Team Lead: VAPT & DevSecOps

Arpatech

📍 Karachi Division, Sindh, Pakistan

Full-time Finance Posted March 03, 2026

Job Description

Overview

You will lead the technical security front for our software house, ensuring that our applications and infrastructure are resilient against attacks. You will bridge the gap between development and security, ensuring that the SDLC is inherently secure.

Responsibilities

  • Full-Stack Penetration Testing: Lead VAPT cycles for web, mobile, and cloud-native applications.
  • DevSecOps & SDLC: Coordinate with DevOps to embed automated security (SAST/DAST) into CI/CD pipelines. You must ensure security gates are enforced throughout the Software Development Life Cycle.
  • Red Teaming: Conduct adversary simulations to test the organization’s detection and response capabilities.
  • Remediation Guidance: Provide developers with technical “how-to” fixes for identified vulnerabilities.

Requirements

  • Mandatory Certifications: OSCP (Offensive Security Certified Profe...