Source Job

India

  • Conduct penetration testing on applications and networks using tools like Nmap, Metasploit, and Burp Suite.
  • Lead client-facing communications throughout engagements, including readiness sessions and findings notifications.
  • Research emerging threats and document vulnerabilities with remediation recommendations in professional reports.

Penetration Testing Network Security Web Application Security Burp Suite

15 jobs similar to Penetration Testing Analyst

Jobs ranked by similarity.

$140,000–$140,000/yr
US Unlimited PTO

  • Conduct sophisticated security assessments across client environments, identifying vulnerabilities missed by conventional approaches.
  • Develop targeted attack plans based on bespoke hypotheses and client-specific objectives.
  • Produce actionable, threat-based reports that translate technical discoveries into meaningful security improvements.

Jobgether uses AI-powered matching to connect candidates with roles. It is a platform focused on efficient, objective hiring, with a culture emphasizing technical excellence, radical candor, and collaboration.

LATAM

  • Plan and execute realistic attack scenarios simulating sophisticated threat actors' TTPs.
  • Perform penetration testing of networks, applications, and systems using tools like Burp Suite, Metasploit, Cobalt Strike.
  • Prepare detailed reports and collaborate with blue teams to improve incident detection and response.

Insight Assurance is a global audit firm delivering next-generation cybersecurity and compliance services across SOC 2, ISO 27001, PCI DSS, and more. With 170+ professionals, it is one of the fastest-growing global audit firms serving nearly 2,000 clients.

Brazil

  • Triage and validate incoming security vulnerability submissions for Bugcrowd managed programs.
  • Communicate directly with clients and researchers to clarify submission details and escalate critical bugs.
  • Maintain strong knowledge of OWASP Top Ten vulnerabilities and use interception proxies like Burp Suite.

We empower organizations to stay ahead of threat actors by uniting customers and elite hackers with our AI-powered Security Knowledge Platform. We are backed by General Catalyst and other investors, and our team is diverse and inclusive.

$105,100–$231,100/yr
US

  • Serve as the senior technical authority for penetration testing and red-team delivery across federal programs.
  • Define and improve assessment standards, rules of engagement, and technical methodologies.
  • Guide technical teams, mentor staff, and communicate findings to government customers.

The company provides offensive security assessments and red-team services for sensitive federal cyber environments. The team is remote and focuses on high-impact national cybersecurity missions.

$120,000–$150,000/yr
US Unlimited PTO

  • Plan and conduct offensive security engagements, effectively communicating findings to stakeholders.
  • Build scripts, tools, or methodologies to enhance services and stay current with adversary tradecraft.
  • Serve as a subject matter expert and mentor less experienced staff while contributing to training courses.

SpecterOps provides offensive security assessment services, including red team assessments and penetration tests, for large commercial enterprises. The company fosters a culture of passionate curiosity and continuous improvement, with a remote team that values empathy and transparency.

US Unlimited PTO 12w maternity 12w paternity

  • Drive and conduct security testing and penetration tests across applications, infrastructure, and networks to identify exploitable vulnerabilities.
  • Manage and implement security testing tools and frameworks to simulate real-world attacks and validate security controls.
  • Design and implement AI-enabled workflows to scale security testing and threat related operations.

Valon is building the AI-native operating system for regulated finance, starting with mortgage servicing. They are a Series C company backed by a16z, managing over $110 billion in loans, with a culture that values security and innovation.

Canada 4w PTO

  • Lead complex offensive security projects and adversary simulation activities.
  • Develop stealthy tools and automation to continuously evolve offensive capabilities.
  • Collaborate with cyber defense and insider threat teams to improve detection and response.

The company operates at the forefront of offensive cybersecurity within a large, complex enterprise environment. They emphasize continuous learning, innovation, and collaboration across diverse teams.

Global

  • Perform high quality penetration testing on software, platforms, and services.
  • Conduct manual code review and vulnerability hunting to find security flaws.
  • Collaborate with engineering teams to strengthen security controls and mentor other security practitioners.

Atlassian develops software products that help teams collaborate and unleash their potential. With a distributed-first culture, they value diversity and inclusion, and employ thousands worldwide.

UK Unlimited PTO

  • Penetration test web applications, APIs, and mobile applications for clients across various industries.
  • Work with technical and non-technical stakeholders to identify vulnerabilities and recommend remediations.
  • Collaborate closely with developers and teams to strengthen application security and drive continuous improvement.

Cytix is a platform that threat models development tickets and creates security testing plans that include both manual and automated testing. They are a small team with big plans, recently securing Series A funding.

$128,369–$183,384/yr
Europe

  • Drive offensive security through pen tests, red-team engagements, and threat modeling across Docker products and infrastructure.
  • Partner with engineering to implement secure architecture, automated reviews, and vulnerability management.
  • Build offensive tooling, develop exploits, and support incident response and security education.

Docker builds tools for developers to build, share, and run applications, including Docker Desktop, Docker Hub, and Docker Scout. It is a globally distributed, remote-first team trusted by 20M+ monthly users, focused on secure container development.

$165,000–$200,000/yr
US Unlimited PTO

  • Lead the long-term technical strategy for offensive security, including red teaming and adversary simulations.
  • Conduct deep-dive vulnerability research and partner with DevOps to build automated security guardrails.
  • Mentor senior and mid-level engineers to foster a security-minded development culture.

Greenlight is a family technology company that helps families raise financially smart kids through its suite of products including the Greenlight app, debit card, and safety features. With over 6.5 million family members, Greenlight fosters a culture of innovation and collaboration to make family life easier.

India

  • Design and implement test strategies and automation for next-generation security solutions.
  • Work closely with software engineers in Agile teams on testing and code quality.
  • Conduct performance and scale testing for distributed cloud and network environments.

This company develops next-generation enterprise security solutions focused on zero trust, micro-segmentation, and threat protection. It offers a flexible remote work environment with support for health and well-being, and teams collaborate globally.

India

  • Configure, monitor, and maintain cloud and network environments including AWS, Azure, and GCP.
  • Troubleshoot complex infrastructure and connectivity issues while applying cybersecurity best practices.
  • Collaborate with cross-functional teams to ensure reliability, security, and operational efficiency.

Our partner is a technology company that provides secure, reliable infrastructure solutions. They operate as a fully remote team with a collaborative culture.

India

  • Advise product engineering teams on secure coding, vulnerability management, and secure-by-design practices.
  • Conduct threat modeling using established frameworks such as STRIDE, PASTA, and MAESTRO to identify risks.
  • Partner with architecture teams to embed security principles into product design and ensure regulatory compliance.

This is a global technology company focused on product development and security. It fosters a collaborative culture with an emphasis on innovation, continuous learning, and knowledge sharing across distributed teams.

US

  • Assist in conducting cybersecurity assessments including vulnerability assessments, penetration testing, policy reviews, and social engineering engagements.
  • Collaborate with team members to evaluate risks, recommend solutions, and support vulnerability management activities.
  • Communicate technical cybersecurity concepts to both technical and non-technical audiences while managing multiple assignments concurrently.

Vantage Point Solutions is a customer-focused, technology-driven engineering and consulting firm serving the broadband, power, and financial industries. The company fosters a culture of teamwork, respect, and commitment.