Job Description
We are looking for a highly skilled Senior Ethical Hacker to join our cybersecurity team. As an Ethical Hacker, you will help organizations identify, assess, and remediate security vulnerabilities before they can be exploited by malicious actors. You will perform penetration testing on web applications, APIs, cloud environments, networks, and internal infrastructure while working closely with development, DevOps, and IT teams to strengthen security across all systems.
This is a full-time remote position offering the opportunity to work on diverse security engagements, modern technologies, and challenging cybersecurity projects. You will collaborate with experienced security professionals and contribute to protecting enterprise environments against evolving cyber threats.
Responsibilities
- Conduct web application, mobile application, network, cloud, and API penetration testing.
- Perform vulnerability assessments and validate security findings.
- Execute internal and external penetration tests using both manual and automated techniques.
- Simulate real-world cyberattacks through red team exercises.
- Identify security weaknesses and recommend practical remediation solutions.
- Prepare detailed technical reports with risk ratings, proof-of-concept exploits, and mitigation recommendations.
- Work closely with software developers to resolve security vulnerabilities.
- Review application source code for common security flaws when required.
- Assess cloud infrastructure security in AWS, Azure, or Google Cloud environments.
- Perform Active Directory security assessments and privilege escalation testing.
- Stay updated on emerging cyber threats, attack techniques, and security tools.
- Develop and maintain penetration testing methodologies, scripts, and automation tools.
- Support incident response investigations when security incidents occur.
- Participate in security awareness initiatives and technical knowledge sharing.
- Ensure testing activities comply with organizational security policies and industry standards.
Requirements
- Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field (or equivalent practical experience).
- Minimum of 4 years of professional experience in penetration testing or offensive security.
- Strong understanding of networking concepts, TCP/IP, DNS, HTTP/HTTPS, VPNs, and firewalls.
- Hands-on experience with Kali Linux, Burp Suite Professional, Metasploit, Nmap, Wireshark, Nessus, and OWASP ZAP.
- Solid knowledge of the OWASP Top 10, Common Vulnerabilities and Exposures (CVEs), and secure coding practices.
- Experience testing web applications, REST APIs, cloud platforms, and enterprise networks.
- Proficiency in Python, Bash, or PowerShell scripting.
- Knowledge of Windows, Linux, Active Directory, and cloud security principles.
- Familiarity with Docker, Kubernetes, and container security is a plus.
- Strong analytical, troubleshooting, and problem-solving skills.
- Excellent written and verbal communication skills.
- Ability to work independently in a fully remote environment while managing multiple projects.
- Industry certifications such as CEH, OSCP, PNPT, GPEN, or CISSP are highly desirable.
Benefits
- Competitive annual salary with performance-based bonuses.
- Fully remote work environment with flexible working hours.
- Professional development and certification sponsorship.
- Paid training and continuous learning opportunities.
- Paid annual leave and public holidays.
- Collaborative and supportive cybersecurity team.
- Opportunity to work on enterprise-level security projects using cutting-edge technologies.
More Information
- Remote Policy / Work Mode Remote
- Address 500 Technology Drive
- Minimum Salary (USD) 90000
- Maximum Salary (USD) 140000
- Salary Type Yearly
- Minimum Experience Required 4 Years
- Experience Level Senior Level
- Daily Working Hours 8 Hours
- Required Skills Penetration Testing, Ethical Hacking, Kali Linux, Burp Suite, Metasploit, Nmap, Wireshark, OWASP Top 10, Web Application Security, Network Security, Active Directory Security, Linux Administration, Windows Security, Python, Bash Scripting, PowerShell, Vulnerability Assessment, Red Teaming, SIEM, Cloud Security (AWS/Azure), Report Writing, Communication Skills
