Penetration Tester
Core
Conduct security assessments, identify and validate vulnerabilities, and provide remediation recommendations across client environments.
Role type
hands-on penetration tester
Builds
security assessments and technical reports
Domain
cybersecurity
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
web application penetration testing, network penetration testing, vulnerability assessment, exploitation techniques, network protocols (TCP/IP, DNS, HTTP), Linux/Windows environments, web technologies, APIs, authentication mechanisms, OWASP Top 10, Burp Suite, Metasploit, Nmap, Wireshark, Nessus, Python/Bash/PowerShell/Ruby scripting
Preferred skills
cloud security assessments, red-team operations, source-code security reviews, client-facing engagement experience
Technologies
Burp Suite, Metasploit, Nmap, Wireshark, Nessus
Responsibilities
Conduct penetration testing across web applications, APIs, networks, infrastructure, and cloud environments; Perform manual and automated vulnerability assessments; Safely exploit identified vulnerabilities to assess impact; Test authentication, authorization, session management, and application logic; Participate in red-team and adversary-simulation activities; Conduct source-code security reviews; Document findings with evidence, risk ratings, and remediation recommendations; Present technical findings to clients and stakeholders; Conduct retesting to verify remediation; Stay updated on emerging vulnerabilities and tools
Seniority
Mid-level, hands-on IC