Ethical Hacker/Pentester Mid Level (2+ Years) - LATAM

Insight Assurance

Brasil

Híbrido

BRL 100 000 - 180 000

Tempo integral

14 dias+

Recebe mais respostas dos empregadores

Envia um currículo específico para a oferta em poucos minutos.

Resumo da oferta

Insight Assurance is seeking a mid-level Ethical Hacker/Pen tester to join its cybersecurity team in LATAM. The role focuses on adversary simulations, offensive assessments, and strengthening security postures across our global client base.

The ideal candidate has at least 2 years of offensive security experience, strong scripting skills, and hands-on use of Burp Suite, Metasploit, and Cobalt Strike. Familiarity with MITRE ATT&CK and cloud platforms (AWS/Azure/GCP) is expected.

Qualificações

  • Experience: Minimum 2 years in offensive security, penetration testing, or red team operations.
  • Proficient in scripting and automation (Python, PowerShell, Bash).
  • Strong knowledge of Windows/Linux, Active Directory, and cloud environments (AWS/Azure/GCP).
  • Familiarity with MITRE ATT&CK framework.

Responsabilidades

  • Plan and execute adversary simulations to mirror TTPs of advanced threat actors.
  • Design and deliver red team engagements including physical, social engineering, and cyber components.
  • Perform penetration testing of networks, applications, and systems; bypass defensive controls and exploit vulnerabilities.
  • Prepare detailed reports and present findings to technical and non-technical stakeholders.
  • Collaborate with blue teams to refine incident detection and response capabilities.

Conhecimentos

Python
PowerShell
Bash
Windows
Linux
Active Directory
Cloud (AWS/Azure/GCP)
MITRE ATT&CK

Ferramentas

Burp Suite
Metasploit
Cobalt Strike
BloodHound
Impacket

Descrição da oferta de emprego

Ethical Hacker/Pentester Mid Level (2+ Years) - LATAM

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance. Founded by former Big 4 (EY) professionals, we deliver next-generation audit services across SOC 2, ISO 27001, PCI DSS (QSA), HITRUST, CMMC (C3PAO), and FedRAMP (3PAO) frameworks.

We’re not your traditional audit firm — we’re tech-enabled, leveraging compliance automation and advanced collaboration tools to make audits faster, smarter, and more impactful for our clients.

Recognized on the Inc. 5000 and Fast 50 lists, Insight Assurance is one of the fastest-growing global audit firms, with 170+ professionals supporting nearly 2,000 clients across the Americas, EMEA, and APAC.

About the Role

We are seeking a skilled and experienced Red Team Operator to join our cybersecurity team. The ideal candidate will be responsible for simulating advanced persistent threats (APTs), conducting adversarial assessments, and helping strengthen our organization's security posture. You will work closely with cross-functional teams, including blue teams, to identify vulnerabilities, test incident response mechanisms, and provide actionable insights to mitigate risks.

Key Responsibilities
  • Adversary Simulation :
    • Plan and execute realistic attack scenarios simulating the tactics, techniques, and procedures (TTPs) of sophisticated threat actors.
    • Design and deliver red team engagements, including physical, social engineering, and cyberattack components.
  • Technical Assessments :
    • Perform penetration testing of networks, applications, and systems using tools such as Burp Suite, Metasploit, Cobalt Strike, and custom scripts.
    • Bypass defensive controls, including IDS/IPS, firewalls, EDR solutions, and WAFs.
    • Exploit vulnerabilities to achieve and elevate privilege levels while avoiding detection.
  • Reporting and Remediation :
    • Prepare detailed reports documenting findings, attack vectors, and recommended mitigation.
    • Present results to both technical and non-technical stakeholders.
  • Collaboration and Knowledge Sharing :
    • Collaborate with blue teams to refine incident detection and response capabilities.
    • Guide on improving threat hunting and monitoring strategies.
  • Stay updated on the latest attack techniques, vulnerabilities, and defensive countermeasures.
  • Research and develop new tools, exploits, and methodologies to enhance the red team’s capabilities.
Qualifications and Experience
  • Experience: Minimum 2 years in offensive security, penetration testing, or red team operations.
  • Technical Expertise :
    • Proficient in scripting and automation using Python, PowerShell, Bash, or similar.
    • Strong knowledge of Windows and Linux systems, Active Directory, and cloud environments (AWS, Azure, GCP).
    • Familiarity with modern TTPs (e.g., MITRE ATT&CK framework).
  • Certifications (Preferred) :
    • Offensive Security Certified Professional (OSCP), Offensive Security Certified Expert (OSCE), GIAC Penetration Tester (GPEN), or other relevant certifications.
  • Tools: Hands-on experience with Cobalt Strike, Metasploit, BloodHound, Impacket, Burp Suite, and other offensive security tools.
Soft Skills
  • Strong analytical and problem-solving skills.
  • Ability to work independently and within a team.
  • Excellent communication skills, both verbal and written.
  • Critical thinking and creativity in approach to security challenges.

