Penetration Tester
Core
Conduct security assessments by intentionally exploiting vulnerabilities in computer systems, software, and networks to identify weaknesses and recommend remediation.
Role type
Penetration Tester (Security Engineering)
Builds
Secure applications and networks for RSM's internal systems and third-party integrations
Domain
Cybersecurity / Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure
Required skills
Dynamic Application Security Testing (DAST), OWASP Top 10 knowledge, SANS Top 25 knowledge, source code auditing, Burp Suite proficiency, scripting (C#, Java, Python, PowerShell)
Preferred skills
CISSP certification, Security+ certification, CEH certification
Technologies
Burp Suite, Azure DevOps, C#, Java, Python, PowerShell
Responsibilities
Perform tests on applications and network devices; Create test cases and log defects in Azure DevOps; Provide security recommendations; Research and experiment with different types of attacks; Help in automating common testing techniques; Participate in writing technical and executive reports
Seniority
Mid-level (3-5+ years experience)