A-LIGN Logo

A-LIGN

Penetration Tester

Reposted 3 Days Ago
Remote
Hiring Remotely in United States
Junior
Remote
Hiring Remotely in United States
Junior
Perform comprehensive internal, external, wireless, and web application penetration tests and social engineering assessments. Execute vulnerability scans, write client reports, use Kali Linux exclusively from the command line, create Bash scripts, manage files via CLI, and reimage devices and VMs. Collaborate with management to plan and deliver high-quality security testing for diverse clients.
The summary above was generated by AI
About the Role

The Penetration Tester works to execute department activities and deliver high-quality security assessments to a diverse portfolio of high-profile clients. In this role, you will be responsible for the execution of comprehensive security testing across a wide range of industries, utilizing a broad array of tools to discover and mitigate vulnerabilities. As the Penetration Tester, you will provide exceptional technical and creative strategies to help the continued growth of our fast-paced company while operating in an environment free from the pressures of time reporting, chargeability goals, or sales targets. A-LIGN will depend on you as the Penetration Tester to support management, plan and execute sophisticated penetration tests, and ensure the ongoing protection of our clients’ most critical systems and data.

Reports to

Managing Consultant

Pay Classification

Full-Time, Exempt

Responsibilities
  • Execute internal, external, wireless, and web application pen tests 
  • Execute social engineering tests, including phishing, vishing, and physical 
  • Execute vulnerability scans and assessments 
  • Compile and write client reports 
  • Navigate the Kali system from the command line only  
  • Create, modify, move, and write files and documents from the command line only 
  • Create and write Bash scripts from the command line 
  • Reimage devices and virtual machines with Kali Linux
Minimum Qualifications

EDUCATION

  • Master’s or Bachelor’s degree in cybersecurity, management information systems, computer science, or relevant discipline

EXPERIENCE

  • At least 2 years of experience performing network and application pen tests

CERTIFICATIONS

  • OSCP certification
  • Additional relevant pen test certifications preferred

SKILLS

  • Familiarity with a text editor, Nano, Vi, etc 
  • Knowledge of nMap tool and flag options 
  • Solid knowledge of networking, creating SSH tunnels, and listening for them on a receiving device 
  • Ability to meet deadlines with a high degree of motivation 
  • Thrives in a fast-paced environment 
  • Excellent communication skills  
  • Ability to work individually as well as collaboratively  
  • A high degree of motivation
Benefits
  • Healthcare, Dental, and Vision Benefits
  • Employer Paid Life Insurance and Disability Insurance
  • EAP - Employee Assistance Program
  • Pet Insurance
  • 401(k) Plan with Employer Matching
  • Competitive Bonus Structure
  • Tech Allowance
  • Certification Reimbursement
  • Personalized Career Coaching
  • Generous Paid Time Off
  • Paid Office Closure December 25-January 1
  • Vacation Bonus
  • Summer Hours
About A-LIGN 

 A-LIGN is the leading provider of high-quality, efficient cybersecurity compliance programs. Combining experienced auditors and audit management technology, A-LIGN provides the widest breadth and depth of services including SOC 2, ISO 27001, HITRUST, FedRAMP, and PCI. A-LIGN is the number one issuer of SOC 2 and HITRUST and a top three FedRAMP assessor. To learn more, visit a-lign.com.  

Come Work for A-LIGN! 

Apply online today at A-LIGN.com and learn about life at A-LIGN by following us on LinkedIn.  

A-LIGN is an Equal Opportunity Employer. Minorities, women, disabled, and veterans encouraged to apply! 

Similar Jobs

12 Days Ago
Remote
U.S.
Senior level
Senior level
Professional Services • Security • Software • Consulting
Lead AI/LLM-focused security assessments and advanced offensive engagements. Identify vulnerabilities in LLMs, agents, APIs, and cloud AI workloads; perform manual testing, source code review, architecture reviews, and present findings. Mentor teammates and contribute to tooling, research, and methodology development.
Top Skills: Agent-Orchestration FrameworksAi AgentsAimapAmazon BedrockAPIsAWSAzureAzure OpenaiCosmos AiGCPGoGoogle Vertex AiInference Provider ApisJavaJavaScriptLlmsOwasp Top 10PythonSliver
18 Days Ago
Remote
United States
123K-167K Annually
Senior level
123K-167K Annually
Senior level
Aerospace • Information Technology • Professional Services • Security • Software
Perform hands-on application, API, and AWS cloud penetration testing and vulnerability assessments for CMM systems to support ATO packages. Validate NIST 800-53 controls, document findings and exploitation steps, produce SARs, and work with DevSecOps and engineering teams to remediate and retest issues. Support RMF Step 3, CI/CD security, container and cloud security testing, threat modeling, and security integration into Agile sprints.
Top Skills: Api GatewayAWSBurp SuiteCheckmarxCloudtrailCloudwatchConfluenceDatadogDockerEcsEksElk StackFortifyGithub ActionsGitlab Ci/CdGrafanaGuarddutyIamJavaScriptJenkinsJIRAK6 SecurityKubernetesLambdaMetasploitMicroservicesMs TeamsNessusNiktoNmapNode.jsOpenshiftOwasp ZapPower BIPrometheusPythonReactRest ApisS3SharepointSonarqubeVpc
3 Days Ago
Remote
USA
115K-150K Annually
Senior level
115K-150K Annually
Senior level
Information Technology • Software • Cybersecurity • Defense
Perform enterprise web application, API, and database penetration tests; analyze authentication/authorization and business logic flaws; draft technical reports; validate remediations; automate tests; coordinate with owners and SOC teams; research emerging APT threats and threat emulation techniques; support corporate proposals and agency cybersecurity initiatives.
Top Skills: Active DirectoryApi Security Top 10BgpBurp SuiteDhcpDnsFismaHoneynetsHTTPHttpsIcmpJSONKali LinuxLinuxmacOSMetasploitMplsNistOwasp Top 10Post-Exploitation FrameworksRestSmtpSoapSQLTcpUdpWindowsXML

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account