Penetration Tester
S
Sprocket SecurityCybersecurity
United States residentFull-TimeMiddle
Salary not disclosed
Apply NowOpens the employer's application page
Job Details
- Experience
- Four or more years of hands-on penetration testing experience. Two or more years of hands-on web application penetration testing experience.
- Required Skills
- AWSPythonBashRubyC#AzureTerraformAnsibleGitLab
Requirements
- Four or more years of hands-on penetration testing experience.
- Two or more years of hands-on web application penetration testing experience.
- Detailed knowledge of identifying and exploiting vulnerabilities in Windows, Linux, and cloud-based systems.
- Programming experience in Ruby, Python, Bash.
- Clear and concise verbal and written skills.
- OSCP or equivalent skills-based certification mandatory, or will need to obtain within 12 months of employment.
- Adversary Simulation experience.
- Has industry involvement by contributes research, open-source projects, or public speaking
- Experience managing or working with management on security projects and teams.
Responsibilities
- Perform web application testing across a large and diverse client base using established methodologies, and creating your own.
- Perform network and wireless testing methodologies at scale from time to time.
- Discover newly exploitable systems across our fleet of clients.
- Build payloads and C2 infrastructure that evades defenses.
- Mimic tactics and techniques used by real-world adversaries.
- Show impact with post-exploitation activities.
- Manage our platform by conducting tasks, write findings, and work with clients to help detect and prevent.
- Build scripts, tooling, or templates to improve personal testing efficiency and contribute ideas for future automation in the platform.
- Advanced usage of the following tools: Burp Suite Pro, Nessus, Metasploit, CobaltStrike, etc.
- Manage project lifecycles and present professionally to clients.
- Work closely with development teams to migrate human-driven tasks into automation.
- Work with AWS, Azure, terraform, ansible, and gitlab pipelines.
View Full Description & ApplyYou'll be redirected to the employer's site