CareerScanCareerScan
JobsCompanies
BlogContact
For Employers
Sign InRegister Free
CareerScanCareerScan

India's verified job platform connecting candidates directly with employers. 100% free applications with instant ATS resume scoring.

Chennai, Bengaluru & Hyderabad
Jobs by location
Jobs in ChennaiJobs in BengaluruJobs in HyderabadJobs in PuneJobs in Mumbai
Popular roles
AR Caller JobsHealthcare Medical CodingReact / Full Stack DeveloperData & Power BI AnalystCustomer Support Executive
Top companies
TCS CareersCognizant JobsInfosys OpeningsApollo HospitalsOmega Healthcare
Career services
Free ATS Resume CheckerAI Resume Builder (Free)AI Job MatcherSalary Guide & BenchmarksJob Alerts on WhatsApp
© 2026 CareerScan India. All rights reserved.256-bit SSL encrypted & verified
Back to all jobs
  1. Home
  2. Jobs
  3. Web Application & Infrastructure Penetration Tester
Oxford University Press
Oxford University Press

Web Application & Infrastructure Penetration Tester

India
Full-time
Posted 5d ago
0 views
Actively Hiring Urgent Opening Direct 1-Click Apply

Check Your Resume Match Score

Scan your resume against ATS criteria for this Web Application & Infrastructure Penetration Tester role at Oxford University Press.

Apply for this position

Apply on Company Website Email: [email protected]
Notice a broken link or wrong info?

Job Description

Job Title

Web Application & Infrastructure Penetration Tester

  • Department: Cyber Security

  • Location: Remote

About the Role

Introduction

At Oxford University Press, we are passionate about advancing learning, education, and research worldwide. As a Cyber Security & Resilience Testing Specialist, you will play a critical role in protecting our digital platforms, services, and data while supporting our mission to make a positive impact through education.

This is an exciting opportunity for an experienced penetration testing professional to join a collaborative and highly skilled Cyber Security team. You will work across a diverse technology landscape, testing modern web applications, APIs, cloud services, mobile applications, and supporting infrastructure. The role offers exposure to a variety of technologies and security challenges, allowing you to continuously develop your expertise while helping strengthen OUP's security posture.

If you are naturally curious, enjoy solving complex security challenges, and are passionate about offensive security and continuous learning, this role offers the opportunity to make a tangible impact across the organisation.

Opportunity

As a Cyber Security & Resilience Testing Specialist, you will:

  • Conduct comprehensive penetration testing activities across web applications, APIs, cloud-native services, mobile applications, and supporting infrastructure.
  • Identify, exploit, validate, and document security vulnerabilities, particularly those aligned to the OWASP Top 10 framework.
  • Perform Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) to identify insecure coding practices and runtime vulnerabilities.
  • Assess API security, including authentication, authorisation, and data exposure risks.
  • Conduct security testing of iOS and Android mobile applications and their supporting backend services.
  • Produce high-quality technical reports that clearly communicate findings, risks, and practical remediation recommendations.
  • Collaborate with development, infrastructure, and business teams to support remediation activities and improve security outcomes.
  • Contribute to the enhancement of security testing methodologies, standards, and best practices across the organisation.
  • Support the development of OUP's cyber resilience capabilities through proactive identification and management of security risks.

Impact

This role is essential in helping OUP identify and address security weaknesses before they can be exploited. Your expertise will directly contribute to protecting business-critical systems, sensitive information, digital products, and services used by learners, educators, researchers, and employees around the world. Through your work, you will help strengthen organisational resilience and support the delivery of secure and trusted digital experiences.

About You

Essential Criteria

  • Demonstrable experience conducting manual and automated penetration testing of modern web applications and supporting infrastructure.

  • Strong knowledge of application security principles and vulnerability assessment techniques.

  • Deep understanding of the OWASP Top 10 and experience identifying, exploiting, validating, and reporting vulnerabilities across all categories.

  • Experience testing applications developed using technologies such as:

    • .NET / ASP.NET
    • Java / Spring
    • Node.js
    • Python frameworks
    • PHP frameworks
    • React, Angular, Vue.js, and other JavaScript front-end technologies
    • REST and GraphQL APIs
    • Single Page Applications (SPAs)
  • Experience performing API security assessments.

  • Strong written and verbal communication skills, with the ability to present technical findings to both technical and non-technical audiences.

