REMOTE- Senior Penetration Tester / Offensive Security Specialist
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
+14 more
Job description
Seeking an experienced Penetration Testing and Offensive Security Specialist to lead and execute advanced adversarial simulations across enterprise environments. The role focuses on identifying exploitable weaknesses across network, application, cloud, human, and physical layers, emulating real-world attacker techniques. The ideal candidate will bring hands-on expertise in multi-vector penetration testing, red teaming, exploit development, and adversarial simulation, with the ability to provide actionable remediation insights to strengthen enterprise security posture., 1. Penetration Testing & Red Team Operations
- Conduct end-to-end penetration testing engagements, including:
- Internal network assessments
- External perimeter testing
- Web application and API security testing
- Cloud and container security testing
- Mobile (iOS) and thick client application assessments
- Wireless infrastructure testing
- Execute advanced attack simulations to emulate real-world adversary tactics, * Identify, validate, and exploit vulnerabilities using techniques such as:
- SQL Injection
- Cross-Site Scripting (XSS)
- Privilege Escalation
- Credential harvesting and manipulation
- Perform:
- Vulnerability chaining and lateral movement simulations
- Post-exploitation persistence and privilege escalation
- Provide risk-rated findings with clear remediation guidance, * Develop and maintain:
- Custom exploitation scripts and toolkits
- Automation workflows for reconnaissance and exploitation
- Leverage:
- Python scripting and Linux toolchains
- AI/GenAI-assisted tooling for attack simulation and reconnaissance, * Collaborate with defensive teams to:
- Validate detection and response capabilities
- Simulate attack scenarios and measure control effectiveness
- Support:
- Breach simulations
- Ransomware scenario testing
Requirements
Core Technical Skills
- Proven experience in:
- Multi-vector penetration testing (Network, Web, Cloud, Mobile, Wireless, Physical)
- Red teaming and adversary emulation
- Exploit execution and vulnerability validation
- Strong understanding of:
- MITRE ATT&CK framework
- Modern attack techniques and threat actor TTPs, + Nmap, Wireshark, Burp Suite, Metasploit (or similar toolsets)
- Experience with:
- Web application security tools
- Network and protocol analysis tools __________________
Automation & Scripting
- Strong development experience in:
- Python
- Linux environments
- Ability to build:
- Custom scripts, payloads, and automation frameworks __________________
Complementary Experience (Preferred)
- Exposure to:
- Investigations and compromise assessments
- Threat Intelligence and IOC analysis
- Experience participating in:
- Red Team vs Blue Team or Purple Team exercises, * Offensive Security Certified Professional (OSCP)
- Certified Ethical Hacker (CEH)
- GIAC Security Essentials (GSEC)
- Other advanced Red Team or exploit development certifications are a plus
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Apply on dice.comGood distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Dev Digest 134 - Where pixels sing?
Fully Remote Software Engineer Jobs
Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents
The Best Job Search Websites of 2025