
Penetration Tester
Posted Aug 7

Posted Aug 7
This is a fully remote position, open to applicants in Texas.
• Execute penetration testing on web applications, mobile applications, thick clients, and APIs.
• Conduct source code evaluations and white-box penetration testing to demonstrate the effects of application vulnerabilities.
• Reverse engineer mobile and thick client software.
• Integrate application vulnerabilities into cloud and on-premises Active Directory environments when relevant.
• Create comprehensive reports on findings and proposed remediation for significant issues.
• Present findings at both technical and executive levels.
• Perform Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST) on enterprise, SaaS, and custom in-house applications.
• Utilize scanning tools while validating and addressing false positives.
• Strong working knowledge of C, C#, Python, Objective-C, Java, JavaScript, SQL, and frameworks such as AngularJS.
• Familiarity with web services and data interchange formats including XML, JSON, SOAP, REST, and AJAX.
• Insight into weaknesses in AI/LLM and application vulnerabilities.
• Extensive experience using an attack proxy like Burp Suite.
• Preferred 3–5 years of experience in penetration testing and consulting.
• Graduate of a post-secondary college or university degree program.
• Minimum of two years of experience in information security-related roles.
• Possession of professional qualifications, such as one or more of OSCP, OSWE, or BSCP.
• OSCP or Burp certification is required for the organization.
• Must reside in Texas.
• Strong understanding of OWASP guidelines for Web, API, Mobile, and AI/LLM.
• A customer-first approach, excellent communication skills, quick responsiveness, reliability, and a commitment to continuous learning.
• Competitive compensation along with performance-based pay.
• Opportunities for employee growth and development.
• Fully remote work option (within Texas).
Abhyaz
Commence
Isenberg & Hewitt, P.C.
CCR GROUP
Get handpicked remote jobs straight to your inbox weekly.