Privacy Notice CCPA :

  • Insight Assurance shares your personal data/information with Greenhouse recruiting because this is the tool we use for the recruitment process.
  • Insight Assurance does not sell personal data/information under any circumstances.
  • You may exercise your rights under personal data protection legislation by reaching out to us via: HR@insightassurance.com or submit a request via mail at 400 N Tampa St. 15th Floor Suite 122, Tampa, FL 33602

Privacy Notice GDPR:

This notice informs you about the categories of Personal Data/ Information and the Purpose and Scope of Processing Activities to be undertaken by Insight Assurance (we, us, our), under its job application and recruitment process.

We resort to Greenhouse.com as the platform that supports our recruitment process, and therefore your Personal Data/ Information will be Processed on this tool (hosted, shared with, cross-referenced, accessed by our team); we have in place contractual terms and the commitment of Greenhouse.com that ensures the Security and Confidentiality plus Purpose limitation with regards to the Processing of your Personal Data.

When you reply to one of your job postings, you voluntarily and freely submit your Personal Data to us; this, allied with the fact that the Processing by us (and over Greenhouse.com) of that Personal Data has the sole Purpose of validating your application and proceeding with the inherent scrutiny and decision, allows us to argue having Legitimate Interest as the applicable Legal Basis to undertake the Processing of your Personal Data under this scope.

We are a U.S. based company, hence some or all Personal Data pertaining to you will be hosted in the U.S.

The categories of Personal Data under Processing consist of:

  • Identification
  • Contact
  • Education and Professional
  • Evaluation

You may exercise several Rights as determined under applicable Personal Data Protection legislation, in short:

  • Right of Access – meaning getting information about the Personal Data under Processing by us, except for the information you already know;
  • Right of Erasure – you may ask for us to erase all Personal Data pertaining to you under Processing; this may imply you being excluded from the recruitment process, for without information we cannot proceed with it;
  • Right of Opposition or Restriction of Processing – you may ask us to stop some Processing or restrict the Processing of some Personal Data, this may imply you being excluded from the recruitment process, at our sole discretion also for without information we cannot proceed with it;
  • Rectification – you can rectify your Personal Data at anytime
Obtém a tua avaliação gratuita e confidencial do currículo.
ou arrasta e larga o ficheiro aqui.
Similar jobs

Ofertas semelhantes que vale a pena comparar

Ethical Hacker/Pentester Mid Level (2+ Years) - LATAM
Ethical Hacker/Pentester Mid Level (2+ Years) - LATAM

Insightassurance • Brasil

Presencial
BRL 180 000 - 300 000
Experienced HITRUST Assessment Manager
Experienced HITRUST Assessment Manager

Insight Assurance • Brasil

Teletrabalho
BRL 421 000 - 633 000
Flexible Paid Time Off
Quarterly Performance Bonuses
Opportunities for professional growth
+1
SOC 2 Staff IT Auditor- LATAM
SOC 2 Staff IT Auditor- LATAM

Insight Assurance • Brasil

Teletrabalho
BRL 311 000 - 467 000
100% Remote
Flexible Paid Time Off
Performance-Based Bonuses
+1
Senior Security Consultant, Red Team
Senior Security Consultant, Red Team

IOActive, Inc. • Brasil

Híbrido
BRL 380 000 - 761 000
Competitive compensation
Access to technical teams
Flexibility to work remotely
+1
Information Security Specialist, Red Team
Information Security Specialist, Red Team

Jobtailor • São Paulo

Presencial
BRL 180 000 - 280 000
Consulting Director, Proactive Services (Unit 42) - Remote
Consulting Director, Proactive Services (Unit 42) - Remote

Palo Alto Networks, Inc. • São Paulo

Teletrabalho
BRL 450 000 - 750 000
Offensive Security Specialist
Offensive Security Specialist

Jobtailor • São Paulo

Presencial
BRL 180 000 - 300 000
Senior Information Security Analyst, Pentester
Senior Information Security Analyst, Pentester

Jobtailor • Barueri

Presencial
BRL 120 000 - 180 000
Brazil Cybersecurity, Threat Intelligence & Fraud Protection Cyber Threat Intelligence Analyst – LATAM
Brazil Cybersecurity, Threat Intelligence & Fraud Protection Cyber Threat Intelligence Analyst – LATAM

Group-IB • Brasil

Presencial
BRL 120 000 - 180 000
Flexible schedule
Certification support
International team exposure
Senior Security Consultant, Application Security
Senior Security Consultant, Application Security

IOActive, Inc. • Brasil

Híbrido
BRL 380 000 - 887 000
Competitive compensation
Access to world-class technical teams
Flexibility to work remotely
+1