Senior Penetration Tester jobs in United States
cer-icon
Apply on Employer Site
company-logo

Sprocket Security · 5 months ago

Senior Penetration Tester

Sprocket Security is dedicated to helping secure companies through penetration testing and offensive security. In this role, you will join the Service Delivery team to simulate cyber-attack tactics and identify security vulnerabilities, contributing to the development of robust defense strategies for clients.

ComputerNetwork Security
badNo H1BnoteU.S. Citizen Onlynote

Responsibilities

Perform web application testing methodologies at scale
Perform network and wireless testing methodologies at scale
Discover newly exploitable systems across our fleet of clients. It's fun to test that new vulnerability the day it's released!
Build payloads and C2 infrastructure that evades defenses
Mimic tactics and techniques used by real-world adversaries
Show impact with post-exploitation activities
Manage our platform by conducting tasks, write findings, and work with clients to help detect and prevent
Develop tools and contribute to our automated infrastructure. You'll commonly program in the following languages: Ruby, Python, PowerShell, C# Bash, etc
Advanced usage of the following tools: Burp Suite Pro, Nessus, Metasploit, CobaltStrike, etc
Manage project lifecycles and present professionally to clients. Kickoff calls, debriefs, etc
Work closely with development teams to migrate human-driven tasks into automation
Work with AWS, Azure, terraform, ansible, and gitlab pipelines

Qualification

Penetration TestingWeb Application TestingNetwork TestingAdversary SimulationVulnerability ExploitationRuby ProgrammingPython ProgrammingCloud SecurityPublic SpeakingOpen-source ContributionCISSP CertificationClear CommunicationTeam CollaborationProject Management

Required

Seven or more years of hands-on penetration testing experience
Five or more years of hands-on Web App penetration testing experience
Two or more years of hands-on Network penetration testing experience
Adversary Simulation experience
Detailed knowledge of identifying and exploiting vulnerabilities in Windows, Linux, and cloud-based systems
Programming experience in Ruby, Python, Bash. Bonus (C#, JavaScript, terraform, ansible)
Clear and concise verbal and written skills
United States resident

Preferred

OSCP or equivalent skills-based certification mandatory, or will need to obtain within 12 months of employment
Has industry involvement by contributes research, open-source projects, or public speaking
Experience managing or working with management on security projects and teams. Bonus if CISSP certified
Remote work acceptable
Preferred proximity to Madison, WI

Benefits

Unlimited and mandatory PTO for healthy work/life balance.
Company matched 401k (immediate eligibility, no one should have to wait to start saving).
75% company contribution for health insurance for employees and 50% for dependants.
100% company contribution for dental and vision.
Work whatever schedule works best for you. We care about results, not 9-5.
Hardware and tools of your choice
Support for your career development with paid training, conferences, certifications, etc.

Company

Sprocket Security

twittertwittertwitter
company-logo
Sprocket Security provides continuous security testing services.

Funding

Current Stage
Early Stage
Total Funding
$8M
Key Investors
Blueprint Equity
2024-03-28Series A· $8M

Leadership Team

leader-logo
Casey Cammilleri
CEO & Founder
linkedin
leader-logo
Gaurav Kulkarni
Chief Operating Officer
linkedin

Recent News

Tech Startups - Tech News, Tech Trends & Startup Funding
Company data provided by crunchbase