Department: iTQ Naviq | Experience: 4–6 Years | Location: Trivandrum / Cochin / Bangalore / Chennai
Role Overview
We are looking for a Lead Engineer – Information Security with 4–6 years of hands-on experience in cybersecurity testing and offensive security. The candidate will lead and execute security assessments across Web, Mobile, Thick-Client, API, and Network environments, identify and validate vulnerabilities, simulate real-world attack scenarios, and provide actionable recommendations to strengthen the organization’s security posture.
Key Responsibilities
1. Offensive Security Operations
2. Risk Assessment & Reporting
3. Process Improvement & Documentation
4. Leadership & Mentoring
Required Skills & Qualifications
• Bachelor’s degree in Computer Science, Information Security, or equivalent experience.
• 4–6 years of experience in penetration testing, red teaming, or offensive security.
• Strong hands-on experience in Web, Mobile (Android/iOS), Thick-Client, API, and Network Penetration Testing..
• Strong knowledge of OWASP Top 10, OWASP Mobile/API Security, PTES, NIST SP 800-115, and MITRE ATT&CK
• Hands-on experience with tools such as Burp Suite, Metasploit, Nmap, Frida, MobSF, and similar security testing tools
• Strong understanding of network protocols, authentication/authorization, encryption, session management, and common exploit techniques.
• Experience in threat modeling, risk assessment, and vulnerability lifecycle management.
• Strong communication skills for both technical and executive audiences.
• Ability to lead engagements, manage timelines, and deliver high-quality reports.
• Certifications are added advantage
Skills Required
- Bachelor's degree in Computer Science, Information Security, or equivalent experience
- 4-6 years of experience in penetration testing, red teaming, or offensive security
- Hands-on experience in web, mobile Android/iOS, thick-client, API, and network penetration testing
- Knowledge of OWASP Top 10, OWASP Mobile/API Security, PTES, NIST SP 800-115, and MITRE ATT&CK
- Hands-on experience with Burp Suite, Metasploit, Nmap, Frida, MobSF, or similar security testing tools
- Understanding of network protocols, authentication, authorization, encryption, session management, and common exploit techniques
- Experience in threat modeling, risk assessment, and vulnerability lifecycle management
- Strong communication skills for technical and executive audiences
- Ability to lead engagements, manage timelines, and deliver high-quality reports
- Security certifications
What We Do
IBS Software is a leading SaaS solutions provider to the travel industry globally, managing mission-critical operations for customers in the aviation, tour & cruise, hospitality and energy resources industries. IBS Software's solutions for the aviation industry cover fleet and crew operations, aircraft maintenance, passenger services, loyalty programs, staff travel & air-cargo management. IBS Software also runs a real-time B2B and B2C distribution platform providing hotel room inventory, rates, and availability to a global network of hospitality companies and channels. For the tour and cruise industry, IBS provides a comprehensive customer-centric, digital platform that covers onshore, online and on-board solutions. The Consulting and Digital Transformation (CDx) business focuses on driving digital transformation initiatives of its customers, leveraging its domain knowledge, digital technologies and engineering excellence. IBS Software operates from 16 offices across the world.









