Penetration Tester

Posted 2hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

Penetration Tester conducting offensive security assessments for Packetlabs, an expert penetration testing services company. Testing applications, APIs, source code, and infrastructure for exploitable weaknesses.

Responsibilities:

  • Perform penetration testing of web applications, mobile applications, thick clients, and APIs
  • Conduct source code reviews and whitebox penetration testing to prove application flaw impact
  • Reverse engineer mobile and thick client applications
  • Chain application flaws into cloud and on-premises Active Directory infrastructure
  • Develop detailed reports on findings and remediations for impactful findings
  • Learn to debrief findings at technical and executive levels
  • Perform SAST and DAST on enterprise, SaaS, and custom in-house applications
  • Use scanners and validate or eliminate false positives
  • Potentially pursue limited lateral movement into infrastructure teams at the manager’s discretion

Requirements:

  • Experienced developer/application security tester
  • Solid working knowledge of C, C#, Python, Objective-C, Java, JavaScript, SQL, and AngularJS
  • Familiarity with XML, JSON, SOAP, REST, and AJAX
  • Understanding of AI/LLM weaknesses and flaws in applications
  • Extensive experience/expertise using an attack proxy such as Burp Suite
  • Preferred: 3–5 years of experience in penetration testing and consulting
  • Post-secondary college or university degree program graduate
  • At least two years of experience dealing with information security-related tasks
  • Professional qualification(s), one or more of OSCP, OSWE, BSCP
  • OSCP or Burp is mandatory for the organization
  • Strong understanding of OWASP in Web, API, Mobile, and AI/LLM
  • Experience using scanners and knowledge of validating and eliminating false positives
  • Ability to work initial after-hours schedules aligned with the Eastern Time Zone (Canada/US) team

Benefits:

  • Initial onboarding and collaboration may involve after-hours work, with flexible scheduling as the role transitions to standard local hours
  • Immediate and continual offensive security training
  • Competitive compensation
  • Growth opportunity
  • Amazing team and working environment