Red Team PenTester
Core
Conduct offensive security assessments on web applications, networks, cloud platforms, and internal infrastructures through realistic attack simulations and manual testing.
Role type
Senior IC penetration tester (offensive security)
Builds
Security posture assessments and remediation guidance for engineering and management teams
Domain
Cybersecurity / Offensive Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Web application penetration testing, API security testing, network penetration testing, Active Directory exploitation, privilege escalation (Windows/Linux), manual vulnerability identification, source code review, cloud security assessment (AWS/Azure/GCP), exploit chain execution, technical reporting
Preferred skills
OSCP/PNPT/CRTO/OSWE certifications, red team/adversary simulation experience, threat modeling, EDR/AV evasion techniques
Technologies
Burp Suite, Nmap, Metasploit, BloodHound, CrackMapExec, Impacket, Bash, PowerShell, Python
Responsibilities
Perform web application, API, network, and infrastructure penetration tests; Identify, exploit, and document security vulnerabilities; Conduct manual testing beyond automated scanners; Execute adversary-style attack chains; Perform source code reviews; Assess cloud environments for configuration weaknesses; Produce high-quality reports; Present findings and remediation guidance; Support remediation validation and retesting; Stay current with vulnerabilities and offensive security research
Seniority
Mid-Senior, hands-on IC