All roles

Web Application Penetration Tester – Cybersecurity Remote

Remote · USA Full-time New today

Job Description:

  • Conduct penetration testing, ethical hacking, and security assessments on web applications, networks, cloud infrastructures (AWS, Azure, GCP), and enterprise IT environments.
  • Identify and exploit vulnerabilities such as SQL Injection (SQLi), Cross-Site Scripting (XSS), Server-Side Request Forgery (SSRF), Remote Code Execution (RCE), and Insecure Direct Object References (IDOR).
  • Perform network security assessments, including port scanning, vulnerability analysis, privilege escalation, and Active Directory (AD) security testing.
  • Utilize cybersecurity tools such as Burp Suite, Metasploit, Nmap, Wireshark, Nessus, Acunetix, Kali Linux, and BloodHound for in-depth security evaluations.
  • Develop and execute custom scripts, automation tools, or exploits for penetration testing scenarios.
  • Conduct post-exploitation analysis, privilege escalation, and persistence techniques.
  • Provide detailed security reports, risk assessments, remediation plans, and mitigation strategies to enhance security posture.
  • Stay updated on zero-day vulnerabilities, exploit development, cloud security threats, and emerging cyberattack techniques. Requirements:
  • Hands-on experience in penetration testing, web security, vulnerability assessments, and red teaming.
  • Strong understanding of ethical hacking methodologies including OSSTMM, OWASP Top 10, PTES, NIST, MITRE ATT&CK, and CIS Benchmarking.
  • Proficiency in web application security testing, cloud security (AWS, Azure, GCP), and API security.
  • Experience in network security, firewall evasion, social engineering, and Wi-Fi security testing.
  • Knowledge of reverse engineering, malware analysis, exploit development, and buffer overflow techniques is a plus.
  • Familiarity with Active Directory attacks, Kerberoasting, Pass-the-Hash, Mimikatz, BloodHound, and PowerShell Empire is highly desirable.
  • Proficiency in scripting/programming (Python, Bash, PowerShell, JavaScript, or C) for security automation and exploit development.
  • Relevant certifications such as OSCP, OSCE, OSEP, CRTP, CEH, GPEN, CISSP, eWPTX, or GXPN are highly preferred. Benefits: Apply tot his job Apply To this Job

Apply To This Job

Related roles

Senior Web Application Penetration Tester

Remote · USA Full-time

Entry Level Cyber Security Analyst | Remote $85...

Remote · USA Full-time

CAPPS Security Analyst /Service Desk Support (Remote)

Remote · USA Full-time

Security Analyst-IAM / IGA Administrator (Microsoft Entra)

Remote · USA Full-time

Systems Analyst 3 (CAPPS Security Analyst) - SA 26-06679

Remote · USA Full-time

Senior Cyber Security Analyst | ISO 27001 | £60,000 per annum | Remote

Remote · USA Full-time

Junior Cyber Security Analyst

Remote · USA Full-time

Sr. Threat Intel Analyst (Remote)

Remote · USA Full-time

SBA - Cyber Threat Intelligence Analyst

Remote · USA Full-time

Experienced Cyber Threat Intelligence Analyst - Remote Opportunity in Airline Industry Cybersecurity

Remote · USA Full-time

Data Engineer, Python, AWS, Data Pipelines

Remote · USA Full-time

Steuerfachkraft (m/w/d) in Hilpoltstein mindestens 52.000€ - 100% Remote möglich

Remote · USA Full-time

Vice President, Project Cost Management (Easter...

Remote · USA Full-time

Head of UX Design & Research

Remote · USA Full-time

Telehealth CNM-TN

Remote · USA Full-time

Experienced Live Chat Support Specialist – Remote Customer Service Representative

Remote · USA Full-time

Experienced Part-time Data Entry Associate – Remote Work Opportunity with arenaflex

Remote · USA Full-time

Experienced Data Entry Clerk Work From Home - Part Time Remote Focus Group Panelists at arenaflex

Remote · USA Full-time

Strategic Account Manager - Cooling

Remote · USA Full-time

Experienced Part-Time Remote Focus Group Panelist – Flexible Work Schedule and Competitive Compensation

Remote · USA Full-time