Penetration Tester (Florida)

Packetlabs Ltd.

United States

Remote

USD 90,000 - 150,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Fully remote (in Florida)
Competitive compensation

Job summary

Packetlabs Ltd. is seeking a skilled application security tester to join our team. You will perform penetration testing of web, mobile, and API surfaces, review source code, and help prove exploit impacts.

This role emphasizes hands-on testing, reporting, and security validation in a dynamic client environment. This position requires 3–5 years of pentest/consulting experience, OSCP/OSWE/BSCP certifications, and a strong OWASP focus.

Qualifications

  • Solid working knowledge of programming languages including C, C#, Python, Objective-C, Java, JavaScript, and SQL.
  • Familiarity with web services and data formats such as XML, JSON, SOAP, REST, and AJAX.
  • Understanding of AI/LLM weaknesses and flaws in applications.
  • Extensive experience with an attack proxy such as Burp Suite.
  • 3–5 years of experience in penetration testing and consulting.
  • Graduate of a post-secondary college or university degree program.
  • Professional qualifications OSCP, OSWE or BSCP.

Responsibilities

  • Perform penetration testing of web applications, mobile applications, thick clients, and APIs.
  • Source code review and whitebox testing to prove impact of flaws.
  • Reverse engineering of mobile and thick client applications.
  • Chain application flaws to cloud and on-prem AD infrastructure when appropriate.
  • Develop detailed reports on findings and remediations for technical and executive audiences.
  • Perform SAST and DAST on enterprise, SaaS, and in-house applications.
  • Utilize scanners and validate/eliminate false positives.
  • Maintain strong OWASP knowledge across Web, API, Mobile, and AI/LLM.

Skills

C
C#
Python
Objective-C
Java
JavaScript
SQL
AngularJS

Education

Post-secondary degree
OSCP
OSWE
BSCP

Tools

Burp Suite

Job description

We are a passionate team of highly trained, proactive, penetration testers. We provide expert-level penetration testing services that are thorough and tailored to help foster a safe digital space where everyone has the right to privacy and security. Packetlabs consultants find weaknesses others overlook and continuously learn new ways to evade controls. We hold ourselves to a very high standard.

To do so, we only hire individuals with the same drive and passion.

Who we are looking for
  • Core values:
    • You have a customer-first mentality. Is a great communicator with clients, project managers, and teammates. Rapid responses and on time.
    • You deliver work that you take pride in. Your work is an autograph of your excellence.
    • You dig deeper into every finding. Doesn’t stop until impact is proven.
    • You are comfortable being uncomfortable. Goes towards obstacles, not away from them. Consulting isn’t your typical job and requires adapting to rapidly changing environments.
    • You are always learning. Cybersecurity is changing every day, and you need to keep up or want to keep up. Be deeply aware of your skillset and be willing to improve.
    • You are Self-motivated and dependable.
    • You are humble. Egos don’t have a place at Packetlabs.
  • Education and experience:
    • We are looking for an experienced developer/application security tester to join our team:
      • Solid working knowledge of programming languages, including C, C#, Python, Objective-C, Java, JavaScript, SQL, and frameworks like AngularJS.
      • Familiarity with web services and data exchange formats such as XML, JSON, SOAP, REST, and AJAX.
      • Understanding of AI/LLM weaknesses and flaws in applications.
      • Extensive experience/expertise in using an attack proxy (e.g. Burp Suite)
    • Preferred if you have 3 - 5 years of experience working in penetration testing and consulting
    • A graduate of a post-secondary college or university degree program.
    • Has at least two years of experience dealing with information security-related tasks.
    • Has professional qualifications (one or more): OSCP, OSWE, BSCP.
      • OSCP or Burp is mandatory for our organization.
  • You must be located in Florida.
What you’ll be doing
  • Your primary role is to perform penetration testing of web applications, mobile applications, thick clients, and APIs.
  • Source code review and whitebox penetration testing to prove the impact of application flaws.
  • Reverse engineering of mobile and thick client applications.
  • You sometimes chain application flaws to other areas, such as cloud and on-prem AD infrastructure. Opportunities for lateral movement into the infrastructure teams are limited and given at the manager’s discretion.
  • Develop detailed reports on findings and remediations for impactful findings. You will learn to debrief these findings at both a technical and executive level.
  • Perform SAST and DAST on enterprise, SaaS, and custom in-house applications.
  • Experience in using scanners and knowledge of validation and elimination of false positives.
  • A strong understanding of OWASP in Web, API, Mobile, and AI/LLM is necessary, but you will be asked to go beyond.
Why Us
  • Amazing team and working environment
  • Competitive compensation and pay for performancen
  • Employee growth and development
  • Fully remote (in Florida)
At-Will Employment
  • This position is at-will, and this job posting does not constitute an employment contract or guarantee of continued employment.
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Penetration Tester - Infrastructure & Red Team (Texas/Florida)
Penetration Tester - Infrastructure & Red Team (Texas/Florida)

Packetlabs • Town of Florida (NY)

Hybrid
USD 90,000 - 130,000
Fully remote within Texas or Florida
Remote Penetration Tester - Web & Mobile Security (FL)
Remote Penetration Tester - Web & Mobile Security (FL)

Packetlabs Ltd. • United States

Remote
USD 90,000 - 150,000
Fully remote (in Florida)
Competitive compensation
Penetration Tester
Penetration Tester

TalentFish • Illinois

On-site
USD 100,000 - 160,000
Penetration Tester
Penetration Tester

Ringside Talent • Columbus (OH)

Hybrid
USD 90,000 - 130,000
OSCP/GPEN sponsorship
Hands-on security culture
Penetration Tester
Penetration Tester

Velero • United States

Remote
USD 165,000 - 220,000
Penetration Tester
Penetration Tester

Ringside Talent Acquisition Partners • Columbus (OH)

Hybrid
USD 90,000 - 140,000
Penetration Tester
Penetration Tester

BlackHount • Bellevue (NE)

On-site
USD 70,000 - 90,000
Penetration Tester
Penetration Tester

TechCompass • Northern (KY)

Hybrid
USD 90,000 - 130,000
Remote work
Project-based engagements
Penetration Tester
Penetration Tester

NikSoft Systems Corporation • United States

On-site
USD 120,000 - 170,000
Senior Penetration Tester
Senior Penetration Tester

JPMorgan Chase & Co. • New York (NY)

On-site
USD 180,000 - 280,000