Conduct application and network layer penetration tests on various IT environments
Conduct red teaming activities, including physical security penetration testing
Perform independent pen testing utilizing numerous penetration testing tools and leveraging mainly manual techniques, typically testing will necessitate source code analysis
Write risk prioritized finding reports, debrief system owners and consult on remediation options
Retest security vulnerabilities that have been identified as fixed to verify remediation is effective
Contribute to pen testing, red teaming, tooling, and reporting methodology enhancements
Stay current on emerging technologies, pen testing tools and techniques, and security vulnerabilities
Evaluate effectiveness of defensive countermeasures and consult with blue teams to help improve detection methods and capabilities required for situational awareness
Requirements
3+ years of experience with server administration and file management structure
3+ years of experience with programming experience in Python, PHP, Perl, Ruby, .NET, or other interpreted or compiled languages
1+ years of experience in penetrating testing and vulnerability assessments using manual techniques and vulnerability testing tools (including scanners, sniffers, fuzzers and exploit tools such as Burp, Nmap, Kali and Metasploit)