Senior Penetration Tester
Core
Lead independent penetration tests across Web, APIs, OT, and Mobile to identify high-impact vulnerabilities in industrial software and provide actionable remediation guidance.
Role type
Senior IC Penetration Tester
Builds
Security assessments and vulnerability reports for industrial automation and engineering products
Domain
Industrial software / Cybersecurity
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
End-to-end penetration test planning and execution, Risk-based vulnerability prioritization, Technical and business risk articulation, External provider coordination, Testing methodology and tooling development, Modern and legacy stack vulnerability analysis
Preferred skills
Penetration testing of Web Applications, Web APIs, and Industrial software, API protocol testing (REST, gRPC, GraphQL, WebSocket), Application security community presence (CVEs, blogs), Penetration testing tool usage (Burp Suite Pro, SQLMap, SysInternals)
Technologies
Burp Suite Pro, SQLMap, SysInternals, REST, gRPC, GraphQL, WebSocket
Responsibilities
Plan, scope, and independently execute end-to-end penetration tests; Produce high-quality reports with reproducible evidence and proof-of-concepts; Work directly with product teams during test and retest phases; Provide actionable remediation and mitigation guidance aligned with industry practices; Contribute to development of testing methodology, playbooks, and tooling
Seniority
Senior, hands-on IC