Cybersecurity Analyst

Reposted 3 Days Ago
Be an Early Applicant
Bangalore, Bengaluru, Karnataka, IND
In-Office
Mid level
eCommerce • Other • Retail
The Role
Lead and perform manual and automated application- and network-layer penetration tests, triage bug-bounty reports, document and risk-rate findings, verify remediation, collaborate with third-party security teams, and ensure compliance with frameworks like PCI DSS and SOC.
Summary Generated by Built In

About Us 

As a Fortune 50 company with more than 400,000 team members worldwide, Target is an iconic brand and one of America's leading retailers. Joining Target means promoting a culture of mutual care and respect and striving to make the most meaningful and positive impact. Becoming a Target team member means joining a community that values different voices and lifts each other up. Here, we believe your unique perspective is important, and you'll build relationships by being authentic and respectful. 

  

Overview about TII  

At Target, we have a timeless purpose and a proven strategy. And that hasn’t happened by accident. Some of the best minds from different backgrounds come together at Target to redefine retail in an inclusive learning environment that values people and delivers world-class outcomes. That winning formula is especially apparent in Bengaluru, where Target in India operates as a fully integrated part of Target’s global team and has more than 4,000 team members supporting the company’s global strategy and operations.

Position Overview

The Penetration Tester at is a critical member of the Application Security team, focused on identifying, validating, and resolving security vulnerabilities across our cloud infrastructure and applications. You will lead technical security assessments, including application-layer and network-layer penetration testing, to ensure all information assets are secured against evolving threats. This role is vital for maintaining our security posture and ensuring remediation efforts are effectively prioritized and executed. 

Key Responsibilities 

  • Perform comprehensive manual and automated application-layer penetration tests to identify vulnerabilities, adhering to industry standards and internal methodologies. 

  • Conduct network-layer penetration tests encompassing all components supporting network functions and operating systems. 

  • Validate segmentation and scope-reduction controls at least annually and after any significant changes to ensure isolation of the Cardholder Data Environment (CDE). 

  • Triage and validate vulnerabilities reported through bug bounty program. 

  • Document and risk-rate all findings, providing actionable remediation guidance to engineering and product teams. 

  • Verify the correction of exploitable vulnerabilities through re-testing and post-remediation assessments. 

  • Collaborate with external 3rd party security firms on  penetration testing and threat hunting exercises. 

  • Ensure all security assessments and remediation activities meet compliance and regulatory obligations (e.g., PCI DSS, SOC). 

Qualifications 

  • Minimum of 4+ years of hands-on experience in penetration testing, ethical hacking, or application security engineering. 

  • Deep understanding of common web-based attacks (SQLi, XSS, CSRF, XXE, etc.) and how to mitigate them at the application level. 

  • Proficiency in scripting or programming languages such as Python, Go, Ruby, or Bash to automate security tasks. 

  • Comprehensive knowledge of network protocols and security concepts, including TCP/IP, DNS, HTTP/S, TLS, and IPSEC. 

  • Strong experience with security testing tools (e.g., BurpSuite Enterprise, SAST, DAST, and IAST). 

  • Working knowledge of OWASP security fundamentals and API identity/access management (OAuth 2.0, OIDC, JWT). 

  • Ability to work with high autonomy and communicate technical security findings clearly to both technical and non-technical audiences. 

  • Relevant information security certification(s) such as OSCP, CEH, OSWE, or CISSP. 

Bonus Qualifications 

  • Direct experience managing or triaging a public bug bounty program (e.g., HackerOne, BugCrowd). 

  • Experience leveraging Slack/ChatOps to automate security tasks or reporting. 

  • Experience with cloud orchestration and Infrastructure as Code (e.g., Terraform, Google Deployment Manager). 

  • Familiarity with containerization and orchestration tooling like Docker and Kubernetes. 

  • Knowledge of compliance frameworks such as ISO 27001, PCI DSS, SOC2, or CCPA. 

