Demo

Pen Tester

VSG Business Solutions LLC
Roanoke, TX Full Time
POSTED ON 3/3/2025
AVAILABLE BEFORE 5/29/2025

Job Description

Job Description

Job Description : Key Responsibilities

Conduct manual and automated penetration testing of web applications, APIs, and related infrastructure.

Identify, document, and exploit security vulnerabilities such as SQL injection, cross-site scripting (XSS), authentication flaws, and business logic issues.

Perform source code reviews to identify security flaws in web applications.

Use industry-standard tools such as Burp Suite, OWASP ZAP, Metasploit, Nmap, Kali Linux, and SAST / DAST tools.

Develop and execute custom scripts and exploits to validate security weaknesses.

Collaborate with development and DevSecOps teams to provide secure coding recommendations and remediation guidance.

Generate detailed reports with findings, risk assessments, and actionable remediation steps for technical and non-technical stakeholders.

Stay up to date with the latest web security trends, vulnerabilities, and attack techniques.

Perform retesting of vulnerabilities after remediation efforts.

Assist in threat modeling and risk assessments for web applications.

Tools & Technologies

The candidate should be proficient in using the following tools and technologies for web application penetration testing :

Web Application Security Testing Tools :

Burp Suite (Pro & Community)

WebInspect

Network & Reconnaissance Tools :

Nmap

Masscan

Amass

Subfinder / Assetfinder

Shodan / Censys

Exploitation & Attack Tools :

SQLmap (SQL injection testing), Metasploit Framework,

Scripting & Automation :

Python / Bash / PowerShell

JavaScript (for DOM-based attacks and exploitation)

Postman / REST API testing tools

Code Analysis & Debugging :

Source Code Review (Java, .NET, Python, JavaScript, etc.)

Static Analysis Tools (SAST) SonarQube, Snyk, Fortify

Dynamic Analysis Tools (DAST) : Acunetix,

Cloud & Container Security :

AWS Security Tools (Pacu, ScoutSuite, Prowler)

Docker Security Testing (Trivy, Dockle)

Kubernetes Security Testing (Kube-hunter, Kube-bench)

Qualifications & Skills

Technical Skills :

Deep understanding of OWASP Top 10 vulnerabilities and web security principles.

Proficiency in HTTP / HTTPS protocols, authentication mechanisms, session management, and API security.

Experience with scripting (Python, Bash, PowerShell, JavaScript) for automation and exploit development.

Familiarity with Cloud Security (AWS, Azure, GCP) and container security (Docker, Kubernetes) is a plus.

Knowledge of Secure Software Development Life Cycle (SDLC) practices.

Certifications (Preferred but Not Required) :

OSCP (Offensive Security Certified Professional)

GWAPT (GIAC Web Application Penetration Tester)

CPT (Certified Penetration Tester)

CEH (Certified Ethical Hacker)

Experience & Education :

Bachelor's degree in Computer Science, Cybersecurity, or a related field (or equivalent experience).

2-5 years of experience in web application security, penetration testing, or ethical hacking

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Pen Tester?

Sign up to receive alerts about other jobs on the Pen Tester career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$49,118 - $61,709
Income Estimation: 
$54,807 - $71,603
Income Estimation: 
$141,372 - $178,696
Income Estimation: 
$174,706 - $217,614
Income Estimation: 
$76,865 - $99,440
Income Estimation: 
$92,729 - $118,963
Income Estimation: 
$92,729 - $118,963
Income Estimation: 
$118,965 - $150,754
Income Estimation: 
$118,965 - $150,754
Income Estimation: 
$141,372 - $178,696
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at VSG Business Solutions LLC

VSG Business Solutions LLC
Hired Organization Address Plano, TX Full Time
Hybrid (3 days onsite 2 days remote) and they would prefer local candidates Location: Plano, TX Responsibilities Act as ...
VSG Business Solutions LLC
Hired Organization Address Columbus, OH Full Time
Need locals profiles : NiSource Cybersecuritys database of choice is Azure DataBricks and would prefer skillset in SQL. ...
VSG Business Solutions LLC
Hired Organization Address Harrison, NY Full Time
We are seeking a highly experienced Business Analyst with extensive expertise in JD Edwards specifically in the Supply C...
VSG Business Solutions LLC
Hired Organization Address Framingham, MA Full Time
Process Engineer LOCAL preferred MUST HAVE A MASTER'S DEGREE OR PHD!!!! Development and implementation of advanced proce...

Not the job you're looking for? Here are some other Pen Tester jobs in the Roanoke, TX area that may be a better fit.

UAT Tester

Saxon Global, Fort Worth, TX

QA Tester

Randstad Digital, Southlake, TX

AI Assistant is available now!

Feel free to start your new journey!