Penetration Tester (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Location: Remote from the USA for residents of CA, CO, CT, FL, GA, IL, KS, MA, MD, ME, NJ, NC, NY, OH, OR, TN, TX, VA, or WA; hybrid options are available from offices in Austin, TX, and Tampa, FL. Chicago city limits are excluded. Onsite interviews may be required.
Base salary: $130,000–$165,000 per year for roles based in California, Colorado, Maryland, New Jersey, Washington, or New York.
Company
provides a unified IT operations platform for endpoint management, patching, backup, and remote access, serving nearly 40,000 customers in more than 140 countries.
What you will do
- Perform controlled penetration testing of applications, cloud environments, infrastructure, APIs, and client-side components.
- Demonstrate exploitability, document risks, and support remediation with Engineering.
- Develop custom tools and scripts for penetration testing, automation, and exploit development.
- Triage and validate bug bounty submissions, reproduce issues, assess CVSS severity, identify duplicates, and route confirmed findings.
- Communicate with external security researchers and prepare reports and presentations for technical and executive stakeholders.
- Apply emerging threat intelligence to security initiatives, awareness programs, policies, and best practices.
Requirements
- Bachelor’s degree in Information Technology, Computer Science, or a related field.
- 8+ years of hands-on penetration testing experience and 5+ years in cybersecurity-related roles.
- Strong knowledge of security protocols, cryptography, authentication, authorization, modern attack techniques, and enterprise architecture.
- Proficiency with penetration testing tools such as Burp Suite and Caido, plus the ability to develop scripts or tools in Java, Kotlin, C++, Python, or Go.
- Knowledge of OWASP, NIST, BSIMM, STRIDE, DREAD, CIS, and CSA, as well as Linux, Windows, TCP/IP, UDP, and cloud-native application security.
- Must be located in the USA and reside in an eligible state; visa sponsorship is not available.
Nice to have
- OSCP, Security+, CISSP, or CISM certification.
- Bug bounty triage or program experience.
- Experience with cloud security architecture.
Culture & Benefits
- Collaborative, kind, and curious work environment.
- Full-time hybrid-remote work with flexibility.
- Medical, dental, vision, life insurance, and 401(k) benefits.
- Unlimited paid time off and opportunities for growth and advancement.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →