A-LIGN Logo

A-LIGN

Senior Penetration Tester Consultant

Reposted 15 Days Ago
Easy Apply
Remote
Hiring Remotely in United States
Senior level
Easy Apply
Remote
Hiring Remotely in United States
Senior level
The Senior Penetration Tester conducts various penetration tests, social engineering assessments, vulnerability scans, and reports writing to enhance client security measures.
The summary above was generated by AI
About the Role

The Senior Penetration Tester works to test and improve the security of our clients’ systems and data across a wide range of industries. In this role, you will be responsible for the execution of all types of penetration tests, social engineering tests, and vulnerability scans, as well as compiling and writing client reports. As the Senior Penetration Tester, you will provide exceptional testing and high-quality deliverables to clients to help continued growth of our fast-paced company

Reports to 

Managing Consultant  

Pay Classification

Full-Time

Responsibilities
  • Execute internal, external, wireless, and web application pen tests 
  • Perform social engineering tests, including phishing, vishing, and physical 
  • Complete vulnerability scans and assessments 
  • Compile and write client reports 
  • Reimage devices and virtual machines with Kali Linux
  • Create and write Bash scripts from the command line
  • Create, modify, move, and write files and documents from the command line only
Minimum Qualifications 

EDUCATION  

  • Master’s or Bachelor’s degree in cybersecurity, management information systems, computer science, or relevant discipline

EXPERIENCE  

  • At least 5 years of experience with penetration tests and vulnerability assessments; including internal, external, wireless, mobile, and web application testing
  • Performed network and application pen tests
  • Programming experience in one or more of the following languages: Ruby, Python, Perl, C, C++, Java, and C#
  • Proficiency in working with both Windows and Linux operating systems
  • Demonstrated ability to perform penetration testing from the network layer to the web application layer, culminating in the completion of a quality report
  • Familiarity with major cloud CSPs such as AWS, Azure, AliCloud, Google Cloud, and Rackspace, including their associated internal components and controls
  • Solid understanding of SOAP/REST/JSON web APIs and methodologies for testing them
  • Working knowledge of standard security assessment tools (e.g., NMAP, metasploit, Scapy, Burp Suite, SSLStrip, Ettercap, Nessus, Nikto, AppScan)
  • Involvement with CTF (Capture The Flag) and exploitation tools (HackTheBox profile preferred)
  • Background in Security Operations, Incident Response, forensics, red-teaming, or DevOps preferred

CERTIFICATIONS 

One of the following certifications required:

  • OSCP/eCPPT or other related penetration testing certifications
  • eWPT or other applicable web app cert

Two of the following certifications required:

  • GWAPT, CEPT, LPT, GPEN, CPT, GXPN, PenTest+, GAWN, GMOB, CRTOP

SKILLS 

  • Background and understanding on networking, firewalls, and subnets
  • Understanding of security best practices
  • Thrives in a fast-paced environment
  • Excellent communication skills 
  • Ability to work individually as well as collaboratively  
  • A high degree of motivation
  • A security focused mindset
  • Proficiency with scripting languages (Python, Bash, JavaScript, PowerShell)
  • Ability to create, modify, write documents from command line, and write Bash scripts to automate or facilitate tasks 
Benefits
  • Healthcare, Dental, and Vision Benefits
  • Employer Paid Life Insurance and Disability Insurance
  • EAP - Employee Assistance Program
  • Pet Insurance
  • 401(k) Plan with Employer Matching
  • Competitive Bonus Structure
  • Technology Allowance
  • Certification Reimbursement
  • Personalized Career Coaching
  • Generous Paid Time Off
  • Paid Office Closure December 25-January 1
  • Vacation Bonus
  • Summer Hours 
About A-LIGN 

A-LIGN is the leading provider of high-quality, efficient cybersecurity compliance programs. Combining experienced auditors and audit management technology, A-LIGN provides the widest breadth and depth of services including SOC 2, ISO 27001, HITRUST, FedRAMP, and PCI. A-LIGN is the number one issuer of SOC 2 and HITRUST and a top three FedRAMP assessor. To learn more, visit a-lign.com.

Come Work for A-LIGN!

Apply online today at A-LIGN.com and learn about life at A-LIGN by following us on LinkedIn. 

A-LIGN is an Equal Opportunity Employer. Minorities, women, disabled, and veterans encouraged to apply!

Top Skills

Alicloud
Appscan
AWS
Azure
Bash
Burp Suite
C
C#
C++
Ettercap
GCP
Java
Kali Linux
Metasploit
Nessus
Nikto
Nmap
Perl
Python
Rackspace
Ruby
Scapy
Sslstrip

Similar Jobs

An Hour Ago
Remote
United States of America
173K-223K Annually
Senior level
173K-223K Annually
Senior level
Blockchain • Fintech • Payments • Financial Services • Cryptocurrency • Web3
Lead Circle's global fraud risk management program, overseeing analytics, compliance with regulations, and investigations into fraud. Collaborate with stakeholders to assess and mitigate fraud risks.
Top Skills: AIData AnalyticsFraud Detection SystemsMachine Learning
An Hour Ago
Remote
United States of America
30K-41K Hourly
Junior
30K-41K Hourly
Junior
Blockchain • Fintech • Payments • Financial Services • Cryptocurrency • Web3
As Guest Experience Coordinator, you will manage reception duties, provide guest services, and support special projects, ensuring a premium experience for visitors.
Top Skills: Google WorkspaceRingcentralSlack
An Hour Ago
Remote or Hybrid
United States
67K-84K Annually
Mid level
67K-84K Annually
Mid level
Digital Media • Gaming • Information Technology • Software • Sports • Esports • Big Data Analytics
As a Senior Community Associate, you'll engage with players on Discord, create campaigns, monitor community sentiment, and support during high-demand periods.
Top Skills: Discord

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account