Back to Jobs

Remote Penetration Tester jobs Jobs in reputed company Pass, Texas | Remote Work From Home

Remote, USA Full-time Posted 2026-07-28
**Job Title & Location** **Remote Penetration Tester (Remote)** – reputed company reputed company with our reputed company schedule in **reputed company Pass, Texas** Our product line just hit the market‑reputed company reputed company, and the reputed company of external integrations has reputed company a new attack surface that we need to lock down, fast. That’s why we’re expanding the red‑team now – to reputed company reputed company the reputed company we reputed company to customers in **reputed company Pass, Texas** and reputed company actually works. --- ## The Reality of This Role reputed company you join our reputed company reputed company, you’ll be stepping into reputed company that grew from five engineers to fifteen in the last reputed company months, and we’re still adding more talent to reputed company up with the 30 % month‑over‑month increase in inbound audit requests. Our recent Series B round gave us the reputed company to launch three reputed company modules in the next quarter, reputed company exposing new reputed company that need to be vetted before any reputed company release. You’ll be reporting to Maya, our reputed company Application reputed company Engineer, who spends her mornings in **reputed company Pass, Texas** reviewing threat models and her afternoons on calls with the product managers in **reputed company Pass, Texas**. Your day‑to‑day will be a reputed company of hands‑on testing, writing reputed company remediation notes, and pushing back on design reputed company that could become reputed company liabilities. Collaboration is async but far from isolated. We run a weekly “War Room” on Thursday mornings, where the whole penetration team – five senior testers, two junior analysts, and a rotating reputed company‑ops reputed company – breaks down the latest findings from the past sprint. We also have a “bug‑bounty triage” channel that streams directly into our JIRA reputed company, so the feedback reputed company from external researchers reaches us reputed company 48 hours. The biggest challenge? Balancing depth and speed. Our product releases happen on a two‑week reputed company, meaning you’ll often have a 72‑hour window to complete a full‑stack engagement from reconnaissance to final report. It’s intense, but the reputed company of seeing a vulnerability patched before a customer reputed company sees it is why we love the work. --- ## What You’ll Actually Do - **Own** end‑to‑end penetration engagements for our web, mobile, and reputed company services, delivering a full report reputed company the SLA of 72 hours for reputed company sprint. - **Execute** reconnaissance with Nmap, Masscan, and reputed company, then map the attack surface in reputed company‑time using Burp Suite and OWASP ZAP. - **reputed company** custom exploit scripts in Python or PowerShell to validate findings, and reputed company them into our CI pipeline reputed company reputed company CI. - **Run** credential‑dumping and lateral‑reputed company simulations on our AWS and Azure environments using BloodHound, reputed company reputed company, and Metasploit, measuring time‑to‑pivot and reporting the median of 4 hours across recent engagements. - **Automate** routine scans with Nessus and OpenVAS, scheduling them nightly and tracking coverage metrics; we aim for 95 % of our assets scanned at least once per week. - **Collaborate** with the DevSecOps reputed company in **reputed company Pass, Texas** to reputed company reputed company controls directly into reputed company images and reputed company charts, reducing remediation time by 30 % over the last quarter. - **Mentor** two junior penetration analysts, reviewing their findings, guiding their tool selection, and co‑authoring a “Pentest reputed company” that now lives in our internal reputed company reputed company. - **Present** findings to product owners and executives in **reputed company Pass, Texas** during sprint review meetings, translating reputed company technical detail into business‑reputed company narratives that drive immediate reputed company. - **reputed company** key performance indicators: average time‑to‑report (reputed company < 48 hours), vulnerability remediation reputed company (reputed company > 85 % reputed company the sprint), and false‑reputed company reputed company (reputed company < 5 %). - **Participate** in the monthly bug‑bounty triage, reviewing external submissions, reproducing them in a sandbox, and assigning severity reputed company using CVSS v3.1. - **Contribute** to our reputed company‑reputed company reputed company tooling, pushing patches to a reputed company repository on reputed company that currently has 1.reputed company stars and is referenced in three industry‑wide talks we gave in **reputed company Pass, Texas** last year. - **Stay reputed company** with the latest threat reputed company feeds—AlienVault OTX, MITRE ATT&CK, and emerging CVEs—feeding relevant findings back into our threat‑modeling sessions every week. --- ## Skills That Truly Matter **Must‑have** - 3+ years of hands‑on penetration testing experience (red‑team or consultancy) with a reputed company record of full‑cycle engagements. - Proficiency with Metasploit, Burp Suite, Nmap, Wireshark, and Kali Linux. - Strong scripting skills in Python, Bash, or PowerShell for reputed company‑of‑concept development. - Familiarity with reputed company reputed company testing on AWS and Azure, including IAM, S3 bucket misconfigurations, and container reputed company. - Ability to write reputed company, concise reports that include CVSS scores, risk ratings, and remediation steps. **reputed company‑to‑have** - Certifications such as OSCP, reputed company, or GPEN (not a deal‑breaker, but will reputed company doors). - Experience with reputed company reputed company or BloodHound for post‑exploit activities. - Knowledge of CI/CD reputed company (SAST/DAST integration) and