Назад
Company hidden
4 дня назад

Penetration Tester (Cybersecurity)

130 000 - 165 000$
Формат работы
remote (только USA)/hybrid
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Penetration Tester (Cybersecurity): Testing NinjaOne applications, cloud environments, infrastructure, APIs, and client-side components with an accent on vulnerability validation, exploitability analysis, and bug bounty triage. Focus on developing custom testing tools, scoring CVSS findings, collaborating on remediation, and communicating security risks to engineers, executives, and external researchers.

Location: Remote from the USA for residents of CA, CO, CT, FL, GA, IL, KS, MA, MD, ME, NJ, NC, NY, OH, OR, TN, TX, VA, or WA; hybrid options are available from offices in Austin, TX, and Tampa, FL. Chicago city limits are excluded. Onsite interviews may be required.

Base salary: $130,000–$165,000 per year for roles based in California, Colorado, Maryland, New Jersey, Washington, or New York.

Company

hirify.global provides a unified IT operations platform for endpoint management, patching, backup, and remote access, serving nearly 40,000 customers in more than 140 countries.

What you will do

  • Perform controlled penetration testing of applications, cloud environments, infrastructure, APIs, and client-side components.
  • Demonstrate exploitability, document risks, and support remediation with Engineering.
  • Develop custom tools and scripts for penetration testing, automation, and exploit development.
  • Triage and validate bug bounty submissions, reproduce issues, assess CVSS severity, identify duplicates, and route confirmed findings.
  • Communicate with external security researchers and prepare reports and presentations for technical and executive stakeholders.
  • Apply emerging threat intelligence to security initiatives, awareness programs, policies, and best practices.

Requirements

  • Bachelor’s degree in Information Technology, Computer Science, or a related field.
  • 8+ years of hands-on penetration testing experience and 5+ years in cybersecurity-related roles.
  • Strong knowledge of security protocols, cryptography, authentication, authorization, modern attack techniques, and enterprise architecture.
  • Proficiency with penetration testing tools such as Burp Suite and Caido, plus the ability to develop scripts or tools in Java, Kotlin, C++, Python, or Go.
  • Knowledge of OWASP, NIST, BSIMM, STRIDE, DREAD, CIS, and CSA, as well as Linux, Windows, TCP/IP, UDP, and cloud-native application security.
  • Must be located in the USA and reside in an eligible state; visa sponsorship is not available.

Nice to have

  • OSCP, Security+, CISSP, or CISM certification.
  • Bug bounty triage or program experience.
  • Experience with cloud security architecture.

Culture & Benefits

  • Collaborative, kind, and curious work environment.
  • Full-time hybrid-remote work with flexibility.
  • Medical, dental, vision, life insurance, and 401(k) benefits.
  • Unlimited paid time off and opportunities for growth and advancement.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →