Security & Vulnerability Engineer
Job Details:
- Role: Security & Vulnerability Engineer
- Location: Karachi (Hybrid)
- Type: Full-Time
- Experience Range: 5+ Years
About NextGENi:
NextGENi (Next Generation Innovations) is transforming how regional startups build their technology teams. We help ambitious founders build and manage their offshore technology teams at twice the speed and fraction of the cost. We have built tech teams for some of the leading startups in the region including Careem, Dubizzle, and Kavak. Our mission is to create exceptional tech teams while maintaining an unparalleled culture and the highest regard for professional principles.
About the Role:
We are seeking a hands-on Security & Vulnerability Engineer to own the security assessment function across customer environments. Reporting directly to the CTO, you will be responsible for identifying, assessing, and communicating security risks across applications, infrastructure, cloud environments, and networks. This role combines technical execution with ownership of the vulnerability management lifecycle from discovery and risk assessment through remediation tracking and verification. The ideal candidate is passionate about offensive security, automation, and continuously improving the security posture of customer deployments.
Responsibilities:
- Own the end-to-end vulnerability assessment process across customer applications, infrastructure, cloud environments, and networks.
- Perform hands-on security assessments using automated and manual techniques, including code reviews, network scanning, and infrastructure analysis.
- Communicate security findings, risk ratings, and remediation recommendations to engineering teams, customers, and executive stakeholders.
- Develop scripts and automation to improve the efficiency, consistency, and coverage of security assessments.
- Collaborate with Engineering, DevOps, and Cloud teams to validate remediation efforts and improve overall security posture.
- Continuously enhance security assessment methodologies by adopting industry best practices, emerging threats, and modern security tooling.
Key Requirements:
- 5+ years of hands-on experience in cybersecurity, application security, vulnerability assessment, penetration testing, or a related security engineering role.
- Strong knowledge of secure software development, OWASP Top 10, common vulnerability types, and modern security testing methodologies.
- Hands-on experience with automated security tools, including network scanners, SAST, DAST, dependency scanning, and container security tools.
- Proficiency in Bash scripting and hands-on experience with Linux environments and at least one major cloud platform (AWS, Azure, or GCP).
- Excellent communication skills with the ability to translate technical findings into clear, actionable recommendations for both technical and business stakeholders.
- Demonstrated ability to leverage AI-assisted engineering tools to accelerate security analysis, automation, documentation, and vulnerability research.
Nice to Have:
- Professional security certifications such as Security+, CEH, PNPT, OSCP, CISSP, or equivalent.
- Experience integrating security testing into CI/CD pipelines and DevSecOps workflows.
- Experience securing containerized and Kubernetes-based environments.
- Familiarity with Infrastructure as Code (Terraform, CloudFormation, or similar).
- Knowledge of security frameworks and standards such as OWASP ASVS, CIS Benchmarks, ISO 27001, SOC 2, or PCI DSS.
Interview Process:
- Round 1: A technical interview to assess the candidate’s expertise and practical experience.
- Round 2: A discussion with the PMO/CTO to evaluate strategic thinking and technical alignment.
- Round 3: An HR interview to assess cultural fit, communication skills, and overall suitability for the role.
Instructions to Apply
To Apply, send your resumes to talent@nextgeni.com with subject mentioning “NGI–SVE-002’’
Download a blank applicant form
Disclaimer
Kindly refrain from renaming this file or altering the form’s format, as it may result in rejection by the ATS. member at NextGENi, and you have cleared the assignment.












