Senior Penetration Tester - Remote Opportunity
About the Role
We are looking for a Senior Penetration Tester to join our team of experienced ethical hackers. In this remote position, you will play a crucial role in identifying vulnerabilities before attackers can exploit them. You will work on approximately 30 projects annually, collaborating with talented individuals from whom you can learn, while being treated as a valued team member rather than just a number.
What You'll Do
- Conduct hands-on penetration testing on web applications, APIs, cloud services, and infrastructure, with occasional projects involving mobile applications and IoT/OT.
- Collaborate in teams of 2-3 on 80% of projects, taking full responsibility for quality.
- Identify critical vulnerabilities across various projects, contributing to the team's annual discoveries.
- Engage in active learning with OWASP, MITRE ATT&CK frameworks, and the latest exploit techniques.
- Prepare detailed reports with exploitation documentation and actionable recommendations.
- Mentor junior colleagues and share knowledge within the team.
Requirements
- 2+ years of experience in penetration testing web applications and infrastructure.
- Deep understanding of web vulnerabilities (OWASP Top 10, injection, authentication bypass, XSS, XXE, SSRF, etc.).
- Knowledge of exploitation and post-exploitation techniques on Linux/Windows systems.
- Familiarity with Active Directory, network protocols (TCP/IP, DNS, HTTP/S), and cloud environments.
- Relevant certifications (OSCP, OSWE, OSEP, OSCE, or similar).
- Ability to work independently and collaboratively on complex projects.
- Advanced English for technical documentation and communication.
- A strong desire to continuously learn, as the field evolves daily.
Nice to Have
- Experience with social engineering and Red Teaming.
- Knowledge of cloud security audits.
- Familiarity with mobile and desktop application testing.
What We Offer
- A supportive team environment where you can learn from others, even as a senior.
- Management that listens and values your opinions.
- Opportunities for technical growth, including paid training and certifications.
- Flexible working hours and a hybrid model in Prague or full remote within Czechia/Slovakia.
- Five weeks of vacation for work-life balance.
- A flat hierarchy where you are close to leadership, not just a cog in the machine.
This Senior Penetration Tester role offers a unique opportunity to work remotely with a supportive team while tackling critical security challenges. Enjoy flexible hours and opportunities for growth.
Who Will Succeed Here
Proficiency in penetration testing tools such as Burp Suite, Metasploit, and Nmap, with hands-on experience in identifying vulnerabilities in web applications and APIs.
Strong self-motivation and discipline to work effectively in a fully remote environment, demonstrating the ability to manage time efficiently while handling multiple projects simultaneously.
A mindset focused on continuous improvement and learning, with familiarity with frameworks like OWASP and MITRE ATT&CK to stay updated on the latest security threats and mitigation strategies.
Learning Resources
Career Path
Market Overview
Skills & Requirements
Domain Trends
Industry News
Loading latest industry news...
Finding relevant articles from the last 6 months