Penetration Tester
- Role
- Security
- Experience
- Mid
- Employment
- Full-time
Open to US only. Set where you work from to check your eligibility.
No BS summary
Packetlabs is seeking an experienced Penetration Tester to join their team. The role involves performing penetration testing of web applications, mobile applications, thick clients, and APIs, along with source code review and reverse engineering.
Core skills
Required skills
Optional skills
We are a passionate team of highly trained, proactive, penetration testers. We provide expert-level penetration testing services that are thorough and tailored to help foster a safe digital space where everyone has the right to privacy and security. Packetlabs consultants find weaknesses others overlook and continuously learn new ways to evade controls. We hold ourselves to a very high standard.
To do so, we only hire individuals with the same drive and passion.
Who we are looking for
Core values:
You have a customer-first mentality. Is a great communicator with clients, project managers, and teammates. Rapid responses and on time. You deliver work that you take pride in. Your work is an autograph of your excellence. You dig deeper into every finding. Doesn't stop until impact is proven. You are comfortable being uncomfortable. Goes towards obstacles, not away from them. Consulting isn't your typical job and requires adapting to rapidly changing environments. You are always learning. Cybersecurity is changing every day, and you need to keep up or want to keep up. Be deeply aware of your skillset and be willing to improve. You are Self-motivated and dependable. You are humble. Egos don't have a place at Packetlabs.
Education and experience:
We are looking for an experienced developer/application security tester to join our team:
Solid working knowledge of programming languages, including C, C#, Python, Objective-C, Java, JavaScript, SQL, and frameworks like AngularJS. Familiarity with web services and data exchange formats such as XML, JSON, SOAP, REST, and AJAX. Understanding of AI/LLM weaknesses and flaws in applications. Extensive experience/expertise in using an attack proxy (e.g. Burp Suite)
Preferred if you have 3 - 5 years of experience working in penetration testing and consulting A graduate of a post-secondary college or university degree program. Has at least two years of experience dealing with information security-related tasks. Has professional qualifications (one or more): OSCP, OSWE, BSCP.
OSCP or Burp is mandatory for our organization.
You must be located in Florida.
What you’ll be doing
Your primary role is to perform penetration testing of web applications, mobile applications, thick clients, and APIs. Source code review and whitebox penetration testing to prove the impact of application flaws. Reverse engineering of mobile and thick client applications. You sometimes chain application flaws to other areas, such as cloud and on-prem AD infrastructure. Opportunities for lateral movement into the infrastructure teams are limited and given at the manager's discretion. Develop detailed reports on findings and remediations for impactful findings. You will learn to debrief these findings at both a technical and executive level. Perform SAST and DAST on enterprise, SaaS, and custom in-house applications. Experience in using scanners and knowledge of validation and elimination of false positives. A strong understanding of OWASP in Web, API, Mobile, and AI/LLM is necessary, but you will be asked to go beyond.
Why Us
A leadership team that values substance, quality, and disciplined execution Collaboration with a highly skilled team of security professionals who are passionate about technical excellence and raising the bar Competitive compensation and growth opportunity Paid education and professional development reimbursement to support continued learning, certifications and technical growth Flexible work environment that empowers employees to do their best work Paid volunteer day each year to give back to your community Paid Birthday day off Paid U.S. public holidays Fully remote within Texas or Florida
At-Will Employment
This position is at-will, and this job posting does not constitute an employment contract or guarantee of continued employment.
How to Apply
If this sounds like you, apply today. We’re looking for someone who wants to build a career in cybersecurity and is ready to make an impact
Packetlabs was built by an ethical hacker after seeing vulnerability assessments presented as penetration tests. Our sloga n "Ready for more than a VA scan?" drives at the importance of not providing our clients with a false sense of security.
What you'll do
- Perform penetration testing of web applications, mobile applications, thick clients, and APIs.
- Source code review and whitebox penetration testing to prove the impact of application flaws.
- Reverse engineering of mobile and thick client applications.
- Develop detailed reports on findings and remediations for impactful findings.
- Perform SAST and DAST on enterprise, SaaS, and custom in-house applications.
What they require
- You must be located in Florida.
- Solid working knowledge of programming languages, including C, C#, Python, Objective-C, Java, JavaScript, SQL, and frameworks like AngularJS.
- Familiarity with web services and data exchange formats such as XML, JSON, SOAP, REST, and AJAX.
- Understanding of AI/LLM weaknesses and flaws in applications.
- Extensive experience/expertise in using an attack proxy (e.g. Burp Suite).
- OSCP or Burp is mandatory for our organization.
- Preferred: 3 - 5 years of experience working in penetration testing and consulting.
- Preferred: A graduate of a post-secondary college or university degree program.
- Preferred: At least two years of experience dealing with information security-related tasks.
- Preferred: Professional qualifications (one or more): OSCP, OSWE, BSCP.
Benefits
- Competitive compensation and growth opportunity
- Paid education and professional development reimbursement to support continued learning, certifications and technical growth
- Flexible work environment that empowers employees to do their best work
- Paid volunteer day each year to give back to your community
- Paid Birthday day off
The Project Management Office at Packetlabs supports a passionate team of highly trained, proactive, ethical hackers. We provide expert-level penetration testing services that are thorough and tailored to help foster a safe digital space where everyone has the right to privacy and security. Packetlabs consultants find weaknesses others overlook and continuously learn new ways to evade controls. But technical rigor is only half of what makes an engagement successful. We believe client success is defined not just by what we deliver, but by how our clients feel throughout the process: informed, respected, and genuinely taken care of. Our Project Managers are the human face of that promise, the ones who turn a high-stakes, high-stress security engagement into an experience clients trust, recommend, and return for. We hold ourselves to a very high standard. To do so, we only hire individuals with the same drive and passion. We are seeking a Project Manager who enjoys working in a fast-paced/dynamic environment and loves to challenge themselves continually. This role entails the management of client engagements, including penetration testing, objective-based penetration testing and web & mobile application security testing. Applicants need above-average attention to detail and be self-motivated, professional, and organized.