- Experience
- 3+ yrs
- Salary
- —
- Openings
- 1
- Posted
- 1 day ago
- Work mode
- In office
- Education
- Diploma or Degree in Cybersecurity, Computer Science or IT
- Resume
- Required to apply
Where you'll work
Sign in to tell us what does and doesn't work for you here — it sharpens every match we show you.
Job description
Job Overview
We are seeking a skilled Penetration Tester to proactively identify, evaluate, and exploit security weaknesses in networks, applications, and cloud platforms by employing ethical hacking methods. The goal is to enhance the organization's security framework by delivering actionable vulnerability assessments and comprehensive risk analyses.
Qualifications
- Diploma or degree in Cybersecurity, Computer Science, or Information Technology.
- Minimum of three years practical experience in penetration testing.
- Proficient in web application and API security testing.
- Solid knowledge of network security concepts including TCP/IP, HTTP/HTTPS, DNS, and related protocols.
- In-depth familiarity with OWASP Top 10 vulnerabilities and typical web security threats.
- Experience in operating Linux and Windows systems.
- Understanding of Active Directory, including privilege escalation and lateral movement techniques.
- Ability to script or program in Python, PowerShell, or Bash.
- Hands-on expertise with penetration testing tools such as Burp Suite, Nmap, Metasploit, Kali Linux, Wireshark, BloodHound, Impacket, and Nessus.
- Strong analytical mindset, problem-solving abilities, and technical report compilation skills.
Preferred qualifications:
- Experience conducting penetration tests on AWS, Azure, or Google Cloud Platform environments.
- Professional security certifications like OSCP, OSWE, OSEP, CREST, GPEN, or CEH.
Key Responsibilities
- Execute penetration testing on web applications, APIs, networks, infrastructures, and clouds.
- Perform vulnerability scans and confirm vulnerabilities using controlled exploit methods.
- Detect security gaps such as authentication failures, injection flaws, misconfigurations, and escalation risks.
- Carry out both internal and external network security assessments.
- Perform detailed Active Directory security audits focusing on privilege escalation and credential exploitation.
- Test security controls for REST APIs, mobile apps, and cloud services as necessary.
- Create and customize scripts or tools to facilitate penetration testing activities.
- Interpret results to evaluate business impact and prioritize security risks.
- Compile in-depth penetration testing reports documenting findings, evidences, risk levels, and remediation guidance.
- Collaborate with IT and security teams to verify and re-test vulnerability mitigation efforts.
- Stay informed on the latest vulnerabilities, attack methods, and cybersecurity trends.
Additional Information
Interested candidates are encouraged to submit their updated CVs promptly via email. Confidentiality is strictly maintained, and only shortlisted candidates will be contacted. This recruitment complies with EA Licence No. 07C5639. Applicants consent to their personal data being used in accordance with company privacy policies for recruitment purposes.
Minimum education
Diploma / ITI / Vocational