  • Experience using industry-standard security testing tools, including:

    • Kali Linux
    • Nmap
    • Burp Suite Professional

Desirable Criteria

  • Experience with additional security testing tools such as:

    • OWASP ZAP
    • JWT Toolkits
    • ffuf
    • Dirb, GoBuster, Feroxbuster
    • Metasploit
    • CrackMapExec / NetExec
    • WPScan
    • CMSMap
    • SQLMap
    • Nuclei
    • Wafw00f / LBD
  • Experience conducting mobile application security testing across iOS and Android platforms.

  • Degree in Computer Science, Information Security, or a related discipline.

  • Industry certifications such as OSCP, CEH, CISSP, or equivalent.

Key Attributes

  • Naturally inquisitive, with a desire to investigate beyond the obvious and gain deeper understanding of systems and risks.
  • Analytical and methodical approach to solving complex problems.
  • Ability to translate technical security concepts into practical business-focused recommendations.
  • Strong stakeholder engagement and communication skills.
  • Adaptable, proactive, and committed to continuous professional development.
  • Self-motivated with a focus on delivering high-quality outcomes.

Queries

Please contact [email protected] with any queries relating to this role. To ensure a smooth application process, please submit your CV through the application link rather than via email.

Diversity & Inclusion

We are committed to supporting diversity in our workforce and ensuring an inclusive environment where all individuals can thrive. We seek to employ a workforce representative of the markets that we serve and encourage applications from all backgrounds.

Salary

Dependent on skills and experience.

Key Requirements & Skills

  • Demonstrable experience conducting manual and automated penetration testing of modern web applications and supporting infrastructure
  • Strong knowledge of application security principles and vulnerability assessment techniques
  • Deep understanding of the OWASP Top 10 and experience identifying, exploiting, validating, and reporting vulnerabilities across all categories
  • Experience testing applications built with .NET/ASP.NET, Java/Spring, Node.js, Python, PHP frameworks, and JS front-end technologies (React, Angular, Vue.js), including SPAs
  • Experience testing REST and GraphQL APIs
  • Experience performing API security assessments (authentication, authorisation, data exposure)
  • Experience using industry-standard security testing tools: Kali Linux, Nmap, Burp Suite Professional
  • Strong written and verbal communication skills, able to present findings to technical and non-technical audiences
  • Experience with additional tools: OWASP ZAP, JWT Toolkits, ffuf, Dirb/GoBuster/Feroxbuster, Metasploit, CrackMapExec/NetExec, WPScan, CMSMap, SQLMap, Nuclei, Wafw00f/LBD
  • Experience conducting mobile application security testing across iOS and Android platforms
  • Degree in Computer Science, Information Security, or a related discipline
  • Industry certifications such as OSCP, CEH, CISSP, or equivalent

Frequently Asked Questions

How to apply for Web Application & Infrastructure Penetration Tester at Oxford University Press?

Click the "Apply on Company Website" button on this page to submit your application directly on the employer's official portal.

What is the salary for this role?

Salary details will be discussed during the interview.

What experience is required?

This position is open to freshers and experienced candidates.

Is this position still open?

Yes, currently active and accepting applications.

ApplicationActively Hiring
Apply on Company Website
Send Email Application
Broken link or expired?
Oxford University Press

Oxford University Press

Oxford University Press moves knowledge and learning forward. Discover our products, services, and latest thinking in education and research.

Visit Company Website

More jobs at Oxford University Press

Junior Web Application & Infrastructure Penetration Tester

India

Senior Area Manager, Sales

Noida, Uttar Pradesh

Web Application & Infrastructure Penetration Tester

Noida Sector 62, Noida, Uttar Pradesh

Share this Opening

Job Alerts for security

Receive email alerts whenever new security roles in India are posted.

Set Free Alert →

Similar Openings

Explore related active roles in security

View all
UrgentActively Hiring
Doppel
Product Security
Doppel Verified
7+ years
₹12.1L – ₹13.8L/mo
US Remote
securityFull-timeRemote
Posted 19h ago
Apply Now
UrgentActively Hiring
Immersivelabs
Solutions Consultant (Cyber Security) - Portugal
Immersivelabs Verified
2+ years
₹1,245/mo
Portugal
securityFull-time
Posted 19h ago
Apply Now
UrgentActively Hiring
Teciem
Job Role – IAM and PAM Security Lead
Teciem Verified
8+ years
Salary not disclosed
TCMi - Bengaluru
securityFull-time
Posted 19h ago
Apply Now

Web Application & Infrastructure Penetration Tester

Oxford University Press · India

Apply on Company Website