Coalfire logo
Coalfire
Posted 46 days agoVerified live 1d ago

Associate, Compliance Security Penetration Tester

Brief overview

Remote
UndergradOr in progress
1+ yrsMinimum
10 H-1B approvalsDept. of Labor
3 green cardsCertified filings
Web Application Penetration TestingNetwork Penetration TestingPythonPowerShellShell ScriptingRubyIT Security Compliance Frameworks PCIIT Security Compliance Frameworks FISMAIT Security Compliance Frameworks HIPAAIT Security Compliance Frameworks FedRAMPIT Security Compliance Frameworks HITRUSTIT Security Auditing and ComplianceEnterprise IT EnvironmentsReverse EngineeringCCompiler ToolchainsCommunication and Presentation

About the company

Coalfire is the premier Cybersecurity and Compliance Services leader for the tech, healthcare, and finance industries.

Visa sponsorship history

4 years sponsoring, last filed FY2026

Data powered by U.S. Department of Labor. This does not guarantee sponsorship for this specific role.
10H-1B approved
100%approval rate
3new H-1B hires
3PERM certified
$129,791median wage / yr
H-1B Petition ApprovalsVisas USCIS actually granted: the strongest sign the company sponsors.
20232
20244
20254
LCA Certified ApplicationsAn early filing step, not a visa approval: it signals intent, not confirmed sponsorship.
20231
20241
20251
20261
Green Card (PERM) FilingsCertified green card filings: a long-term commitment to international hires.
20241
20252
Top sponsored roles
ConsultantInformation Security AnalystPrincipal Consultant, Application Security
Sponsored employees from
India

Job description

Summary

Coalfire is a cybersecurity company that helps clients address complex cybersecurity challenges. The Associate, Compliance Security Penetration Tester conducts security assessments and simulates cyberattacks across networks, applications, cloud environments, wireless systems, and social engineering scenarios. The role also supports client advising, engagement management, reporting, quality assurance, process development, and mentoring.

Responsibilities

  • Advises clients on technical security or compliance activities
  • Manages priorities and tasks to achieve delivery utilization targets
  • Operates with professionalism both internally and with clients
  • Ensures quality products and services are delivered on time
  • Continues to develop professional skills with relevant industry specific certifications. Maintains strong depth of knowledge in the practice area
  • Collaborates with project managers, quality management, sales, and other delivery team members to drive customer satisfaction and meet project deliverables
  • Develop processes, procedures, and methodologies to enhance testing processes and experience
  • Assist with report generation and quality assurance processes
  • Develop client relationships
  • Assist in the scoping of prospective engagements, leading engagements from initial stages through implementation and remediation
  • Manage project escalations of current testing being conducted
  • Mentor and develop less experienced staff
  • Contribute to the Penetration Testing Team overall success by managing your team to meet various business objectives and metrics

Skills

  • Bachelor's degree (four-year college or university) or equivalent combination of education and work experience
  • 3+ years' experience in information security with Web Application and Network penetration testing experience
  • Experience working with enterprise environments
  • Hands-on experience with scripting languages such as Python, Powershell, Shell, or Ruby
  • Experience with one or more IT security compliance frameworks, such as PCI, FISMA, HIPAA, FEDRAMP, or HITRUST
  • One to three (1-3) years of experience in an IT Security Audit and/or Compliance role
  • Experience interacting with management in a consultative manner
  • Strong IT understanding with respect to networks, servers, workstations, and applications
  • Excellent communication and presentation skills
  • Ability to travel up to 20%
  • Deep experience engaging clientele in consulting-related environments
  • Experience leading penetration team engagements
  • Reverse engineering malware, data obfuscators, or ciphers
  • An aptitude for technical writing, including assessment reports, presentations, and operating procedures
  • Strong understanding of security principles, policies, and industry best practices
  • Experience working with C and various compiler toolchains
  • Community contributions or participation including
  • CTF, Hack-the-box, or cyber-defense competitions
  • Speaking or presentations
  • Public security research

Qualifications

Must Haves

  • Bachelor's degree (four-year college or university) or equivalent combination of education and work experience
  • 3+ years' experience in information security with Web Application and Network penetration testing experience
  • Experience working with enterprise environments
  • Hands-on experience with scripting languages such as Python, Powershell, Shell, or Ruby
  • Experience with one or more IT security compliance frameworks, such as PCI, FISMA, HIPAA, FEDRAMP, or HITRUST
  • One to three (1-3) years of experience in an IT Security Audit and/or Compliance role
  • Experience interacting with management in a consultative manner
  • Strong IT understanding with respect to networks, servers, workstations, and applications
  • Excellent communication and presentation skills
  • Ability to travel up to 20%

Nice to Haves

  • Deep experience engaging clientele in consulting-related environments
  • Experience leading penetration team engagements
  • Reverse engineering malware, data obfuscators, or ciphers
  • An aptitude for technical writing, including assessment reports, presentations, and operating procedures
  • Strong understanding of security principles, policies, and industry best practices
  • Experience working with C and various compiler toolchains
  • Community contributions or participation including
  • CTF, Hack-the-box, or cyber-defense competitions
  • Speaking or presentations
  • Public security research

Benefits

  • Flexible work model, allowing employees to choose when and where they work most effectively, whether at home or in an office
  • Employee resource groups
  • In-person and virtual events
  • Paid parental leave
  • Flexible time off
  • Certification and training reimbursement
  • Digital mental health and wellbeing support membership
  • Comprehensive insurance options

More jobs like this