Penetration Tester
פורסם אתמול · 0 מועמדים
- 3+ years of hands-on experience in Infrastructure, Networking, System Administration, IT Operations or a related technical field
- 1+ year of hands-on experience in Offensive Security, including Application and/or Infrastructure Penetration Testing
- Hands-on experience identifying and exploiting common security vulnerabilities
- Experience with common Penetration Testing tools (e.g. Burp Suite, Kali Linux, Nmap, Metasploit, Nessus, Wireshark)
- Strong written and verbal communication skills, including technical reporting and client presentations
- Knowledge of OWASP, PTES, MITRE ATT&CK or similar methodologies
- Strong understanding of TCP/IP, Networking, Ports and Protocols
- Hands-on experience with Active Directory, Windows Domains, Authentication and Privilege Escalation
- Experience with internal and external Infrastructure Penetration Testing
- Relevant Offensive Security certifications
חולץ מתיאור המשרה · מתעדכן אוטומטית
תיאור המשרה המלא
המשרה המקורית · נשמר לעיוןOffensive Security Consultant
Tel Aviv | Hybrid
We are looking for an Offensive Security Consultant to join our team and perform hands-on penetration testing and offensive security assessments for local and global clients.
This is a highly technical, hands-on role covering a wide range of security domains, including Infrastructure, Web & Mobile Applications, Red Team, Purple Team, Network Security, Thick Client and Web3.
You will work directly with clients throughout the engagement, from scoping and testing to findings, remediation discussions and final reporting.
What You’ll Do
• Perform hands-on Penetration Testing and Offensive Security assessments across infrastructure, applications and technology environments.
• Conduct internal and external network assessments, Web & Mobile Application testing, Red Team and Purple Team engagements.
• Identify and exploit security vulnerabilities such as SQL Injection, XSS, authentication and authorization weaknesses, misconfigurations and insecure services.
• Use tools such as Burp Suite, Kali Linux, Nmap, Metasploit, Nessus and Wireshark.
• Lead engagements end-to-end, including preparation, execution, findings documentation, risk-based recommendations and reporting.
• Work directly with client technical teams to validate findings, explain risks and support remediation.
• Participate in client meetings, including Kickoff, Scoping, Technical Walkthroughs and Final Report presentations.
• Provide practical hardening and mitigation recommendations.
Requirements
• 3+ years of hands-on experience in Infrastructure, Networking, System Administration, IT Operations or a related technical field.
• 1+ year of hands-on experience in Offensive Security, including Application and/or Infrastructure Penetration Testing.
• Hands-on experience identifying and exploiting common security vulnerabilities.
• Experience with common Penetration Testing tools.
• Strong written and verbal communication skills, including technical reporting and client presentations.
• Ability to work independently while collaborating effectively within a consulting team.
Advantages
• Knowledge of OWASP, PTES, MITRE ATT&CK or similar methodologies.
• Strong understanding of TCP/IP, Networking, Ports and Protocols.
• Hands-on experience with Active Directory, Windows Domains, Authentication and Privilege Escalation.
• Experience with internal and external Infrastructure Penetration Testing.
• Relevant Offensive Security certifications.
• Experience with Azure, AWS or GCP, including Identity, Permissions, exposed services and cloud misconfigurations.
• Experience with Source Code Reviews or Database Security Assessments.
שאלות על המשרה
- המשרה לא ציינה שכר. אנחנו מציגים שכר רק כשהמעסיק מפרסם אותו.
- 3+ years of hands-on experience in Infrastructure, Networking, System Administration, IT Operations or a related technical field, 1+ year of hands-on experience in Offensive Security, including Application and/or Infrastructure Penetration Testing, Hands-on experience identifying and exploiting common security vulnerabilities, Experience with common Penetration Testing tools (e.g. Burp Suite, Kali Linux, Nmap, Metasploit, Nessus, Wireshark), Strong written and verbal communication skills, including technical reporting and client presentations