CybersecurityJobs.io
← Back to all jobs

Job Description

The Security Consultant II role focuses on web application penetration testing and the delivery of support for client security assessments. Based in Minneapolis, MN, this onsite position combines hands-on testing, report development, and ongoing improvement of penetration testing techniques and processes.

Role Overview

In this position, you will lead penetration testing engagements across web applications and underlying APIs, produce and collaborate on engagement reporting, and contribute to research and development of testing methodologies. You will also support day-to-day consulting administrative tasks to help ensure smooth engagement operations.

Key Responsibilities

  • Conduct penetration testing engagements on web applications and underlying APIs.
  • Create, deliver, and collaborate on penetration testing reports across diverse client environments while maintaining client-specific processes, reporting standards, and access protocols to support improved security posture.
  • Research and develop innovative techniques, tools, and methodologies for penetration testing services, including commitment to continuous improvement and execution on NetSPI products and processes.
  • Perform administrative tasks associated with day-to-day consulting operations to support business and engagement workflows.

Required Qualifications

  • Bachelor’s degree or higher required (concentration in Computer Science, Engineering, Math, or IT preferred) or equivalent experience.
  • Minimum 2-3 years of work experience in application penetration testing.
  • Familiarity with offensive tools based on applicable skills, including Kali Linux, Burp Suite, Metasploit, and Nessus.
  • Familiarity with both offensive and defensive IT concepts and protocols.
  • Extensive understanding of the OWASP Top 10 and various security frameworks.
  • Working knowledge of Windows, Linux, and MacOS operating system internals.
  • Ability to work independently and collaborate as part of a team.
  • Proficient written and verbal communication skills.
  • Willingness to travel up to 5-10%.
  • Ability to work an 8-hour workday, with occasional evenings or weekends when needed to meet project deadlines or critical needs.

Preferred Qualifications

  • Experience mentoring or coaching team members, including knowledge sharing externally through blogs, webinars, or conference presentations.
  • Experience in one or more programming or scripting languages, including Ruby, Python, Perl, C, C++, Java, and C#.
  • Offensive cybersecurity certifications such as GXPN, GPEN, OSCP, CISSP, and GWAPT.

Technologies and Tools

  • Kali Linux, Burp Suite, Metasploit, Nessus
  • OWASP Top 10
  • Windows, Linux, MacOS
  • Ruby, Python, Perl, C, C++, Java, C#
  • GXPN, GPEN, OSCP, CISSP, GWAPT

Location and Work Setting

Minneapolis, MN (onsite).

Similar Jobs