Penetration Tester
Description
About the Role We're seeking an Adversary Emulation Engineer / Penetration Tester to assess the security of our applications, cloud environments, infrastructure, and internal systems by simulating realistic attacker behavior. You'll identify and validate vulnerabilities, test the effectiveness of security controls, and partner with engineering, infrastructure, and security teams to reduce risk — combining pen testing, cloud security testing, adversary emulation, and clear technical reporting. This role may also support incident readiness by surfacing misconfigurations, insecure access controls, exposed credentials, and container/Kubernetes risks (including EKS and GuardDuty findings). Key Responsibilities Conduct adversary emulation exercises using realistic threat scenarios, TTPs, and MITRE ATT&CK-based techniques Perform penetration testing across web apps, APIs, networks, cloud environments, containers, and internal systems Safely exploit identified vulnerabilities to validate real-world impact and business risk, including auth, access control, privilege escalation, lateral movement, and data exposure Test cloud environments (AWS IAM, security groups, containers, Kubernetes/EKS) Simulate attack paths to validate security detections, logging/alerting, and incident response playbooks Document findings with evidence, risk ratings, attack paths, and remediation guidance; present to technical and non-technical stakeholders Partner with engineering/DevOps/security to verify remediation and validate vulnerability scanner findings Follow approved rules of engagement to keep testing controlled and non-disruptive to production Required Qualifications 4+ years in penetration testing, adversary emulation, red teaming, or offensive security Hands-on experience across web apps, APIs, networks, and cloud/internal infrastructure Proficiency with tools such as Burp Suite, Nmap, Metasploit, Nessus, sqlmap, Wireshark Strong grasp of common vulnerability classes: SQLi, XSS, SSRF, IDOR, auth bypass, privilege escalation, insecure deserialization, misconfiguration Solid foundation in Linux, Windows, networking, TCP/IP, DNS, HTTP/S, identity systems, and enterprise security controls Familiarity with MITRE ATT&CK and OWASP Top 10 Strong written and verbal communication skills for technical and non-technical audiences Certification such as OSCP, PNPT, GPEN, GWAPT, eJPT, CRTO, or CEH Preferred Qualifications Cloud security testing experience (AWS, Azure, or GCP) Kubernetes/Docker/container/EKS security experience Familiarity with GuardDuty findings and cloud IR workflows Scripting (Python, Bash, PowerShell, or JavaScript) Detection engineering, SIEM validation, or purple team experience Source code review / secure SDLC experience Familiarity with SOC 2, ISO 27001, PCI DSS, HIPAA, or NIST