M
Senior Penetration Tester
Mindlance
- 🇺🇸 United States
- Remote
- Senior
- 1 day ago
- Penetration Testing
- Active Directory
- AWS
- Azure
- GCP
- OSCP
- OSWE
1 day ago
Business Initiative/Purpose: (Goal, Business Impact, Accomplishments from the work)
- Augment the penetration testing team with an experienced security professional capable of independently executing assessments, identifying security vulnerabilities, validating remediation efforts, and helping the organization reduce risk while meeting testing demand and delivery commitments.
Bachelor Degree: (Required, Preferred or Not Required)
- Preferred.
Role Responsibilities: (what they will be doing)
- Perform penetration testing of applications, APIs, infrastructure, cloud environments, Active Directory, and other technology platforms.
- Identify vulnerabilities, attack paths, misconfigurations, and security weaknesses through manual testing and validation activities.
- Document findings with clear technical details, business impact, supporting evidence, and remediation recommendations.
- Retest remediated vulnerabilities and validate risk reduction efforts.
- Participate in discussions with application teams to explain findings and support remediation planning.
- Maintain testing documentation, workpapers, and evidence in accordance with internal security and compliance requirements.
- Collaborate with internal security teams, stakeholders, and third-party vendors to improve testing coverage and effectiveness.
- Stay current on emerging attack techniques, offensive security tools, and industry trends.
Must Have Skills/Prior Experiences: (Vendor should not submit any candidate that does not have these skills/prior experience.)
- Minimum 5 years of hands-on penetration testing, offensive security, red team, or related cybersecurity experience.
- Experience conducting penetration testing of web applications, APIs, infrastructure, cloud environments, and Active Directory.
- Demonstrated ability to identify, exploit, validate, and clearly document security vulnerabilities.
- Strong understanding of common attack techniques, vulnerability assessment methodologies, and penetration testing frameworks.
- Experience creating professional penetration testing reports, including technical findings and remediation recommendations.
- Ability to independently manage multiple assessments and meet deadlines in a fast-paced environment.
- Strong written and verbal communication skills, including experience discussing findings with technical and non-technical stakeholders.
- Experience using industry-standard penetration testing tools and techniques.
Plus/Nice to Have Skills/Prior Experiences:(Hiring Manager DOES NOT require these skills/ prior experience. However candidates with any of these will be looked at first.)
- AI security testing experience.
- Mainframe security testing experience.
- Banking, financial services, or other highly regulated industry experience.
- Cloud security assessment experience (AWS, Azure, GCP).
- Advanced offensive security certifications (OSCP, OSEP, OSWE, OSED, GXPN, CPTS, etc.).
EEO
“Mindlance is an Equal Opportunity Employer and does not discriminate in employment on the basis of – Minority/Gender/Disability/Religion/LGBTQI/Age/Veterans.”
Senior Penetration Tester · Mindlance