> Markdown version of [/jobs/ext/462463-sr-penetration-tester](https://www.wearedevelopers.com/jobs/ext/462463-sr-penetration-tester). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr. Penetration Tester - **Company:** Amyx, Inc. - **Location:** United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Java (Programming Language), Data Analysis, Software System Penetration Testing, Computing Platforms, Automation of Tests, Bash Shell, Burp Suite, Databases, Linux, Perl (Programming Language), Web Servers, Internet Information Services (IIS), Python (Programming Language), Windows Servers, Network Architecture, Wireless Security, Nmap, Open Web Application Security, PCI Data Security Standards, Ruby, Scripting, SC Clearance, Metasploit, Nessus, Vulnerability Analysis - **Published:** June 1, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=0ac5e9e3535c5d10 ## About the Role Do you have experience in Writing skills?, * Six (6) years proven proficiency in performing extensive vulnerability assessment and penetration testing. * Three (3) years of experience with testing tools, including NESSUS, METASPLOIT, CANVAS, NMAP, Burp Suite, and Kismet * Three (3) years of experience with network vulnerability assessments and penetration testing methods * Three (3) years of experience with writing testing assessment reports * Two (2) ySears of experience with using, administering, and troubleshooting a WINDOWS Server, IIS * Knowledge of TCP/IP protocols and networking architectures * Two (2) years of experience with using, administering, and troubleshooting a major version of Linux. * Two (2) years of experience PCI DSS testing * Possess a certification in penetration testing, such as: + Licensed Penetration Tester (LPT) + Certified Expert Penetration Tester (CEPT) + Certified Ethical Hacker (CEH) + Global Information Assurance Certification Penetration Tester (GPEN) * Excellent written documentation and oral presentation skills * Knowledge of open security testing standards and projects, including OWASP * Knowledge of database, applications, and Web server design and implementation * Experience scripting in Perl, Python, Ruby, Bash, or Java * Experience with wireless LAN security testing * Possess oral and written communication skills. * Required to possess a DOD SECRET Clearance and be eligible for an IT-I Critical Sensitive security clearance or Tier 5 (T5) upon assignment., Employee needs to be able to sit at a workstation for extended periods; use hand(s) to handle or feel objects, tools, or controls; reach with hands and arms; talk and hear. Most positions require ability to work on desktop or laptop computer for extended periods of time reading, reviewing/analyzing information, and providing recommendations, summaries and/or reports in written format. Must be able to effectively communicate with others verbally and in writing. Employee may be required to occasionally lift and/or move moderate amounts of weight, typically less than 20 pounds. Regular and predictable attendance is essential. ## Description * Independently performs penetration testing of applications, systems and enclaves Identifies security flaws in computing platforms and applications and devise strategies and techniques to mitigate identified cybersecurity risks. * Performs application and network penetration testing and wireless security assessments. * Applies offensive cybersecurity testing techniques, coordinate testing projects with internal and external system owners. * Reports the nature of identified cybersecurity risks and recommends risk mitigation measures to improve the cybersecurity posture of the enterprise. * Must have the ability to communicate accurate information ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Coffee with Developers: David Heinemeier Hansson](https://www.wearedevelopers.com/videos/875-coffee-with-developers-david-heinemeier-hansson) - [Let’s write an exploit using AI](https://www.wearedevelopers.com/videos/1004-let-s-write-an-exploit-using-ai) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Coroutine explained yet again 60 years later](https://www.wearedevelopers.com/videos/690-coroutine-explained-yet-again-60-years-later) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Should senior developers refuse interview coding challenges?](https://www.wearedevelopers.com/magazine/29-should-senior-developers-refuse-interview-coding-challenges) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)