Назад
Company hidden
3 дня назад

Penetration Tester (Cybersecurity)

130 000 - 160 000$
Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Penetration Tester (Cybersecurity): Conducting network, API, web, mobile, cloud, and social engineering penetration tests for customers with an accent on vulnerability analysis, remediation guidance, and compliance requirements. Focus on executing engagements in SCIF environments, preparing technical deliverables, presenting findings to customers, and mentoring junior testers.

Location: Hybrid role based in Seattle, Washington, or Herndon, Virginia; work in a SCIF in Seattle or Northern Virginia is required. Periodic travel to client locations may be required.

Salary: $130,000–$160,000 annual salary

Company

hirify.global provides cloud and cybersecurity services, including FedRAMP third-party assessments, cyber risk quantification, regulatory compliance advisory, and offensive security solutions.

What you will do

  • Conduct network, API, web, mobile, cloud, and social engineering penetration tests.
  • Work with delivery teams and customers throughout security assessment engagements.
  • Explain vulnerabilities, remediation strategies, and compliance requirements to customers.
  • Prepare final reports, deliver project readouts, and coordinate engagement readiness.
  • Maintain customer and stakeholder relationships while managing multiple priorities.
  • Train and mentor junior team members and pursue relevant professional certifications.

Requirements

  • Bachelor’s degree or four years of equivalent experience.
  • At least two years of professional services experience and three years of web application and network penetration testing experience.
  • Proficiency in one or more scripting languages, such as Bash, Python, PowerShell, or Ruby.
  • Strong knowledge of penetration testing methodologies and familiarity with OWASP, MITRE ATT&CK, OSSTMM, or PTES.
  • Ability to work in a SCIF in Northern Virginia or Seattle, Washington.
  • Active Top Secret clearance or ability to obtain a Top Secret clearance, plus eligibility to work in the United States.

Nice to have

  • eCPPT, OSCP, OSCE, OSWE, or GPEN certification.
  • Experience assessing cloud environments and varied technology stacks.
  • Knowledge of network architecture, network devices and services, development platforms, and software suites.
  • Experience creating technical content for websites, whitepapers, or blog posts.
  • Experience working alongside compliance specialists conducting security control assessments.

Culture & Benefits

  • Medical, dental, and vision insurance.
  • 401(k) plan with a 4% company match.
  • Company-paid short-term disability, long-term disability, AD&D, and life insurance.
  • Flexible time off, eleven paid holidays, annual bonuses, and spot awards.
  • Training stipends, certification reimbursement, access to more than 30,000 online training courses, and home office and phone allowances.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →