Security Penetration Tester

Xerox Corporation

United States

On-site

USD 90,000 - 140,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Xerox Corporation is seeking a Penetration Tester with about 3 years of hands-on security testing experience to join our Offensive Security team. You will identify and help remediate vulnerabilities across applications, networks, and cloud environments through simulated attacks.

The role emphasizes collaboration with engineering, IT, and security teams to validate fixes, stay current on threats, and contribute to tooling and playbooks.

Qualifications

  • Approximately 3 years of experience in penetration testing or offensive security.
  • Based in the United States and authorized to work in the U.S. without sponsorship.
  • Solid understanding of OWASP Top 10 and network-layer attacks.
  • Hands-on with penetration testing tools and frameworks (Burp Suite, Metasploit, Nmap, Kali Linux).
  • Scripting experience for tooling and automation (Python, Bash, PowerShell).
  • Strong written communication for technical reports.

Responsibilities

  • Plan and execute penetration tests against web applications, networks, APIs, and cloud environments to identify exploitable vulnerabilities.
  • Perform manual and automated security testing using industry-standard tools (e.g., Burp Suite, Metasploit, Nmap, Nessus).
  • Document findings with risk ratings, reproduction steps, and remediation recommendations.
  • Collaborate with engineering and IT teams to validate fixes and re-test remediated issues.
  • Stay current on emerging threats, attack techniques, and vulnerability disclosures relevant to Xerox's technology stack.
  • Support red team exercises, social engineering assessments, or physical security tests as needed.
  • Contribute to internal tooling, scripts, or playbooks to improve testing efficiency and coverage.
  • Assist with compliance-driven testing (e.g., PCI-DSS, SOC 2) as required.

Skills

Penetration testing
Offensive security
Vulnerability assessment
Scripting (Python/Bash/PowerShell)
Report writing

Tools

Burp Suite
Metasploit
Nmap
Kali Linux

Job description

The salary range above represents the low and high end in the local currency of Xerox’s salary range for this position and is reflected in an annualized amount.Actual salaries will vary based onfactorsincluding, but not limited to, geographic location, market competition, and/or the successful applicant’s education, experience,knowledge, skills,and abilities. The range listed is just one component of Xerox’s total compensation package for employees.Employees are also afforded acomprehensive suite of benefits, to view those details please visit Xerox Careers for your applicable country.If you are not reviewing this job posting on Xerox Careers , we cannot guarantee the validity of this posting. For a list of our current internal postings, please visit Xerox Careers .

Description & Requirements

About Xerox Holdings Corporation
For more than 100 years, Xerox has continually redefined the workplace experience. Harnessing our leadership position in office and production print technology, we’ve expanded into software and services to sustainably power the hybrid workplace of today and tomorrow. Today, Xerox is continuing its legacy of innovation to deliver client-centric and digitally-driven technology solutions and meet the needs of today’s global, distributed workforce. From the office to industrial environments, our differentiated business and technology offerings and financial services are essential workplace technology solutions that drive success for our clients. At Xerox, we make work, work.Learn more about us at www.xerox.com .

About the Role

XCS (Xerox) is seeking a Penetration Tester with approximately 3 years of hands‑on experience to join our Offensive Security team. In this role, you will identify, exploit, and help remediate security vulnerabilities across our applications, networks, and infrastructure through simulated attacks, contributing directly to the security posture of our products and enterprise environment.

Key Responsibilities

  • Plan and execute penetration tests against web applications, networks, APIs, and cloud environments to identify exploitable vulnerabilities.
  • Perform manual and automated security testing using industry-standard tools (e.g., Burp Suite, Metasploit, Nmap, Nessus, Cobalt Strike).
  • Document findings clearly in professional reports, including risk ratings, reproduction steps, and remediation recommendations.
  • Collaborate with engineering and IT teams to validate fixes and re-test remediated issues.
  • Stay current on emerging threats, attack techniques, and vulnerability disclosures relevant to Xerox's technology stack.
  • Support red team exercises, social engineering assessments, or physical security tests as needed.
  • Contribute to internal tooling, scripts, or playbooks that improve testing efficiency and coverage.
  • Assist with compliance-driven testing (e.g., PCI-DSS, SOC 2) as required.

Required Qualifications

  • Approximately 3 years of professional experience in penetration testing, offensive security, or a closely related role.
  • Must be based in the United States and authorized to work in the U.S. without sponsorship.
  • Solid understanding of common vulnerability classes (OWASP Top 10, network-layer attacks, privilege escalation, etc.).
  • Hands‑on experience with penetration testing tools and frameworks (Burp Suite, Metasploit, Nmap, Kali Linux, etc.).
  • Working knowledge of scripting/programming (Python, Bash, or PowerShell) for tooling and automation.
  • Strong written communication skills for producing clear, actionable technical reports.
  • Ability to work independently in a remote environment while collaborating across distributed teams.

Preferred Qualifications

  • Industry certifications such as OSCP, CEH, or GPEN (preferred, not required).
  • Experience testing cloud environments (AWS, Azure, or GCP).
  • Familiarity with secure code review or application security testing.
  • Prior experience in a regulated industry (e.g., government, healthcare, finance, or print/imaging technology).
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote Penetration Tester – Offensive Security Expert
Remote Penetration Tester – Offensive Security Expert

Xerox Corporation • United States

On-site
USD 90,000 - 140,000
Senior Risk Analyst
Senior Risk Analyst

Xerox Corporation • Northern (KY)

Hybrid
USD 146,000 - 195,000
Client Operations Associate (Floater)
Client Operations Associate (Floater)

Xerox Corporation • Chicago (IL)

On-site
USD 35,000 - 69,000
Medical insurance
Dental insurance
Vision insurance
+6
Sales Executive - IT Solutions (Commercial)
Sales Executive - IT Solutions (Commercial)

Xerox Corporation • Phoenix (AZ), Northern (KY)

Hybrid
USD 60,000 - 120,000
Health Savings Account
401k matching
Medical/dental/vision
+1
Delivery Account Operations Associate
Delivery Account Operations Associate

Xerox Corporation • Tampa (FL)

On-site
USD 28,000 - 44,000
Benefits from day one
401(k) match
Paid time off
+1
Sr. Client Executive
Sr. Client Executive

Xerox Corporation • Virginia Beach (VA)

On-site
USD 90,000 - 130,000
Medical, dental, vision insurance
Retirement plan
Paid holidays & Flexible time off
Sr. Client Executive - IT Services (Public Sector)
Sr. Client Executive - IT Services (Public Sector)

Xerox Corporation • Richmond (VA), Northern (KY)

Hybrid
USD 75,000 - 140,000
Medical, dental, vision
Retirement Plan
Paid holidays
+1
Senior Client Executive - IT Solutions - Sales
Senior Client Executive - IT Solutions - Sales

Xerox Corporation • Boston (MA)

Hybrid
USD 120,000 - 180,000
Senior Director, Cloud Solutions
Senior Director, Cloud Solutions

Xerox Corporation • Northern (KY)

Hybrid
USD 180,000 - 240,000
Competitive compensation
Comprehensive benefits
Performance incentives
Field Service Technician - Virginia Beach, VA
Field Service Technician - Virginia Beach, VA

Xerox Corporation • Norfolk (VA)

On-site
USD 31,620 - 63,240
Full medical/dental/vision
Wellness credits
401k matching
+2