Senior Penetration Tester

🔥 3 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of BreachLock Inc

BreachLock Inc

51 - 200 employees

Founded 2019

🔒 Cybersecurity

☁️ SaaS

Cybersecurity • SaaS • AI

BreachLock Inc. is a cybersecurity company specializing in Penetration Testing as a Service (PTaaS) and Attack Surface Management (ASM). They offer comprehensive and continuous security testing solutions, including penetration testing, red teaming, and application security testing. BreachLock Inc. is recognized for their advanced PTaaS platform that utilizes AI and NLP-based models to ensure precision and quality in identifying vulnerabilities. Their services are trusted by enterprises worldwide for discovering, prioritizing, and mitigating security exposures across internal and external attack surfaces. With numerous certifications and recognitions, BreachLock focuses on providing high ROI security services for a wide range of industries, ensuring robust defense mechanisms against potential cyber threats.

📋 Description

• Execute web application, API and mobile penetration tests with a focus on manual testing beyond automated scanning — business logic, authentication abuse, authorization flaws, and injection chains • Conduct internal network assessments, external network assessments and assumed breach engagements, including Active Directory enumeration, lateral movement, privilege escalation, and post-exploitation • Leverage frameworks including MITRE ATT&CK, PTES, and OWASP to structure assessments and findings • Develop and contribute to internal tooling — automation scripts, reporting utilities, and workflow improvements using Python, Bash, or similar • Participate in QA review cycles, providing structured feedback on findings, CVSS scoring accuracy, and report quality • Mentor junior testers through technical guidance and finding review • Collaborate with delivery leadership on scoping, client kickoff calls, and remediation guidance

🎯 Requirements

• 3–5 years of professional penetration testing experience in a delivery or consulting context • Strong web application and API testing fundamentals — Burp Suite proficiency, OWASP Top 10 and beyond, authentication and session management testing • Solid internal network assessment skills — AD enumeration, Kerberoasting, NTLM relay, ADCS misconfigurations, assumed breach methodology • Proficiency in scripting and automation (Python, PowerShell, Bash) • Strong written communication — capable of writing clear, accurate, well-scoped findings independently • Familiarity with PTaaS delivery models or platform-based reporting workflows is a plus • US-based and eligible to work without sponsorship

🏖️ Benefits

• Competitive compensation and performance-based equity opportunities • Flexible work hours with hybrid remote options • Opportunity to work with international cybersecurity experts • Strong career progression in a rapidly expanding early-stage company • Exposure to cutting-edge research, tools, and techniques in offensive security

Apply Now

Similar Jobs

🔥 58 minutes ago

H&R Block

10,000+ employees

💸 Finance

👥 B2C

🤝 B2B

Lead quality assurance and testing efforts for seasonal tax software at H&R Block. Ensure compliance with business goals through testing practices and continuous improvement.

🔥 58 minutes ago

H&R Block

10,000+ employees

💸 Finance

👥 B2C

🤝 B2B

Lead Quality Assurance Analyst ensuring software and hardware quality for tax software at H&R Block. Collaborating with development and product teams to enhance user experience and resolve issues.

🔥 1 hour ago

TeamBuilder

11 - 50

☁️ SaaS

🤝 B2B

👥 HR Tech

Senior Software Quality Engineer supporting quality strategy and automation for healthcare SaaS products. Developing testing frameworks and collaborating with cross-functional teams to ensure quality throughout SDLC.

Cypress

ETL

MySQL

Postgres

Selenium

SQL

🔥 12 hours ago

BMO U.S.

5001 - 10000

🏦 Banking

💸 Finance

💳 Fintech

Penetration Tester responsible for ethical hacking and security assessments for BMO's critical technologies. Collaborating on projects to identify and remediate vulnerabilities in network and cloud environments.

Cloud

Linux

🔥 18 hours ago

Cookie Information

51 - 200

🤝 B2B

📋 Compliance

Quality Assurance Manager responsible for ensuring quality in logistics and transportation operations at DSV. Implementing assurance procedures and managing audits for compliance in a global context.