7 месяцев назад
Infrastructure Penetration Tester
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Infrastructure Penetration Tester: Conducting internal and external penetration tests and vulnerability assessments in on-premises and cloud environments with an accent on identifying, exploiting, and documenting security vulnerabilities. Focus on simulating real-world cyberattacks, creating detailed reports, and collaborating with engineering teams for mitigation.
Location: Yerevan
Company
is an IT company focused on innovation, looking for new talent to join their team.
What you will do
- Conduct internal and external infrastructure penetration tests, including network, server, firewall, and VPN security assessments.
- Identify, exploit, and document security vulnerabilities in on-premises and cloud environments.
- Simulate real-world cyberattacks to evaluate system resilience and detect potential exposure points.
- Create and deliver detailed penetration testing reports with risk ratings and remediation recommendations.
- Collaborate with IT, DevOps, and Security Engineering teams to validate findings and assist in mitigation.
- Develop and maintain testing tools, scripts, and methodologies following industry best practices.
Requirements
- 3–5 years of experience in penetration testing, vulnerability assessment, or ethical hacking.
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related technical field.
- In-depth knowledge of penetration testing techniques and tools (e.g., Nmap, Burp Suite, Metasploit, Nessus, Cobalt Strike).
- Strong understanding of operating systems (Linux, Windows), network protocols, firewalls, IDS/IPS, and VPN configurations.
- Hands-on experience with both manual and automated testing approaches.
- Familiarity with cloud infrastructure penetration testing and cloud security assessment tools.
- Understanding of MITRE ATT&CK framework and common CVE exploitation methods.
- Strong communication and report writing skills for both technical and non-technical audiences.
Culture & Benefits
- Join a team that values continuous learning and hard work.
- Opportunity to contribute to ongoing security hardening projects.
- Collaborative environment across IT, DevOps, and Security Engineering teams.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →