Penetration Tester jobs in United States
cer-icon
Apply on Employer Site
company-logo

NinjaOne · 2 weeks ago

Penetration Tester

NinjaOne is a company that automates IT management to improve visibility, security, and control over endpoints. The Penetration Tester will play a crucial role in enhancing the security of the NinjaOne platform by identifying vulnerabilities and collaborating with engineering teams to implement effective security measures.

Cyber SecurityDocument ManagementInformation ServicesSoftwareSoftware Engineering
check
Growth Opportunities
badNo H1BnoteU.S. Citizen Onlynote

Responsibilities

Perform controlled penetration testing of NinjaOne applications, cloud environments, and infrastructure, demonstrating exploitability and documenting risks and remediation steps
Collaborate with Engineering to validate vulnerabilities, communicate impact, and support secure design and remediation efforts
Develop custom tools or scripts to support penetration testing, automation, and exploit development
Monitor and triage bug bounty submissions, confirming valid findings and routing them to the appropriate teams
Stay current on emerging threats, TTPs, and cybersecurity trends, applying them to evaluate NinjaOne’s exposure and guide security initiatives
Create clear, comprehensive reports and presentations for both technical and executive stakeholders
Promote security awareness across the organization, contributing to policies, best practices, and ongoing security education
Other duties as needed

Qualification

Penetration testingSecurity protocolsPenetration testing toolsSecurity certificationsCustom tool developmentCloud security architectureLinuxWindows OSAnalytical skillsProblem-solving skillsCommunication skills

Required

2+ years of hands-on penetration testing experience
4+ years in a cybersecurity-related role
Strong understanding of security protocols, cryptography, authentication/authorization, and modern attack techniques
Proficiency with penetration testing tools such as Burp Suite, Caido, and related frameworks
Ability to develop custom testing tools or scripts (Java, Kotlin, C++, Python, or Go)
Knowledge of security frameworks and methodologies such as OWASP, NIST, or BSIMM, threat modeling like STRIDE or DREAD, and system hardening standards including CIS and CSA
Solid understanding of Linux and Windows operating systems, enterprise architecture, TCP/IP and UDP networking fundamentals
Strong analytical and problem-solving skills with excellent written and verbal communication

Preferred

Security certifications such as OSCP (highly desired) and/or Security+, CISSP, CISM are a plus
Experience testing or exploiting cloud-native applications; understanding cloud security architecture is a plus

Benefits

Medical, dental, and vision insurance
401(k) plan
Unlimited PTO
Life insurance coverage

Company

NinjaOne

company-logo
NinjaOne serves as an IT platform for endpoint management that enhances productivity, minimizes risks, and lowers overall IT expenses.

Funding

Current Stage
Late Stage
Total Funding
$761.5M
Key Investors
ICONIQ GrowthSummit Partners
2025-02-24Series C· $500M
2024-02-06Series C· $231.5M
2020-03-12Series Unknown· $30M

Leadership Team

E
Eric Herrera
Co-Founder & VP Sales
linkedin
leader-logo
Michael Arrowsmith
CTO
linkedin
Company data provided by crunchbase