Penetration Tester

Posted 1 day ago

This is a fully remote position, open to applicants in Australia.

📋 Description

• Carry out penetration testing for web applications, mobile applications, thick clients, and APIs.

• Execute source code reviews and whitebox penetration testing to demonstrate the impact of application vulnerabilities.

• Reverse engineer mobile and thick client applications.

• Integrate application vulnerabilities into cloud and on-premises Active Directory systems.

• Create comprehensive reports detailing findings and recommendations for significant issues.

• Acquire skills to present findings to both technical and executive audiences.

• Conduct SAST and DAST on enterprise, SaaS, and custom in-house applications.

• Utilize scanners to assess vulnerabilities and validate or dismiss false positives.

• May explore limited lateral movement into infrastructure teams at the discretion of the manager.


⛳️ Requirements

• Experienced developer or application security tester.

• Strong working knowledge of C, C#, Python, Objective-C, Java, JavaScript, SQL, and AngularJS.

• Familiarity with XML, JSON, SOAP, REST, and AJAX.

• Insight into AI/LLM vulnerabilities and flaws within applications.

• Significant experience and expertise with an attack proxy like Burp Suite.

• Preferred: 3–5 years of experience in penetration testing and consulting.

• Graduate of a post-secondary college or university program.

• Minimum of two years of experience in information security-related roles.

• Professional qualifications, including one or more of OSCP, OSWE, BSCP.

• OSCP or Burp certification is mandatory for the organization.

• Strong understanding of OWASP principles in Web, API, Mobile, and AI/LLM contexts.

• Experience with scanners, including knowledge of validating and eliminating false positives.

• Availability to work initial after-hours schedules aligned with the Eastern Time Zone (Canada/US) team.


🏝️ Benefits

• Initial onboarding and collaboration may require after-hours work, with flexible scheduling as the role transitions to regular local hours.

• Immediate and ongoing offensive security training.

• Competitive compensation.

• Opportunities for growth.

• A fantastic team and working environment.

People also viewed

Paradigm Information Services, Inc.13 hours ago

Quality Assurance Data Analyst

US flagAlabama, +30 more statesFreelanceQA Engineer (Quality Assurance)$33 – $38/hour
ApplyView job
Latitude IT Solutions | SDVOSB15 hours ago

Quality Assurance Engineer

US flagUnited States OnlyFull-timeQA Engineer (Quality Assurance)$87k – $100k/year
ApplyView job
ICF18 hours ago

Salesforce QA Tester

US flagVirginia OnlyFull-timeQA Engineer (Quality Assurance)$67.4k – $114.5k/year
ApplyView job
v4c.ai1 day ago

Senior Data QA - Onshore

US flagUnited States OnlyFull-timeQA Engineer (Quality Assurance)
ApplyView job
Step-Up1 day ago

QA Automation, QA Manual

UY flagUruguay OnlyFull-timeQA Engineer (Quality Assurance)
ApplyView job
Testlio1 day ago

Freelance Software Tester, Smart TVs

IE flagIreland OnlyFreelanceQA Engineer (Quality Assurance)$15/hour
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers