Vulnerability Assessment & Web Pentesting Intern
Perform real-world vulnerability checks, Burp Suite testing, OWASP Top 10 auditing, and executive vulnerability remediation reporting.
Role Overview & Operational Scope
You will learn and apply practical penetration testing methodologies against real-world systems, identifying security misconfigurations and documenting remediation steps under seasoned cybersecurity mentors.
Key Responsibilities & Production Deliverables
- Conduct automated and manual vulnerability scans on web applications using Burp Suite and open-source scanners.
- Test for common OWASP Top 10 vulnerabilities including IDOR, XSS, CSRF, and SQL Injection.
- Document detailed reproduction steps and proof-of-concept evidence for identified flaws.
- Research emerging CVEs and explore remediation patches.
Mandatory Foundational Knowledge
- Understanding of HTTP request/response lifecycles, headers, cookies, and sessions.
- Conceptual knowledge of the OWASP Top 10 web vulnerabilities.
- Basic familiarity with Linux command line and networking concepts.
Mandatory Practical Skills & Architecture
- Hands-on practice on platforms like PortSwigger Web Security Academy, TryHackMe, or HackTheBox.
- Familiarity with Burp Suite Community/Pro and browser developer tools.
Problem Solving, Execution Rigor & Curiosity
- Passionate about ethical hacking, cybersecurity defense, and continuous self-study.
5-day live technical evaluation milestone
5-Day Security Lab Milestone: Complete a controlled web vulnerability assessment on our staging testbed and write a clear remediation report (strictly 5 working days). Successful completion triggers immediate official offer letter issuance.
Institutional hiring protocol: candidates who clear resume screening take a live practical milestone of strictly 5 working days. Verifiable completion and code audit by your assigned engineering mentor is the sole prerequisite for the official offer letter.
Compensation, Total Rewards & Advancement
- Monthly stipend βΉ10,000ββΉ18,000 with full PPO potential for top performers.
- Official Cehpoint Cybersecurity Internship Certificate & verifiable credentials.
Dedicated inbox for this role
Questions, private repository links or portfolio references for this opening route straight to the engineering leads reviewing it.
vulnerability-assessment-web-pentesting-intern-careers@cehpoint.co.in
Open mail client →