Summary
CyberCX is the leading provider of professional cyber security and cloud services across Australia and New Zealand. They are seeking a Senior Penetration Tester responsible for conducting penetration testing and vulnerability assessments, providing security expertise to clients, and contributing to a culture of collaboration and empowerment.
Responsibilities
- Deliver application, network, systems, and infrastructure penetration tests for customers, using creative and outside the box solutioning to explore unconventional attack paths
- Ability to perform the top five and emerging STA services offered by the Practice to a high standard with adequate supervision
- Prepare high-quality reports detailing security issues, making recommendations, and identifying solutions, contribute to presentations and discussions with customers around testing performed, key results, recommendations, and the next steps
- Build and promote strong, long-lasting relationships with a diverse range of customers, and identify and explore opportunities within existing and new customers
- Contribute to a culture of empowerment, collaboration, and accountability through consistent employee engagement
- Assist with R&D, innovation, and practice improvement activities, under supervision
- Stay current with emerging threats, tools, and techniques in the cybersecurity landscape
- Meet utilization targets and ensure on-budget delivery
Skills
- Applicants must be US Citizens eligible for Security Clearance
- Proficiency in penetration testing tools such as Metasploit, Burp Suite, Nmap, and custom scripting in Python, Bash, or JavaScript
- Penetration testing certifications such as OSCP preferred but not essential
- A minimum of 2 years as a security testing practitioner / cyber practitioner in which you have developed capability in managing client expectations, time management, technical delivery and report writing
- Excellent written and verbal communication skills with the ability to explain technical findings to both technical and non-technical stakeholders
- Strong knowledge of networking, operating systems (Linux, Windows, Active Directory), and web application security
- Tertiary qualification in information systems, software development or a similar field, or equivalent industry experience
Qualifications
Must Haves
- Applicants must be US Citizens eligible for Security Clearance
Nice to Haves
- Proficiency in penetration testing tools such as Metasploit, Burp Suite, Nmap, and custom scripting in Python, Bash, or JavaScript
- Penetration testing certifications such as OSCP preferred but not essential
- A minimum of 2 years as a security testing practitioner / cyber practitioner in which you have developed capability in managing client expectations, time management, technical delivery and report writing
- Excellent written and verbal communication skills with the ability to explain technical findings to both technical and non-technical stakeholders
- Strong knowledge of networking, operating systems (Linux, Windows, Active Directory), and web application security
- Tertiary qualification in information systems, software development or a similar field, or equivalent industry experience