Jobs
The Senior VAPT Expert manages the end-to-end security assessment lifecycle. This involves conducting broad-spectrum Discovery Scans. They perform deep-dive Infrastructure Penetration Testing. And execute comprehensive Application Penetration Testing. The role also includes high-intensity Red Team/Assume Breach simulations. Beyond identifying vulnerabilities, the expert drives their closure. This ensures mitigation of identified risks across systems. Focus areas include IT and Telecom Core environments (HLR/VLR/OSS/BSS).
Must-Have:
- 2+ years in Offensive Security/Red Teaming, specifically within Telecommunications or ISP environments.
- OSCP certification (minimum) and expert knowledge of the MITRE ATT&CK framework and NIST security standards.
- Proficiency in Kerberoasting, Pass-the-Hash, Golden Ticket, PowerShell/Bash scripting, and EDR bypass.
- Foundational knowledge of SS7, GTP, Diameter, Network Segmentation, Active Directory, and NOC/SOC workflows.
- Hands-on experience with Burp Suite, Cobalt Strike/Sliver, Metasploit, Nessus, and ASM platforms.
Nice-to-Have:
-
Advanced Offensive Certifications of OSEP, OSWE, or CRTP (Certified Red Team Professional).
-
Expertise in automated tools and manual deep-web search techniques for reconnaissance.
-
Experience coordinating foundational telecom knowledge with quarterly telecom exercises.
-
Conduct continuous asset discovery, automated vulnerability scanning, false positive analysis, and manage remediation tracking with re-testing.
-
Execute deep-dive manual infrastructure, web, and mobile application penetration tests, including segmentation testing.
-
Plan and execute "Assume Breach" simulations, complex attack chains, and APT simulations using MITRE ATT&CK.
-
Create custom C2 channels and bypass EDR, Antivirus, and WAF controls to demonstrate advanced adversary capabilities.
-
Conduct specialized attacks against OSS/BSS, HLR, VLR, and MSC to identify risks to subscriber data and call routing.
-
Monitor for "Shadow IT," exposed digital assets, and leaked credentials through automated reconnaissance.
-
Proactively monitor forums and paste-sites for leaked Telecom data (CDRs, MSISDNs, IMEIs) and specific threats.
-
Deliver executive-level reports, Po Cs, and remediation roadmaps, while evaluating Blue Team detection and reaction times.
Total Views
0
Apply Clicks
0
Mock Applicants
0
Scraps
0
Similar Jobs
About Nokia

Nokia
PublicNokia Corporation is a Finnish multinational telecommunications, information technology, and consumer electronics corporation, originally established as a pulp mill in 1865.
10,001+
Employees
Espoo
Headquarters
Reviews
3.6
25 reviews
Work Life Balance
3.8
Compensation
2.7
Culture
3.9
Career
2.9
Management
2.8
65%
Recommend to a Friend
Pros
Good work-life balance and flexible schedules
Strong company culture and nice people
Excellent benefits and learning opportunities
Cons
Low salary and compensation issues
Limited growth and career opportunities
Frequent leadership changes and lack of direction
Salary Ranges
22 data points
Junior/L3
Mid/L4
Junior/L3 · Global 1830 TAC Engineer
1 reports
$141,314
total / year
Base
$108,703
Stock
-
Bonus
-
$141,314
$141,314
Interview Experience
7 interviews
Difficulty
2.7
/ 5
Duration
14-28 weeks
Offer Rate
57%
Experience
Positive 14%
Neutral 72%
Negative 14%
Interview Process
1
Application Review
2
Technical Phone Screen
3
Technical Interview
4
HR Interview
5
Team Matching
6
Offer
Common Questions
Coding/Algorithm
Technical Knowledge
Behavioral/STAR
System Design
Past Experience
News & Buzz
Nokia Earnings Call: AI Bets Offset Margin Pressures - TipRanks
Source: TipRanks
News
·
5w ago
Nokia financials light on Nvidia, big on physical AI - SDxCentral
Source: SDxCentral
News
·
5w ago
Why Is Nokia Stock Down 8% Today? - Yahoo Finance
Source: Yahoo Finance
News
·
5w ago
Nokia (NOK) Received Ratings Upgrades from Morgan Stanley, Kepler Cheuvreux in January - Yahoo Finance
Source: Yahoo Finance
News
·
5w ago



