{bc}
workable

Penetration Tester

Managed Services
Riyadh, KSA
Full-time
Entry · 2+ years experience
Onsite
Discovered 3 weeks ago
Burp SuiteMetasploitNmapWiresharkNessusPython
Free

Job Fit Check

Base Career helps you apply smarter for this job.

?%
Ready to Scan

Key skills for this role

Burp SuiteMetasploitNmap
Smart Apply

Full Job Posting

Key Responsibilities

  • Conduct penetration testing across web applications, APIs, networks, infrastructure, and cloud environments.
  • Perform manual and automated vulnerability assessments.
  • Safely exploit identified vulnerabilities to assess their technical and business impact.
  • Test authentication, authorization, session management, and application logic.
  • Participate in red-team and adversary-simulation activities when required.
  • Conduct source-code security reviews and identify insecure coding practices.
  • Document findings with supporting evidence, risk ratings, and remediation recommendations.
  • Present and explain technical findings to clients and internal stakeholders.
  • Conduct retesting to verify that vulnerabilities have been properly remediated.
  • Stay updated on emerging vulnerabilities, exploitation techniques, and offensive-security tools.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Security, or a related field.
  • 2–3 years of practical experience in penetration testing or offensive security.
  • Hands-on experience in web application and network penetration testing.
  • Strong knowledge of vulnerability assessment and exploitation techniques.
  • Good understanding of network protocols, including TCP/IP, DNS, and HTTP.
  • Strong working knowledge of Linux and Windows environments.
  • Strong understanding of web technologies, APIs, authentication mechanisms, and the OWASP Top 10.
  • Experience with tools such as Burp Suite, Metasploit, Nmap, Wireshark, and Nessus.
  • Scripting skills in Python, Bash, PowerShell, Ruby, or a similar language.
  • Strong technical-reporting and communication skills.
  • Ability to work full-time on-site in Riyadh.

Preferred Experience

Cloud security assessments.

Red-team operations.

Source-code security reviews.

Client-facing penetration-testing engagements.

Preferred Certifications

One or more of the following certifications would be an advantage:

Offensive Security Certified Professional (OSCP)

Certified Ethical Hacker (CEH)

GIAC Penetration Tester (GPEN)

Offensive Security Experienced Penetration Tester (OSEP)

Certified Red Team Professional (CRTP)

Certified Red Team Operator (CRTO)

Apply for this job in 1 click

Skip the repetitive application forms

Install the Base Career Chrome Extension and autofill job applications across major job boards with your profile.

Sarah M.James T.Maya R.

Trusted by over 500,000 job seekers on Base Career

Start Free Today

More from this employer

More jobs at Managed Services