Penetration Tester
Job Description
Tenax Software Solutions is seeking a mid-level penetration tester for onsite consulting in Urbandale, IA. In this role, you’ll help clients improve security by delivering thorough offensive security testing across a wide range of environments, from networks and web applications to cloud, wireless, physical, and AI systems. You’ll also play an active part in client communication, leading kickoff and technical discussions, and producing clear, comprehensive reports with actionable remediation guidance.
What you’ll do
- Perform AI penetration tests and configuration reviews
- Conduct cloud penetration tests and configuration reviews
- Execute external network penetration tests and vulnerability assessments
- Run internal network penetration tests and vulnerability assessments
- Carry out physical penetration tests
- Complete social engineering assessments
- Deliver web application penetration tests
- Conduct wireless penetration tests and vulnerability assessments
- Provide other offensive security services offered by Tenax Solutions as assigned
You’ll also support each engagement end to end by leading kickoff calls, participating in technical discussions, reviewing findings in report review meetings, and providing timely updates on testing progress, blockers, and critical issues.
- Explain vulnerabilities, attack paths, remediation recommendations, and security risks in clear terms
- Write clear and comprehensive penetration testing and vulnerability assessment reports
- Document findings with technical details, supporting evidence, and remediation recommendations
- Participate in internal quality assurance reviews
Tools and frameworks you may use
- OWASP, MITRE ATT&CK, NIST, PTES
- Burp Suite, Nmap, BloodHound, Impacket, Metasploit, and vulnerability scanners
Required qualifications
- Associate’s degree in Information Technology, Cybersecurity, or another relevant field
- 2–5 years of experience in Information Technology, Cybersecurity, or a related field
- Solid understanding of networking, operating systems, web technologies, and cybersecurity concepts
- Knowledge of common attack techniques, exploitation methods, and vulnerabilities
- Ability to use offensive security tools safely and effectively
- Strong written and verbal communication skills
- Strong documentation, organization, and time-management skills
- Ability to work independently while following approved scope and methodology
- Ability to collaborate with consultants, project managers, and client stakeholders
- Demonstrated professional judgment handling sensitive systems, data, and client communications
Preferred skills
- Experience conducting penetration tests of internal and external networks, Active Directory, web applications, and cloud environments
- Familiarity with common penetration testing methodologies and security frameworks, including OWASP, MITRE ATT&CK, NIST, and PTES
- Experience using offensive security tools such as Burp Suite, Nmap, BloodHound, Impacket, Metasploit, and vulnerability scanners
- Relevant industry certifications such as Security+, PenTest+, PNPT, CPTS, CEH, or OSCP
- Experience identifying vulnerabilities, developing attack paths, and providing actionable remediation recommendations
Working conditions and expectations
- Occasional non-standard hours may be required based on client needs, testing windows, or emergency requests
- Some engagements may involve remote work, virtual meetings, or travel
- Ability to respond professionally to time-sensitive client needs
- Comfort working in dynamic client environments with changing priorities and timelines
- All work performed in accordance with company policies, client authorization, and applicable laws
Similar Jobs
D