> Markdown version of [/jobs/ext/1212897-security-engineer-pentesting](https://www.wearedevelopers.com/jobs/ext/1212897-security-engineer-pentesting). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Security Engineer - Pentesting - **Company:** Intone Networks - **Location:** San Jose, CA, United States - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Active Directory, Application Programming Interfaces (APIs), Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Automation of Tests, Microsoft Azure, Bash Shell, Burp Suite, Cloud Computing Security, Computer Programming, Python (Programming Language), Nmap, Open Web Application Security, Windows PowerShell, Red Team (Cyber Security), Web Applications, Scripting, Large Language Models, GWAPT, Metasploit, Nessus - **Published:** July 9, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=bdbdf7b7287f0c47 ## About the Role Required Qualifications Experience * 5+ years in penetration testing, red teaming, or offensive security * Proven experience testing: Web applications, APIs, and infrastructure * Hands-on exposure to cloud security and enterprise environments Technical Skills * Strong knowledge of: OWASP Top 10 / API Top 10 OWASP Top 10 LLM Network and infrastructure pentesting Identity and Active Directory exploitation * Experience with tools such as: Burp Suite, Metasploit, Nmap BloodHound, Mimikatz, Nessus AI Security * Understanding of: LLM architectures and GenAI use cases RAG pipelines, embeddings, and vector databases * Experience with: Prompt injection testing AI red teaming or model security assessments * Exposure to: LangChain, Semantic Kernel, or similar frameworks Programming * Proficiency in: Python (required) Scripting (Bash/PowerShell) * Ability to develop: Custom testing tools and exploit scripts Preferred Qualifications * Certifications: OSCP, OSEP, or OSCE GPEN, GWAPT, or CRTO Cloud security certifications (AWS/Azure) * Experience with: AI security research or tooling Bug bounty programs or red team operations Key Competencies Strong attacker mindset and creative problem-solving Ability to translate technical findings into business risk Excellent collaboration across engineering and security teams Focus on scalable, repeatable security processes ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers)