
Penetration Testing Analyst
Posted Sep 8

Posted Sep 8
This is a fully remote position, open to applicants in India.
• Oversee activities, documentation, readiness schedules, and communication between the business, clients, and project teams.
• Serve as the primary point of contact regarding testing readiness and relay readiness updates.
• Utilize project management tools to track tasks, assigned personnel, timelines, and project status.
• Identify and escalate issues to management as necessary.
• Conduct security assessments for web, mobile, and API applications, as well as network penetration testing evaluations.
• Employ both commercially available and internally developed exploitation tools for manual testing of sophisticated attacks.
• Create and present detailed professional security assessment reports outlining vulnerabilities and exploits.
• Facilitate client conference calls addressing test readiness, troubleshooting, project kickoffs, significant findings, and closure reviews.
• Engage in proactive research on emerging threats, vulnerabilities, and exploits.
• Document exploitation findings to aid client remediation efforts.
• Work autonomously and collaboratively as part of a larger team.
• Execute other essential tasks as assigned.
• A minimum of 3 years of experience in Information Security.
• Exceptional written and verbal communication skills for both client-facing and internal interactions.
• At least 3 years of hands-on experience in penetration testing.
• Minimum of 3 years of experience with tools such as Nmap, Metasploit, Kali Linux, or Burp Suite.
• Quick learner who thrives in a dynamic team environment.
• Professional demeanor with a strong work ethic and a "get it done" attitude.
• Strong organizational abilities, attention to detail, and multitasking capabilities.
• Experience with NMap scanning is preferred.
• Familiarity with web application authentication methods is preferred.
• Experience with Linux is preferred.
• Knowledge of networking devices, including routers, load balancers, firewalls, WAF, IDS/IPS, and web content filter/proxy is preferred.
• Understanding of tools for validating network access within a penetration testing framework is preferred.
• Offensive certifications such as CEH, WAPT, GPEN, GWAPT, GAWN, or OSCP are preferred.
• Knowledge of Microsoft Windows/Linux operating systems administration and internals is preferred.
• Technical understanding of TCP/IP networking is preferred.
• Familiarity with application attack vectors, security testing processes, and common vulnerabilities like the OWASP Top 10 is preferred.
• Strong troubleshooting, technical communication, analytical, and problem-solving skills are preferred.
• Legal authorization to work in India without employer sponsorship.
• Remote-first working model.
• Employee-led diversity and inclusion networks.
• Annual charity and fundraising initiatives.
• Volunteer days.
• Global employee sustainability initiatives.
• Global fitness and trivia competitions.
• Global wellbeing days.
• Monthly wellbeing webinars and training.
• Adjustments in the recruitment and selection process for accessibility.
Zscaler
Viatris
ActBlue
AlphaSense
Get handpicked remote jobs straight to your inbox weekly.