Penetration Tester

IBA InfoTech Inc.
Washington, DC, United States
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Java (Programming Language) .NET Framework Microsoft Windows Android Software Development Apple IOS Software System Penetration Testing Bash Shell C Sharp (Programming Language) C++ (Programming Language) Static Program Analysis Code Review Databases
+18 more
Perl (Programming Language) Mobile Application Software Python (Programming Language) Nmap Open Web Application Security Shell Script Software Engineering SQL Injection Wireshark Web Applications WS-Security Webinspect Scripting Cross-Site Scripting (XSS) Information Technology Metasploit Nessus Appscan

Requirements

  • Security, Software Development, Networking, and/or Systems Administrator Experience
  • Deep understanding of 3-tiered Web Application and Mobile Application Architectures
  • Manual Penetration Testing Experience (i.e. mapping applications, injecting SQLi, XSS, exploit creation)
  • Must have Commericial Web Application Tool Experience (i.e. Burp, AppScan, WebInspect)
  • Network Penetration Testing Tool Experience (i.e. Nmap, Nessus, Wireshark, Metasploit, Hydra, John)
  • Exceptional communication skills, with the ability to explain the technical details of OWASP Top 10 and other vulnerabilities from C-levels to developers in a large professional environment

Desired:

  • Mobile Application Penetration Testing (i.e. iOS, Android, Windows, Blackberry)
  • Database Experience (DBA or security penetration testing)
  • Web Services Security Penetration Testing Experience
  • Software Development and/or Scripting Experience in .NET, C++, Java, C#, perl, python or bash
  • Source Code Review (aka Static Analysis) Experience
  • Excellent technical writing skills and attention to detail

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on ibainfotech.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:52 min

Refining the agent by automating physical hardware restarts

Marc Plogas Marc Plogas · WWC Europe 2026

3:31 min

Setting up a penetration testing environment for web apps

Anna Bacher · LIVE

2:22 min

Structuring critical internal and external penetration testing procedures

Jasmin Azemović Jasmin Azemović · WWC 2023

2:39 min

Shifting security testing focus toward critical application logic problems

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC Europe 2026

Videos

See all

Related articles

See all