Penetration Tester

Arwentech

Lahore

On-site

PKR 900,000 - 1,300,000

Full time

12 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Arwentech is seeking a Penetration Tester to identify security weaknesses across web applications, networks, and APIs. The role involves controlled assessments, manual and automated testing, and producing clear, actionable reports.

The candidate should have a strong foundation in ethical hacking, security best practices, and the ability to communicate findings to technical and non-technical stakeholders. 1–2 years of relevant experience is preferred.

Qualifications

  • Bachelor's degree in Computer Science or related field.
  • 1–2 years of experience in penetration testing or related cybersecurity role.
  • Hands-on with web, network, and API security testing.
  • Experience with PTES or OWASP Testing Guide.
  • Certifications preferred: CEH, eJPT, Security+, PNPT, OSCP.

Responsibilities

  • Conduct penetration testing on web apps, networks, APIs, and systems.
  • Perform vulnerability assessments and security reviews to identify risks.
  • Utilize manual and automated tools to locate and validate vulnerabilities.
  • Perform reconnaissance, vulnerability analysis, exploitation, and post-exploitation activities.
  • Identify common weaknesses including OWASP Top 10 and misconfigurations.
  • Prepare detailed reports with findings, risk ratings, evidence, and remediation.
  • Communicate findings with security teams, developers, and stakeholders.
  • Assist in validating fixes and remediation efforts with DevOps teams.
  • Maintain knowledge of current vulnerabilities and testing methodologies.
  • Improve testing processes, checklists, and documentation.
  • Support security assessments, vulnerability management, and compliance testing.

Skills

Penetration testing
Web app security
Network security
OWASP Top 10
Burp Suite
Nmap
Nessus/OpenVAS
Wireshark
Python/Bash/PowerShell
Reporting & communication
Attacker mindset

Education

Bachelor's degree
Certifications (CEH/eJPT/OSCP)

Tools

Burp Suite
Nmap
Nessus/OpenVAS
Wireshark
Python

Job description

The Penetration Tester is responsible foridentifying and assessing security vulnerabilities across applications,networks, and systems by performing controlled security assessments andsimulated attacks. The role involves using industry-standard tools andmethodologies to identify weaknesses, validate vulnerabilities, preparedetailed reports, and support remediation activities. The ideal candidateshould have a strong foundation in ethical hacking concepts, penetrationtesting techniques, and security best practices.

  • Conductpenetration testing activities on web applications, networks, APIs, andsystems under defined testing scopes.
  • Performvulnerability assessments and security reviews to identify potential securityrisks.
  • Utilizemanual and automated penetration testing tools to identify and validatevulnerabilities.
  • Performreconnaissance, vulnerability analysis, exploitation, andpost-exploitation activities as part of security assessments.
  • Identifycommon vulnerabilities including OWASP Top 10, misconfigurations,authentication issues, and security weaknesses.
  • Prepareclear and detailed penetration testing reports including findings, riskratings, evidence, and remediation recommendations.
  • Communicatetechnical findings effectively with security teams, developers, andrelevant stakeholders.
  • Assistdevelopment and infrastructure teams in validating security fixes andremediation efforts.
  • Maintainknowledge of current vulnerabilities, attack techniques, and penetrationtesting methodologies.
  • Assistin improving penetration testing processes, checklists, and documentation.
  • Supportsecurity assessments, vulnerability management activities, andcompliance-related security testing.
  • Maintainconfidentiality and follow ethical hacking guidelines during all testingactivities.
  • Document testing procedures, findings, and lessonslearned
Requirements
Knowledge, Skills, Abilities (KSA’s) required tosuccessfully perform the job:
Knowledge:
  • Good understanding of commonvulnerabilities, attack vectors, and exploitation techniques.
  • Knowledge of OWASP Top 10vulnerabilities and web application security concepts.
  • Understanding of network protocols,operating systems, and basic system architecture.
  • Familiarity with penetration testingmethodologies such as PTES and OWASP Testing Guide.
  • Hands-on knowledge of penetrationtesting tools such as:
  • Burp Suite
  • Nmap
  • Nessus/OpenVAS
  • Wireshark
  • Basic understanding ofscripting/programming languages such as Python, Bash, or PowerShell.
  • Understanding of security conceptsincluding authentication, authorization, encryption, and access controls.
  • Awareness of security best practices andsystem hardening techniques.
Skills:
  • Ability to perform penetration testingon web applications, networks, and APIs.
  • Good technical skills in vulnerabilityidentification and exploitation.
  • Ability to use penetration testing toolseffectively.
  • Ability to create professionalvulnerability assessment and penetration testing reports.
  • Strong analytical and problem-solvingskills.
  • Ability to work independently andcollaborate with security and technical teams.
  • Good attention to detail when analyzingsecurity weaknesses.
  • Ability to research and learn newvulnerabilities and attack techniques.
Abilities:
  • Ability to think from an attacker’sperspective to identify security weaknesses.
  • Ability to analyze systems andapplications for potential vulnerabilities.
  • Ability to reproduce and validatesecurity findings.
  • Ability to explain technical issues toboth technical and non-technical stakeholders.
  • Ability to manage multiple testing tasksand meet deadlines.
  • Ability to maintain confidentiality andprofessional ethics.
  • Ability to continuously improve technical knowledge in cybersecurity.
Education, Experience, Licensure, Certificationrequired for the position:
  • Bachelor's degree in ComputerScience, Information Security, Cybersecurity, or a related field.
  • 1–2 years of experience inpenetration testing, vulnerability assessment, or a related cybersecurityrole.
  • Practical experience with webapplication, network, and API security testing.
  • Relevant certifications are preferred, such as:CEH, eJPT, Security+, PNPT,OSCP (added advantage)
Competenciesrequired to successfully perform the job:
  • 1.Web, network, and API penetration testing
  • 2.Vulnerability Assessment & Reporting
  • 4.Security Testing Methodologies
  • 5.Basic Scripting (Python/Bash/PowerShell)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Application Security Engineer
Senior Application Security Engineer

SwipBox • Islamabad

On-site
PKR 400,000 - 700,000
Penetration Testing Senior Associate
Penetration Testing Senior Associate

PwC South Africa • Karachi Division

On-site
Confidential
Senior VAPT Engineer
Senior VAPT Engineer

Arwentech • Islamabad

On-site
PKR 1,800,000 - 3,200,000
Excellent Salary
Fuel Allowance
Internet Allowance
+5
Assistant Manager (Penetration Testing)
Assistant Manager (Penetration Testing)

Risk Associates Pvt. Ltd. • Karachi Division

On-site
PKR 1,800,000 - 3,000,000
Penetration Testing Senior Associate
Penetration Testing Senior Associate

A. F. Ferguson & Co. (a member firm of the PwC network) • Karachi Division

On-site
PKR 1,200,000 - 1,800,000
Cyber Security Consultant
Cyber Security Consultant

Catalyic Security • Lahore

On-site
Penetration Tester
Penetration Tester

Alykas • Karachi Division

On-site
PKR 1,200,000 - 1,800,000
Junior Cybersecurity Engineer
Junior Cybersecurity Engineer

Octdaily • Karachi Division

On-site
PKR 600,000 - 900,000
Penetration Tester - CREST Registered
Penetration Tester - CREST Registered

Translation Empire Ltd • Rawalpindi Cantonment

On-site
PKR 1,200,000 - 2,400,000
Penetration Tester - CREST Registered
Penetration Tester - CREST Registered

Translation Empire Ltd • Rawalpindi Cantonment

On-site
PKR 1,800,000 - 2,400,000