Remote Penetration Tester — Australia MSP

ULTIM8 OUTSOURCE SOLUTIONS CORPORATION

Metro Manila

Remote

PHP 5,367,000 - 8,050,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Fully remote role

Job summary

ULTIM8 OUTSOURCE SOLUTIONS CORPORATION is seeking a seasoned security tester to perform network and web app penetration testing from a fully remote setup. You will craft technical findings, provide actionable insights for client boards, and build robust investigative workflows for OSINT and dark web research.

The role emphasizes autonomy in a global remote team with strong OPSec discipline, OSINT focus, and compliance with Privacy and legal boundaries in Australia.

Qualifications

  • Proven track record conducting network and web app pentests.
  • Strong knowledge of OWASP Top 10 and MITRE ATT&CK.
  • Hands-on toolkit experience (Burp Suite, Nmap, Metasploit, Kali).
  • Scripting ability in Python, Bash or PowerShell for tooling and automation.
  • Fundamentals across Windows, Linux, Active Directory, networking and cloud (Azure/AWS/M365).
  • OSINT and dark web investigation experience.
  • Operational security and evidence-handling disciplines.
  • Knowledge of Australian law/privacy boundaries for investigations.
  • Clear, actionable report writing that stakeholders can act on.
  • Australian work rights and willingness to pass checks.

Responsibilities

  • Plan and execute penetration tests against client networks — internal, external, wireless and segmentation testing
  • Test web applications and websites for the OWASP Top 10 and beyond: authentication and session flaws, injection, access control failures, business logic abuse, API weaknesses
  • Conduct OSINT investigations into online personas — attributing accounts and aliases to real-world identities, mapping networks of linked profiles, resolving anonymous or pseudonymous actors, and documenting the evidence trail that supports the conclusion
  • Build and operate research personas and sock puppet accounts with sound operational security, and maintain the infrastructure that keeps investigative activity separated from ICTechnology and our clients
  • Run dark web research — monitoring Tor and I2P marketplaces, forums and leak sites for client data, credentials, brand abuse and threat actor chatter, and tracking actor handles and reputations across platforms
  • Handle attack surface and exposure intelligence — credential and data leak discovery, executive and brand threat monitoring, supply chain reconnaissance
  • Perform digital forensics and incident response work: evidence acquisition and preservation, timeline analysis, malware triage, and clear findings that stand up to scrutiny
  • Run phishing simulations and social engineering assessments where clients have authorised them
  • Write the deliverables that matter — a technical findings report with reproducible steps and evidence, plus an executive summary a non-technical stakeholder can act on
  • Retest remediations and confirm fixes actually closed the gap

Skills

Penetration testing
OWASP Top 10
MITRE ATT&CK
Automation scripting
Windows fundamentals
Linux fundamentals
AD & Networking
Cloud fundamentals (Azure/AWS/M365)
OSINT investigations
Dark web research
OPSEC / anonymity
Report writing
Australian work rights
Autonomous work

Education

OSCP
OSWE
OSEP (OffSec)
CREST CPSA
GPEN
GWAPT
GCFA
CEH Practical
PenTest+ / CySA+
eJPT/eWPT/eCPPT

Tools

Burp Suite
Nmap
Metasploit
Wireshark
Nessus/OpenVAS
Kali
Python
Bash
PowerShell

Job description

ULTIM8 OUTSOURCE SOLUTIONS CORPORATION is seeking a seasoned security tester to perform network and web app penetration testing from a fully remote setup. You will craft technical findings, provide actionable insights for client boards, and build robust investigative workflows for OSINT and dark web research.

The role emphasizes autonomy in a global remote team with strong OPSec discipline, OSINT focus, and compliance with Privacy and legal boundaries in Australia.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Remote Penetration Testing Analyst
Remote Penetration Testing Analyst

Sophos Group • Hinoba-an

On-site
PHP 1,500,000 - 2,100,000
Senior Penetration Tester - Remote Red Team
Senior Penetration Tester - Remote Red Team

Sophos Group • Hinoba-an

On-site
PHP 6,254,000 - 8,755,000
Penetration Tester (SMB)
Penetration Tester (SMB)

BreachLock Inc. • Hinoba-an

On-site
PHP 800,000 - 1,200,000
Private Health Insurance
Penetration Tester (Reverse Engineering and Embedded Code Experience)
Penetration Tester (Reverse Engineering and Embedded Code Experience)

Dencom Consultancy & Manpower Services • Manila

On-site
SMB Penetration Tester – Offense & Automation
SMB Penetration Tester – Offense & Automation

BreachLock Inc. • Hinoba-an

On-site
PHP 800,000 - 1,200,000
Private Health Insurance
Penetration Tester (Reverse Engineering and Embedded Code experience)
Penetration Tester (Reverse Engineering and Embedded Code experience)

Dencom Consultancy and Manpower Services • Mandaluyong

On-site
Cyber Security -Senior Penetration Tester
Cyber Security -Senior Penetration Tester

Radii Global • Quezon City

On-site
PHP 1,200,000 - 1,800,000
Penetration Tester: Web & Embedded Code + Reverse Eng
Penetration Tester: Web & Embedded Code + Reverse Eng

Dencom Consultancy and Manpower Services • Manila

On-site
Commission
Performance Bonus
Paid Holidays
+2
Penetration Tester - Hybrid - BGC - up to 100K
Penetration Tester - Hybrid - BGC - up to 100K

weSource Management Consultancy Firm • Taguig

Hybrid
Penetration Tester - Embedded Code & Reverse Engineering
Penetration Tester - Embedded Code & Reverse Engineering

Dencom Consultancy & Manpower Services • Manila

On-site
PHP 400,000 - 600,000