Penetration Tester
Full-time
Remote
2x Vacant
Position Overview:
Flawtrack is looking for a Penetration Tester to help strengthen the security of our clients’ systems by identifying vulnerabilities and potential risks. As a Penetration Tester, you’ll execute simulated cyberattacks, assess the security posture of networks, applications, and cloud systems, and provide actionable recommendations to mitigate threats. Your work will ensure that our clients remain secure in an ever-evolving digital landscape.
Key Responsibilities:
• Perform penetration tests on networks, applications, and cloud infrastructure to identify vulnerabilities.
• Develop and execute attack scenarios, including exploitation of security flaws in various platforms.
• Conduct security assessments to evaluate the effectiveness of current security controls.
• Collaborate with development and security teams to remediate vulnerabilities and improve security posture.
• Provide detailed reports on findings, including risk assessments and recommendations for mitigation.
• Conduct social engineering tests, phishing simulations, and other red team exercises.
• Stay current with the latest security vulnerabilities, tools, and attack techniques.
• Conduct post-penetration test debriefings to provide stakeholders with insights and solutions.
• Ensure compliance with industry security standards (e.g., ISO 27001, PCI-DSS, GDPR).
• Contribute to the continuous improvement of internal penetration testing methodologies and tools.
Qualifications:
• Bachelor’s degree in Computer Science, Information Security, or related field.
• 3+ years of experience in penetration testing or ethical hacking.
• Industry-recognized certifications such as OSCP, CEH, GPEN, or similar.
• Proficient in penetration testing tools such as Metasploit, Burp Suite, Nmap, Wireshark, and Kali Linux.
• Deep understanding of web application security, network security, and vulnerability assessment methodologies.
• Experience with cloud security (AWS, Azure, GCP) is a plus.
• Strong knowledge of OWASP Top 10, CVE, and other common vulnerabilities.
• Excellent problem-solving skills, attention to detail, and the ability to work independently.
• Strong written and verbal communication skills.