G

Ethical Hacking, Penetration Testing & Red Team Trainer

GIST Management Solutions

Remote · Contract

1 applicant

Experience
Any
Salary
—
Openings
1
Posted
1 week ago
Work mode
Work from home
Education
Any graduate
Eligibility
Candidates holding any undergraduate degree are welcome to apply. Practical cybersecurity engineering experience and comfort with live online teaching, particularly for U.S. students, are required.
Resume
Required to apply

Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.

Job description

Position Overview

We are seeking a part-time trainer specializing in ethical hacking, penetration testing, and cybersecurity concepts to conduct engaging and practical training sessions. This contractual role involves delivering 2-hour interactive online classes, primarily targeting learners in the USA, focusing on imparting hands-on knowledge related to offensive and defensive security techniques.

Training Responsibilities

  • Conduct instructor-led sessions covering ethical hacking methodologies, reconnaissance, network scanning, vulnerability analysis, and web application penetration testing.
  • Explain all phases of the penetration testing lifecycle, including authorization, scoping, information gathering, validation, evidence documentation, and reporting.
  • Demonstrate usage of security tools such as Kali Linux, Nmap, and Burp Suite through live demonstrations and controlled lab exercises.
  • Develop course materials including presentations, instructions for practical labs, assignments, and relevant learning support tools tailored to real-world scenarios.
  • Manage virtual lab environments with intentionally vulnerable applications for experiential learning.
  • Guide students through Linux commands, network service enumeration, web traffic inspection, and structured vulnerability exploitation practices.
  • Highlight common web vulnerabilities, root causes, impacts, and remediation strategies.
  • Bridge offensive security approaches with defensive tactics such as analyzing logs, indicators of compromise, incident response procedures, and attack lifecycle understanding.
  • Evaluate student comprehension via exercises, Q&A, discussions, and provide constructive feedback.
  • Handle technical troubleshooting during sessions, time management, and coordination with program teams for training delivery.

Required Expertise

  • Strong practical knowledge of ethical hacking principles, penetration testing scopes, professional conduct, and differences between vulnerability assessments, penetration tests, and red team operations.
  • Proficiency with Kali Linux, including command-line operations, permission management, package handling, and security tool usage.
  • Advanced understanding of networking fundamentals such as TCP/IP, DNS, common ports and protocols, host discovery, network mapping, scanning methodologies including SYN and UDP scans, and service enumeration.
  • In-depth knowledge of web application security basics covering HTTP/HTTPS protocols, session and cookie management, authentication, access controls, and OWASP Top 10 vulnerabilities including SQL injection, XSS, CSRF.
  • Hands-on familiarity with Burp Suite setup, proxy interception, HTTP request/response inspection, and controlled test execution.
  • Capability to analyze vulnerability scanner results, distinguish false positives, validate threats, and advise on effective remediation.
  • Understanding of defensive security concepts such as attack lifecycle, security log analysis, indicator detection, incident investigation, and mitigation strategies.

Experience & Credentials

  • Proven professional background in ethical hacking, penetration testing, vulnerability analysis, or cybersecurity roles.
  • Previous experience conducting technical trainings, workshops, bootcamps, or mentoring programs.
  • Ability to discuss security assessment findings, limitations, and remediation without sharing confidential information.
  • Preferred academic qualification in Computer Science, IT, Cybersecurity or related fields; practical experience may substitute formal education.
  • Certifications like OSCP, CEH, eJPT, or PNPT strengthen candidacy.
  • Bonus skills include basic scripting in Python or Bash, experience in setting up training labs, and exposure to blue team security collaborations.

Additional Details

This role is strictly a part-time, contract-based trainer engagement and does not constitute a full-time employment offer. Applicants seeking full-time cybersecurity or network security engineering roles are advised not to apply. The sessions are scheduled either early mornings (5:30-7:30 AM) or evenings (8:00-10:00 PM), tailored for U.S. time zones.

Applicants must possess solid hands-on experience in cybersecurity engineering and be comfortable delivering live online technical training to diverse learner groups.

Minimum education

Bachelor's Degree

How they work

Communication Problem Solving Attention to Detail Time Management Adaptability
🤖
Online · instant AI help
Broxer