Senior Security Consultant (Web Application Penetration Tester)

NetSPI

Minneapolis (MN)

On-site

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

NetSPI in Minneapolis, MN, is seeking a Senior Security Consultant specialized in Penetration Testing. You will conduct thorough security assessments on web applications, identify vulnerabilities, and provide recommendations to strengthen security postures for clients.

The ideal candidate holds a relevant degree and has 3-5 years of experience in Penetration Testing with a strong understanding of offensive tools and methodologies. This role may require travel up to 10% and offers a dynamic team environment.

Qualifications

  • Minimum of 3-5 years of work experience in Penetration Testing.
  • Familiarity with offensive tools and IT concepts.
  • Experience mentoring or coaching team members.

Responsibilities

  • Conduct engagements on web applications and APIs independently.
  • Review reports for accuracy and provide mentoring support.
  • Create and collaborate on penetration testing reports.

Skills

Penetration Testing
Offensive Tools
OWASP Top 10
Communication Skills
Mentoring

Education

Bachelor’s degree in IT, Computer Science, Engineering or Math

Tools

Kali Linux
Burp Suite
Metasploit
Nessus

Job description

NetSPI® is an award-winning pioneer of Penetration Testing as a Service (PTaaS) with its AI‑powered platform supported by more than 350 in‑house cybersecurity experts. Specializing in 50+ pentest types, attack surface visibility, vulnerability prioritization, and attack simulation, NetSPI delivers security testing with unprecedented clarity, speed, and scale.

NetSPI is on an exciting growth journey as we disrupt and improve the proactive security market. We are looking for individuals with a collaborative, innovative, and customer‑first mindset to join our team. Learn more about our award‑winning workplace culture and get to know our A‑Team at www.netspi.com/careers.

Join the mission as a Senior Security Consultant. We are seeking a skilled and detail‑oriented Penetration Tester to conduct thorough security assessments, identify vulnerabilities, and provide expert recommendations to strengthen our clients’ security posture. As a Penetration Tester supporting web applications, you will work closely with clients to deliver clear, actionable reports and contribute to the development of security best practices.

Responsibilities
  • Conduct engagements on web applications and underlying APIs independently and provide technical oversight
  • Review reports for accuracy in technical oversight, perform weekly QA oversight, and provide mentoring support to others
  • Create, deliver, and collaborate on penetration testing reports in diverse client environments, maintaining client‑specific processes, reporting standards, and access protocols to help improve their security posture
  • Research and develop innovative techniques, tools, and methodologies for penetration testing services, alongside commitment to improvement and execution on NetSPI specific products and processes
  • Participate in development, implementation, and oversight of testing, delivery, and management strategies for key client accounts
  • Perform administrative tasks related to day‑to‑day consulting activities to ensure smooth business and engagement operations
Minimum Qualifications
  • Bachelor’s degree or higher, with a focus on IT, Computer Science, Engineering or Math or equivalent experience
  • Minimum of 3‑5 years of work experience in Penetration Testing
  • Familiarity with offensive tools, based on applicable skillset (e.g., Kali Linux, Burp Suite, Metasploit, Nessus)
  • Familiarity with offensive and defensive IT concepts and protocols
  • Extensive understanding of the OWASP Top 10, MITRE ATT&CK framework, and various security frameworks
  • Working knowledge of Windows, Linux and MacOS operating systems internals
  • Experience mentoring or coaching to growing team members, while sharing knowledge externally through blogs, hosting webinars, or presenting at conferences
  • Ability to work independently and as part of a team
  • Proficient communication skills, both written and verbal
  • Willingness to travel up to 5‑10%
  • This position requires an 8‑hour workday, with occasional evenings or weekends necessary to meet project deadlines or critical needs
Preferred Qualifications
  • Ability to provide technical and QA oversight on web applications and underlying APIs
  • Experience in one or more of the following programming or scripting languages (e.g., Ruby, Python, Perl, C, C++, Java, and C#)
  • Offensive cybersecurity certifications (e.g., GXPN, GPEN, OSCP, GWAPT)

We are an equal employment opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Consultant (Web Application Penetration Tester)
Senior Security Consultant (Web Application Penetration Tester)

NetSPI • United States

On-site
USD 120,000 - 190,000
Senior Security Consultant (Network Penetration Tester)
Senior Security Consultant (Network Penetration Tester)

NetSPI • Minneapolis (MN)

On-site
USD 110,000 - 160,000
Senior Security Consultant (Network Penetration Tester)
Senior Security Consultant (Network Penetration Tester)

NetSPI • United States

On-site
USD 90,000 - 120,000
Security Consultant II (Mobile Application Penetration Tester)
Security Consultant II (Mobile Application Penetration Tester)

NetSPI • United States

On-site
USD 80,000 - 110,000
Security Consultant II (Mobile Application Penetration Tester)
Security Consultant II (Mobile Application Penetration Tester)

NetSPI • United States

On-site
USD 85,000 - 110,000
Senior Security Consultant (Secure Code Review)
Senior Security Consultant (Secure Code Review)

NetSPI • Minneapolis (MN)

On-site
USD 90,000 - 120,000
Security Consultant II (AI/ML Penetration Tester)
Security Consultant II (AI/ML Penetration Tester)

NetSPI • United States

On-site
USD 80,000 - 120,000
Collaborative workplace culture
Opportunities for professional growth
Senior Security Consultant (Mainframe Penetration Tester)
Senior Security Consultant (Mainframe Penetration Tester)

NetSPI • Minneapolis (MN)

On-site
USD 90,000 - 120,000
Principal Security Consultant (Hardware/Embedded Penetration Tester)
Principal Security Consultant (Hardware/Embedded Penetration Tester)

NetSPI • Minneapolis (MN)

On-site
USD 100,000 - 130,000
Principal Security Consultant (Hardware/Embedded Penetration Tester)
Principal Security Consultant (Hardware/Embedded Penetration Tester)

NetSPI Inc. • Minneapolis (MN)

On-site
USD 100,000 - 130,000