Ethical Hacker/Pentester Mid Level (2+ Years) - LATAM

Insight Assurance

Colombia

Presencial

COP 60.000.000 - 90.000.000

Jornada completa

Hace 7 días
Sé de los primeros/as/es en solicitar esta vacante
Generador de candidaturas

Destaca en este puesto — genera un currículum adaptado y una carta de presentación en aproximadamente un minuto.

Supera los filtros ATS

Descripción de la vacante

Insight Assurance in Colombia seeks a skilled Red Team Operator to simulate advanced threats and strengthen cyber defenses.

You will plan realistic attack scenarios, perform penetration testing, and deliver actionable reports for technical and non-technical stakeholders. Collaboration with blue teams and ongoing threat research are key parts of the role.

Formación

  • 2+ years in offensive security, red team ops or pentesting.
  • Proficient in scripting and automation.
  • Strong knowledge of Windows/Linux, AD, and cloud envs (AWS/Azure/GCP).
  • Familiar with MITRE ATT&CK and modern TTPs.

Responsabilidades

  • Plan and execute red team engagements simulating threat actor TTPs.
  • Perform penetration testing of networks, apps, and systems.
  • Prepare detailed reports with findings, attack vectors, and mitigations.
  • Collaborate with blue teams to improve detection and response.
  • Stay updated on new attack techniques and tools.

Conocimientos

Python scripting
PowerShell
Bash
Windows
Linux
MITRE ATT&CK

Herramientas

Cobalt Strike
Metasploit
BloodHound
Impacket
Burp Suite

Descripción del empleo

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance. Founded by former Big 4 (EY) professionals, we deliver next-generation audit services across SOC 2, ISO 27001, PCI DSS (QSA), HITRUST, CMMC (C3PAO), and FedRAMP (3PAO) frameworks.

We’re not your traditional audit firm — we’re tech-enabled, leveraging compliance automation and advanced collaboration tools to make audits faster, smarter, and more impactful for our clients.

Recognized on the Inc. 5000 and Fast 50 lists, Insight Assurance is one of the fastest-growing global audit firms, with 170+ professionals supporting nearly 2,000 clients across the Americas, EMEA, and APAC.

About The Role

We are seeking a skilled and experienced Red Team Operator to join our cybersecurity team. The ideal candidate will be responsible for simulating advanced persistent threats (APTs), conducting adversarial assessments, and helping strengthen our organization's security posture. You will work closely with cross-functional teams, including blue teams, to identify vulnerabilities, test incident response mechanisms, and provide actionable insights to mitigate risks.

Key Responsibilities
  • Adversary Simulation:
    • Plan and execute realistic attack scenarios simulating the tactics, techniques, and procedures (TTPs) of sophisticated threat actors.
    • Design and deliver red team engagements, including physical, social engineering, and cyberattack components.
  • Technical Assessments:
    • Perform penetration testing of networks, applications, and systems using tools such as Burp Suite, Metasploit, Cobalt Strike, and custom scripts.
    • Bypass defensive controls, including IDS/IPS, firewalls, EDR solutions, and WAFs.
    • Exploit vulnerabilities to achieve and escape privilege levels while avoiding detection.
  • Reporting and Remediation:
    • Prepare detailed reports documenting findings, attack vectors, and recommended mitigation.
    • Present results to both technical and non-technical stakeholders.
  • Collaboration and Knowledge Sharing:
    • Collaborate with blue teams to refine incident detection and response capabilities.
    • Guide on improving threat hunting and monitoring strategies.
  • Continuous Improvement:
    • Stay updated on the latest attack techniques, vulnerabilities, and defensive countermeasures.
    • Research and develop new tools, exploits, and methodologies to enhance the red team’s capabilities.
Qualifications And Experience
  • Experience: Minimum 2 years in offensive security, penetration testing, or red team operations.
  • Technical Expertise:
    • Proficient in scripting and automation using Python, PowerShell, Bash, or similar.
    • Strong knowledge of Windows and Linux systems, Active Directory, and cloud environments (AWS, Azure, GCP).
    • Familiarity with modern TTPs (e.g., MITRE ATT&CK framework).
  • Certifications (Preferred):
    • Offensive Security Certified Professional (OSCP), Offensive Security Certified Expert (OSCE), GIAC Penetration Tester (GPEN), or other relevant certifications.
  • Tools: Hands‑on experience with Cobalt Strike, Metasploit, BloodHound, Impacket, Burp Suite, and other offensive security tools.
Soft Skills
  • Strong analytical and problem-solving skills.
  • Ability to work independently and within a team.
  • Excellent communication skills, both verbal and written.
  • Critical thinking and creativity in approach to security challenges.
Consigue la evaluación confidencial y gratuita de tu currículum.

o arrastra y suelta tu archivo aquí

Similar jobs

Puestos de trabajo similares que vale la pena comparar

Redteam analyst
Redteam analyst

Rappi • Colombia

Presencial
COP 55.800.000 - 78.120.000
Security Researcher
Security Researcher

AppGate • Bogotá

Presencial
COP 60.000.000 - 110.000.000
Security Threat Hunting + Penetration Testing (Red Team) - Security Threat Hunting + Penetratio[...]
Security Threat Hunting + Penetration Testing (Red Team) - Security Threat Hunting + Penetratio[...]

eTeam • Bogotá

Presencial
COP 101.675.614 - 183.016.105
Ethical Hacking
Ethical Hacking

Hitss Colombia • Bogotá

Híbrido
COP 60.000.000 - 120.000.000
Hybrid work (2 days on-site)
Cybersecurity Engineer - Vulnerability Management
Cybersecurity Engineer - Vulnerability Management

Cognizant • Colombia

Presencial
COP 60.000.000 - 120.000.000
Líder de Red Team & Compliance
Líder de Red Team & Compliance

Octapus Inc • Bogotá ciudad

Presencial
COP 120.000.000 - 190.000.000
Senior Cybersecurity Operations Analyst
Senior Cybersecurity Operations Analyst

Kruger inc. • Perímetro Urbano Medellín

Presencial
COP 12.000.000 - 18.000.000
Especialista en pentesting
Especialista en pentesting

Empresa Confidencial • Colombia

Híbrido
COP 133.920.000 - 200.880.000
Cibersecurity Operations & Incident Response Analyst
Cibersecurity Operations & Incident Response Analyst

Biz Latin Hub • Bogotá

Presencial
COP 50.000.000 - 80.000.000
Especialista en Pentesting
Especialista en Pentesting

Empresa Confidencial • Colombia

Presencial
COP 100.440.000 - 178.560.000
Beneficios adicionales