Назад
Company hidden
обновлено 31 минуту назад

Application Penetration Tester (Cybersecurity)

62 000 - 141 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
junior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Application Penetration Tester (Cybersecurity): Conducting application, network, and cloud penetration testing for diverse clients with an accent on offensive security operations, security control validation, and clear reporting. Focus on enumerating Active Directory attack paths, using C2 frameworks, testing Windows and *nix environments, and communicating findings to technical, executive, and legal stakeholders.

Location: Remote, with the role based in Chantilly, Virginia, USA; U.S. citizenship is required. Occasional work at a Booz Allen or customer facility may be required.

Salary: $62,000–$141,000 annualized USD

Company

hirify.global provides consulting and technology services to government and commercial clients, including Fortune 100 companies.

What you will do

  • Conduct application, web application, network, cloud, and red-team penetration testing.
  • Validate security controls and incident response through offensive security operations.
  • Perform security testing across Windows and *nix environments.
  • Develop accurate technical reports and presentations for technical and executive audiences.
  • Communicate findings and testing strategies with technical staff, executives, and legal counsel.
  • Conduct innovative security research and share knowledge with security specialists.

Requirements

  • U.S. citizenship is required.
  • At least 1 year of application penetration testing experience.
  • Experience scripting or coding in Python, Go, or Bash.
  • Experience with Windows environments and Active Directory attack path enumeration.
  • Experience with C2 frameworks such as Cobalt Strike, Mythic, or Havoc.
  • High school diploma or GED, plus knowledge of vulnerability assessments, web application security, network penetration testing, or red teaming.

Nice to have

  • Commercial penetration testing experience and Burp Suite Professional experience.
  • Experience deploying infrastructure in cloud environments.
  • Bachelor’s degree in computer science or a related field.
  • Certifications such as BSCP, OSWA, OSWE, OSCP, CRTO, GPEN, GXPN, OSCE, or GWAPT.

Culture & Benefits

  • Health, life, disability, financial, and retirement benefits.
  • Paid leave, professional development, tuition assistance, work-life programs, and dependent care support.
  • Recognition awards for exceptional performance and demonstration of company values.
  • Virtual employees are generally expected to keep cameras on during meetings.
  • Identity verification with biometrics is required during the hiring process, including camera use during interviews and assessments.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →