This position is no longer accepting applications
Closed on August 31, 2026.
This role is filled — get an email when new Information Security roles open on CybersecurityJobs.io:
Penetration Tester
Application Security
Cloud Platforms
Cybersecurity Tools
Dynamic Application Security Testing
Information Security
InfoSec
Offensive Security
Penetration Testing
Perl Language
Security Testing
Tcpdump
Vulnerability Assessment
Wireshark
View similar jobs
Get alerted when similar jobs are posted — set up a New Information Security jobs on CybersecurityJobs.io alert.
See other roles at OSec.
Job Description
Remote Penetration Tester role at OSec, part of the Assessment Team serving OccamSec and its clients, reporting to the Assessment Team Lead.
Responsibilities
- Conduct security audits, network penetration testing, and assessments of web applications, APIs, and cloud environments.
- Draft comprehensive security assessment reports that detail findings and provide an evidence-backed walkthrough of the engagement.
- Utilize social engineering to identify opportunities to improve security awareness and education.
- Advise clients on practical remediation steps to reduce security risks to networks and products.
- Collaborate on large and complex engagements as part of a team, with guidance from senior colleagues.
- Carry out independent work on projects within a defined skill set under project management oversight.
- Maintain up-to-date proficiency with current security tools and techniques.
Requirements
- Prefer candidates with 2 to 3 years of professional experience.
- Proficient with AWS services such as EC2, S3, KMS, and RDS, and similar capabilities on Azure and GCP, focusing on security best practices.
- Experience performing penetration tests for APIs, mobile apps, cloud environments, and web applications.
- Familiar with scripting languages including Python, Perl, Go, or Ruby.
- Hands-on experience building or developing server or application technologies.
- Skilled in using penetration testing tools across diverse scenarios.
- Experience replicating threat behavior to validate defenses.
- Proficient with packet analysis tools such as Wireshark and tcpdump.
- Strong understanding of IP networking protocols, subnetting, routing, and switching.
- Extensive background in penetrating and exploiting secure networks and systems, with ongoing familiarity with current security software, protocols, and technologies.
- Excellent written and verbal communication skills, with a track record of delivering comprehensive reports and assessments.
Technologies
- AWS, including EC2, S3, KMS, RDS
- Azure
- Google Cloud Platform (GCP)
- Python, Perl, Go, Ruby
- Wireshark, tcpdump
Benefits
- Flexible working hours
- Competitive health packages
- Life insurance
- 401k plan with company contributions
- Maternity and parental leave
- On-the-job training opportunities
- Paid, flexible vacation