Associate, Compliance Security Penetration Tester
Job Description
Join Coalfire and work with a team that supports client outcomes through rigorous security testing and practical compliance guidance. This remote role offers a flexible work model, comprehensive insurance options, flexible time off, paid parental leave, and certification and training reimbursement. You will also have access to digital mental health and wellbeing support while building your penetration testing craft alongside experienced colleagues.
What you’ll do
In this Associate Compliance Security Penetration Tester position, you will advise clients on technical security or compliance activities and conduct penetration testing across multiple technology types and environments. You will help ensure engagements run smoothly by managing engagement scope through remediation and supporting report quality via quality assurance processes. The work includes partnering with internal teams such as project managers, quality management, sales, and delivery members to drive customer satisfaction and meet project deliverables.
- Advise clients on technical security and/or compliance activities
- Manage priorities and tasks to achieve delivery utilization targets
- Ensure quality products and services are delivered on time
- Develop and improve testing processes, procedures, and methodologies
- Assist with report generation and quality assurance
- Support engagement scoping and help lead engagements from initial stages through implementation and remediation
- Manage project escalations related to current testing
- Collaborate with a team and independently support work across areas where skills apply, including:
- Internal and external network penetration testing
- Application penetration testing (browser-based, API, mobile)
- Cloud solution penetration testing
- Social engineering
- Wireless assessments
- Conduct security assessments across a wide variety of technologies and implementations
- Simulate sophisticated cyberattacks for clients worldwide
- Mentor and develop less experienced staff
What you bring
- Bachelor’s degree (four-year college or university) or equivalent combination of education and work experience
- 3+ years’ experience in information security, including web application and network penetration testing experience
- Experience working with enterprise environments
- Hands-on scripting experience with Python, PowerShell, Shell, or Ruby
- Experience with one or more IT security compliance frameworks: PCI, FISMA, HIPAA, FEDRAMP, or HITRUST
- 1 to 3 years of experience in an IT Security Audit and/or Compliance role
- Ability to interact with management in a consultative manner
- Strong understanding of networks, servers, workstations, and applications
- Excellent communication and presentation skills
- Ability to travel up to 20%
Tools and compliance frameworks
- Python, PowerShell, Shell, Ruby
- PCI, FISMA, HIPAA, FEDRAMP, HITRUST
Benefits
- Flexible work model (choose when and where you work most effectively, including home or office)
- Paid parental leave
- Flexible time off
- Certification and training reimbursement
- Digital mental health and wellbeing support membership
- Comprehensive insurance options
Additional details
- Location: Remote (remote)
- Salary range: USD 64,000 - 117,000 per year (estimate based on national salary averages)
- May be eligible for annual incentive, commission, and/or recognition programs
- Equal opportunity and pay equity are integral to Coalfire’s business
- Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities
- To request reasonable accommodation for the application or interview process, contact: [email protected]
- Tags: #LI-TF1, #LI-Remote
- Coalfire may use AI tools in parts of the hiring process, supporting recruitment teams without replacing human judgment