Penetration Tester
Role details
Job location
Tech stack
Job description
Conduct internal/external penetration testing, web application, API, and cloud security assessments across AWS, Azure, and GCP environments. Identify, exploit, document, and validate vulnerabilities through ethical hacking and remediation testing. Plan and execute red team/adversary simulation exercises, including attack lifecycle activities such as initial access, privilege escalation, lateral movement, and persistence. Perform authorized social engineering and phishing simulations to evaluate security awareness and defensive capabilities. Leverage AI and LLM-based tools to enhance reconnaissance, automation, and offensive security workflows. Assess AI/ML application security risks, including prompt injection, jailbreaks, data leakage, model abuse, and RAG security vulnerabilities. Develop security tooling, scripts, and methodologies while staying current with emerging threats, MITRE ATT&CK, OWASP, and AI security frameworks. Collaborate with security teams and stakeholders to improve detection, response, and overall security posture.
Requirements
We are seeking a highly skilled Penetration Tester with a strong focus on AI-enabled security testing. This role combines traditional offensive security testing with advanced adversary simulation and AI system security assessment. This position requires a strong technical foundation, an adversarial mindset, and the ability to communicate risk effectively to both technical and non-technical stakeholders., Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or equivalent experience. 3 7+ years of experience in penetration testing, red teaming, or offensive security. Experience using AI tools to automate or enhance technical workflows. Understanding of AI/LLM architectures and common attack vectors against AI systems. Demonstrated experience conducting full-scope penetration tests and adversary simulations. Strong understanding of networking, operating systems (Windows and Linux), Active Directory, and web technologies. Experience with industry-standard tools such as Burp Suite, Metasploit, Nmap, BloodHound, and command-and-control frameworks. Proficiency in Python and scripting (Bash or PowerShell).
Benefits & conditions
COMP: Up to $70/HR depending on candidate's experience, etc. WHY WORK WITH BCT: At BCT, we don't just place people, we support them. Here's what we offer: Up to 60% paid medical insurance for employees $50,000 life insurance policy on us Coverage for home, auto, pets, legal services & identity theft Dental & Vision insurance, 401K match, Short and Long-Term Disability Flexible Spending Account for healthcare and dependent care Anniversary bonuses to celebrate your commitment Referral bonuses from $500 $2,000, bring great people with you!