Security Engineer - Pentesting

Intone Networks
San Jose, CA, United States
about 1 month ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Working hours
Regular working hours
Job source

Tech stack

Active Directory Application Programming Interfaces (APIs) Artificial Intelligence Amazon Web Services Software System Penetration Testing Automation of Tests Microsoft Azure Bash Shell Burp Suite Cloud Computing Security Computer Programming Python (Programming Language)
+10 more
Nmap Open Web Application Security Windows PowerShell Red Team (Cyber Security) Web Applications Scripting Large Language Models GWAPT Metasploit Nessus

Requirements

Required Qualifications Experience * 5+ years in penetration testing, red teaming, or offensive security * Proven experience testing: Web applications, APIs, and infrastructure * Hands-on exposure to cloud security and enterprise environments Technical Skills * Strong knowledge of: OWASP Top 10 / API Top 10 OWASP Top 10 LLM Network and infrastructure pentesting Identity and Active Directory exploitation * Experience with tools such as: Burp Suite, Metasploit, Nmap BloodHound, Mimikatz, Nessus AI Security * Understanding of: LLM architectures and GenAI use cases RAG pipelines, embeddings, and vector databases * Experience with: Prompt injection testing AI red teaming or model security assessments * Exposure to: LangChain, Semantic Kernel, or similar frameworks Programming * Proficiency in: Python (required) Scripting (Bash/PowerShell) * Ability to develop: Custom testing tools and exploit scripts Preferred Qualifications * Certifications: OSCP, OSEP, or OSCE GPEN, GWAPT, or CRTO Cloud security certifications (AWS/Azure) * Experience with: AI security research or tooling Bug bounty programs or red team operations Key Competencies Strong attacker mindset and creative problem-solving Ability to translate technical findings into business risk Excellent collaboration across engineering and security teams Focus on scalable, repeatable security processes

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:52 min

Refining the agent by automating physical hardware restarts

Marc Plogas Marc Plogas · WWC Europe 2026

51 sec

Exploring offensive security with red team tooling

Stefania Chaplin · WWC 2022

2:39 min

Shifting security testing focus toward critical application logic problems

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC Europe 2026

1:19 min

Enhancing product safety through continual red teaming operations

Rebekka Weiss Rebekka Weiss +1 · WWC 2025

Videos

See all

Related articles

See all