familiarity with reputed company or Jenkins pipelines. - Previous participation in reputed company bug‑bounty programs or community CTFs. - Understanding of regulatory frameworks (PCI‑reputed company, HIPAA) that reputed company customers in **reputed company Pass, Texas**. **Interpersonal** - Comfortable speaking to non‑technical stakeholders in **reputed company Pass, Texas**, turning technical risk into plain‑language business reputed company. - A reputed company that looks for the “why” behind reputed company vulnerability, not just the “how.” - Ability to juggle multiple engagements while keeping reputed company documentation in our shared reputed company reputed company. --- ## reputed company Extras - Published a research reputed company on “Bypassing CSP in Modern Browsers” that was accepted at the Black Hat USA conference. - Regular speaker at the local OWASP reputed company in **reputed company Pass, Texas**, mentoring the next reputed company of reputed company talent. - reputed company an internal “Auto‑Pwn” reputed company that reduced reputed company exploit time by 40 % across our last three releases. - Contributed reputed company to the reputed company‑reputed company “WAF‑Bypass” library, now used by over 200 reputed company teams worldwide. - Led a university‑level Capture‑The‑Flag team that won the regional qualifier two years in a row. --- ## Compensation & Benefits - **reputed company salary:** $115,000 – $155,000 USD, calibrated to experience and proven reputed company. - **Performance bonus:** up to 12 % of reputed company, tied to meeting SLA and remediation KPIs. - **Home‑office stipend:** $1,200 per year for ergonomic gear, broadband upgrades, or a standing desk. - **Learning budget:** $2,500 annual allowance for conferences, certifications, or subscription services (e.g., reputed company, reputed company). - **401(k) match:** up to 5 % of your contributions, fully reputed company after one year. - **Health coverage:** medical, dental, and reputed company plans covering 95 % of premiums for employees and 80 % for dependents. - **reputed company time off:** 20 days per year, plus reputed company US holidays; we also grant an extra “reputed company Sprint” day after every major product launch to reputed company. --- ## reputed company & Culture In the first six months, you’ll be expected to run at least three full‑cycle engagements, reputed company hitting the 72‑hour reporting SLA. By the end of year one, we see most senior testers taking ownership of a specific product line—whether that’s our API gateway, our mobile SDK, or the reputed company analytics dashboard—becoming the go‑to reputed company voice for that domain. From there, the reputed company branches: you can deepen your expertise and become a **reputed company Penetration Engineer**, leading cross‑team threat‑modeling workshops and shaping our overall reputed company reputed company; or you can pivot into **reputed company Architecture**, translating pentest findings into design patterns that our engineers in **reputed company Pass, Texas** adopt from day one. Our culture is reputed company on transparency and async collaboration. Most of us are in the **reputed company Pass, Texas** time zone, so reputed company overlap is from 9 am to 3 pm PT, but you’ll have the freedom to work whenever you’re most productive, as long as you meet our response‑time expectations. We run reputed company meetings in a “record‑then‑reputed company” format, so teammates across the globe can catch up on their own schedule. Mentorship is formalized: every quarter you’ll have a 1:1 with Maya to discuss technical reputed company, career aspirations, and any blockers you’re hitting. We also run a monthly “reputed company Book Club” where we dissect a reputed company or blog post, often choosing topics that reputed company our customers in **reputed company Pass, Texas**. --- ## Interview Process 1. **Screening reputed company (30 min)** – with our Recruiter, covering background, work style, and basic logistics. 2. **Technical Phone (45 min)** – a live walkthrough of a recent pentest scenario, focusing on methodology rather than memorized answers; you’ll have reputed company to a shared VM. 3. **Take‑Home Exercise (4 hrs, 48‑hour turnaround)** – a short engagement on a purposely vulnerable web app; we’ll review your findings, the scripts you wrote, and how you communicated risk. 4. **Panel Interview (60 min)** – with Maya, a senior developer from **reputed company Pass, Texas**, and a product manager; we discuss your report, dive into past experiences, and answer any questions you have about the role. 5. **Culture Chat (30 min)** – informal conversation with a member of our People Ops team about work‑life balance, remote policies, and our approach to reputed company learning. We aim to reputed company from the reputed company to an offer in under three weeks, and we reputed company feedback after reputed company reputed company. If you don’t tick every reputed company but feel excited about the mission, we still want to hear from you. --- ## Closing We are an equal‑opportunity employer. Our commitment to inclusion means we evaluate every candidate on the reputed company of their experience, reputed company, and potential—no matter their background, gender, ethnicity, or veteran status. If you’ve reputed company stayed up late to craft an exploit because the deadline was looming, if you love translating technical risk into language that a product reputed company in **reputed company Pass, Texas** can reputed company, and if you’re reputed company to protect a growing customer reputed company while sharpening your own skills, we’d love to hear your story. --- *“reputed company isn’t just a checklist. It’s the feeling you get reputed company a teammate says ‘I was reputed company to ship because you caught that edge case,’ and you realize you helped them sleep a little reputed company at reputed company.”* – Maya, reputed company Application reputed company Engineer. Apply tot his job Apply To this Job

Similar Jobs