concepts, attack path mapping, and detection-aware testing.\n\n- Strong reporting, stakeholder communication, and client-facing skills.\n\nGood to Have :\n\n- Experience with EDR/AV evasion testing in authorized environments.\n\n- Experience with malware analysis, reverse engineering, or implant customization.\n\n- Exposure to Kubernetes, Docker, and container security assessments.\n\n- Experience conducting purple team exercises and detection engineering support.\n\n- Certifications such as OSCP, OSEP, GPEN, GXPN, PNPT, eCPPT or CEH.\nSkills\nSecurity, Network Security, Network Infrastructure, Penetration Testing, Active Directory, Nessus, WIRESHARK, Vulnerability Management, Cloud Testing, OSCP","description_format":"text","description_chars":4257,"description_truncated":false,"requirements":{"experience_years_min":7,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Network Security"],"lifecycle":[{"event":"open","at":"2026-09-26T04:00:00Z"}],"liveness":{"score":7,"band":"cold","label":"Long shot","p_open":0.4,"p_active":0.524,"p_room":0.35,"age_days":47,"expected_fill_days":23,"reasons":["seen:47","velocity","win:tail"],"computed_at":"2026-09-29T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/sisainfosec-network-security-engineer","json_url":"https://alion.io/job/sisainfosec-network-security-engineer.json","meta":{"generated_at":"2026-09-30T05:30:20Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":3859,"day_limit":5000,"remaining_today":1141,"minute_limit":60,"resets_at":"2026-10-01T00:00:00Z"}}}