Know More About Us here: 

  • Life at Targethttps://india.target.com/ 

  • Benefitshttps://india.target.com/life-at-target/workplace/benefits 

  • Culture- https://india.target.com/life-at-target/belonging 

 

Skills Required

  • Minimum of 4+ years of hands-on experience in penetration testing, ethical hacking, or application security engineering.
  • Deep understanding of common web-based attacks (SQLi, XSS, CSRF, XXE) and mitigations.
  • Proficiency in scripting or programming languages such as Python, Go, Ruby, or Bash to automate security tasks.
  • Comprehensive knowledge of network protocols and security concepts, including TCP/IP, DNS, HTTP/S, TLS, and IPSEC.
  • Strong experience with security testing tools (e.g., BurpSuite Enterprise, SAST, DAST, IAST).
  • Working knowledge of OWASP security fundamentals and API identity/access management (OAuth 2.0, OIDC, JWT).
  • Ability to work with high autonomy and communicate technical security findings to technical and non-technical audiences.
  • Relevant information security certification(s) such as OSCP, CEH, OSWE, or CISSP.
  • Direct experience managing or triaging a public bug bounty program (e.g., HackerOne, BugCrowd).
  • Experience leveraging Slack/ChatOps to automate security tasks or reporting.
  • Experience with cloud orchestration and Infrastructure as Code (e.g., Terraform, Google Deployment Manager).
  • Familiarity with containerization and orchestration tooling like Docker and Kubernetes.
  • Knowledge of compliance frameworks such as ISO 27001, PCI DSS, SOC2, or CCPA.

Target Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Target and has not been reviewed or approved by Target.

  • Healthcare Strength Health benefits are accessible to hourly team members at relatively low hour thresholds and include no‑cost, 24/7 virtual medical care and expanded mental‑health support. This breadth is positioned as a relative strength compared to typical retail offerings.
  • Retirement Support Retirement programs include a dollar‑for‑dollar 401(k) match with immediate vesting and options like Roth 401(k) and stock purchase. These features strengthen long‑term savings for a wide range of roles.
  • Parental & Family Support Family support includes paid family leave, backup care, and reimbursements for adoption and surrogacy. These resources complement paid time off and holidays for eligible team members.

Target Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Minneapolis, MN
172,344 Employees

What We Do

Target is an American retailing company providing access to a wide selection of products such as furniture, electronics, toys, and more. Target is one of the world’s most recognized brands and one of America’s leading retailers. We make Target our guests’ preferred shopping destination by offering outstanding value, inspiration, innovation and an exceptional guest experience that no other retailer can deliver. Target is committed to responsible corporate citizenship, ethical business practices, environmental stewardship and generous community support. Since 1946, we have given 5 percent of our profits back to our communities. Our goal is to work as one team to fulfill our unique brand promise to our guests, wherever and whenever they choose to shop.

Similar Jobs

Smiths Group plc Logo Smiths Group plc

Cybersecurity Analyst

Aerospace • Security • Energy • Defense
In-Office
Bengaluru, Bengaluru Urban, Karnataka, IND
9512 Employees

PowerBridge Logo PowerBridge

Cybersecurity GRC Analyst

Information Technology • Professional Services
In-Office
Bengaluru North, Yelahanka, Bengaluru Urban, Karnataka, IND
141 Employees

PowerBridge Logo PowerBridge

Cybersecurity L1 SOC Analyst

Information Technology • Professional Services
In-Office
Bangalore, Bengaluru Urban, Karnataka, IND
141 Employees

Unisys Logo Unisys

Cybersecurity Sr. Analyst

Information Technology
In-Office
Bangalore, Bengaluru Urban, Karnataka, IND
22588 Employees

Similar Companies Hiring

Scotch Thumbnail
Artificial Intelligence • eCommerce • Fintech • Payments • Retail • Software • Analytics
US
35 Employees
Rosendin Thumbnail
Other • Manufacturing
San Jose, CA
6219 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account