Back to Jobs

Web Application Penetration Tester – Cybersecurity Remote

Remote, USA Full-time Posted 2025-11-24
Job Description: • Conduct penetration testing, ethical hacking, and security assessments on web applications, networks, cloud infrastructures (AWS, Azure, GCP), and enterprise IT environments. • Identify and exploit vulnerabilities such as SQL Injection (SQLi), Cross-Site Scripting (XSS), Server-Side Request Forgery (SSRF), Remote Code Execution (RCE), and Insecure Direct Object References (IDOR). • Perform network security assessments, including port scanning, vulnerability analysis, privilege escalation, and Active Directory (AD) security testing. • Utilize cybersecurity tools such as Burp Suite, Metasploit, Nmap, Wireshark, Nessus, Acunetix, Kali Linux, and BloodHound for in-depth security evaluations. • Develop and execute custom scripts, automation tools, or exploits for penetration testing scenarios. • Conduct post-exploitation analysis, privilege escalation, and persistence techniques. • Provide detailed security reports, risk assessments, remediation plans, and mitigation strategies to enhance security posture. • Stay updated on zero-day vulnerabilities, exploit development, cloud security threats, and emerging cyberattack techniques. Requirements: • Hands-on experience in penetration testing, web security, vulnerability assessments, and red teaming. • Strong understanding of ethical hacking methodologies including OSSTMM, OWASP Top 10, PTES, NIST, MITRE ATT&CK, and CIS Benchmarking. • Proficiency in web application security testing, cloud security (AWS, Azure, GCP), and API security. • Experience in network security, firewall evasion, social engineering, and Wi-Fi security testing. • Knowledge of reverse engineering, malware analysis, exploit development, and buffer overflow techniques is a plus. • Familiarity with Active Directory attacks, Kerberoasting, Pass-the-Hash, Mimikatz, BloodHound, and PowerShell Empire is highly desirable. • Proficiency in scripting/programming (Python, Bash, PowerShell, JavaScript, or C) for security automation and exploit development. • Relevant certifications such as OSCP, OSCE, OSEP, CRTP, CEH, GPEN, CISSP, eWPTX, or GXPN are highly preferred. Benefits: Apply tot his job Apply tot his job Apply To this Job

Similar Jobs

Hogan Systems

Remote, USA Full-time

Registered Nurse Case Manager - Now Hiring

Remote, USA Full-time

Remote AI & Automation Engineer: GenAI, RAG & Chatbots

Remote, USA Full-time

Remote CFO & Financial Architect Enterprise Tech

Remote, USA Full-time

[Remote] AVP / VP NMTC Asset Manager

Remote, USA Full-time

Sr Brand Manager (eCommerce) - ECommerce, Content Strategy SW9-18307101L783

Remote, USA Full-time

IT Cybersecurity Sr Analyst

Remote, USA Full-time

Customer Service Associate job at Par Pacific Holdings in Wailuku, HI

Remote, USA Full-time

Systems Architect 3 (AppSec Threat Modeling)-100% Remote

Remote, USA Full-time

Operations Engineer, Fleet Reliability

Remote, USA Full-time

Experienced Live Chat Specialist for Healthcare Diagnostics - Join blithequark's Dynamic Team in Fort Worth, Texas

Remote, USA Full-time

FedEx Data Entry Remote Jobs (Entry Level/No Experience) - High Paying Job – Minneapolis, MN

Remote, USA Full-time

Live Chat Support for Moms (Entry Level / Part Time / No Phone Calling)

Remote, USA Full-time

Multilingual Senior Benefits Specialist

Remote, USA Full-time

Data Entry Operator - Accurate, Efficient, and Experienced Professional for blithequark

Remote, USA Full-time

(Remote) Apple Data Entry Jobs No Experience -Part-Time

Remote, USA Full-time

Urgently Hiring: Travel Professional (Remote) - Entry Level

Remote, USA Full-time

Experienced Virtual Assistant - Healthcare Recruiter (WFH) - Remote Opportunity for a Talented and Ambitious Professional

Remote, USA Full-time

Claims Representative (Health & Dental)

Remote, USA Full-time

Senior CIO Operations Lead — Remote; TS Clearance

Remote, USA Full-time