Jobs Companies SixGen, Inc. Senior Web Application Penetration Tester

Über diese Senior Web Application Penetration Tester Stelle bei SixGen, Inc.

SixGen, Inc. · Remote · Remote

SIXGEN’s mission is to deliver agile, mission-ready cybersecurity solutions that empower government and critical infrastructure organizations to stay ahead of advanced cyber threats. We combine innovation, deep expertise, and cutting-edge capabilities to uncover vulnerabilities, protect vital systems, and ensure operational superiority in an ever-evolving digital landscape.

POSITION OVERVIEW

Position: Senior Web Application Penetration Tester
Job Type: Full-time
Location: Remote
Clearance Requirements: Must be able to obtain a Secret Clearance
Travel Requirements: Up to 10%
Experience: 5+ years

 

WHAT YOU'LL DO

We are seeking a skilled and motivated Senior Web Application Penetration Tester to join our growing cyber operations team. The ideal candidate will possess deep expertise in web application security testing, vulnerability research, and exploitation techniques, with the ability to identify complex attack paths and develop creative solutions to challenging security problems.

This role goes far beyond automated scanning. Successful candidates will conduct in-depth assessments of web applications, APIs, mobile applications, and supporting infrastructure while leveraging custom tooling, manual testing techniques, and advanced exploitation methodologies to uncover impactful security findings.

KEY RESPONSIBILITIES

Web Application Security Assessments

  • Conduct penetration testing of web applications, APIs, mobile applications, databases, and client-side technologies.
  • Perform application enumeration, endpoint discovery, vulnerability research, and exploitation activities.
  • Identify, validate, and assess vulnerabilities across complex environments.
  • Analyze attack paths and security weaknesses to determine business and operational impact.

Technical Analysis & Research

  • Develop and utilize custom tools, scripts, and payloads to support testing activities.
  • Perform network mapping, vulnerability analysis, and security assessments across applications and supporting infrastructure.
  • Research emerging vulnerabilities, attack techniques, and exploitation methodologies.
  • Support post-exploitation activities involving cloud and enterprise environments when applicable.

Client Engagement & Reporting

  • Collaborate with clients and internal teams to define scope, review findings, and recommend remediation strategies.
  • Communicate technical concepts and findings to both technical and non-technical stakeholders.
  • Produce comprehensive reports, including detailed findings, exploitation procedures, risk analysis, and mitigation recommendations.
  • Participate in client meetings and provide ongoing updates throughout assessment activities.

QUALIFICATIONS

  • 5+ years of experience in web application penetration testing or offensive cybersecurity.
  • Demonstrated experience conducting manual web application security assessments.
  • Knowledge of modern web application vulnerabilities, attack methodologies, and exploitation techniques.
  • Experience with network mapping, vulnerability scanning, and penetration testing methodologies.
  • Familiarity with NIST 800-series standards and cybersecurity best practices.
  • Experience developing scripts, payloads, or custom testing tools.
  • Strong analytical, problem-solving, and communication skills.

Preferred Certifications

One or more of the following certifications is strongly preferred:

  • CWES (preferred)
  • CWEE (preferred)
  • OSCP
  • OSWA
  • OSWE
  • CRTO
  • GWAPT
  • Other relevant hands-on offensive security certifications

PREFERRED QUALIFICATIONS

  • Experience with cloud environments and post-exploitation activities.
  • Experience with Active Directory security assessments.
  • Familiarity with FISMA compliance requirements.
  • Experience supporting government or regulated industry clients.
  • Proficiency with common offensive security tools and frameworks.

COMPENSATION & BENEFITS

At SIXGEN, we are committed to fair and equitable compensation practices. Compensation for this role will be based on experience, qualifications, technical expertise, and overall alignment with the position.

Additionally, SIXGEN offers top-tier benefits for full-time employees, including:

  • Employer-paid health insurance premiums (medical, dental, vision) for you and your family 
  • Employer-paid short/long term disability insurance and basic life/AD&D insurance
  • 401K with a 4% employer contribution
  • Professional development reimbursement options available (training, certification, education, etc)​
  • Flexible and remote work policies for most positions
  • Flexible PTO and holiday schedule

For more information, please reach out to our Director of Human Resources, Amy Maxwell at [email protected].

OUR COMMITMENT

SIXGEN is an Equal Opportunity Employer. We ensure that all applicants are considered for employment without regard to race, color, religion, sexual orientation, gender identity, national origin, disability, age, marital status, ancestry, projected veteran status, or any other protected group or class.

We are committed to fostering an inclusive culture that values diversity in our people, reflecting the communities we serve and our customer base. We strive to attract and retain a diverse talent pool and create an environment where everyone is empowered to be their authentic selves at work.

 

Bereit, sich bei SixGen, Inc. zu bewerben?
Bei SixGen, Inc. bewerben

Über SixGen, Inc.

SIXGEN supports cyber and intelligence missions by serving government and commercial organizations as they overcome global cybersecurity challenges. Our highly skilled operators conduct research and assessments based on real-world threats. We simulate adversaries and malicious actors to report details and actionable findings on critical assets and infrastructures. Our program planners advise mission owners to bring rapid solutions to intelligence mission leaders. Using innovative processes, tools, and techniques, we predict and overcome cybersecurity vulnerabilities. Our successes are supported by our diverse team of experienced, technical talent. 

Alle Jobs bei SixGen, Inc. ansehen →

Ähnliche Jobs

CACI
Senior Penetration Tester & Assessments Lead
CACI
⚡ Früh bewerben Remote (Any State) · standortgebunden $90,300–$189,600
● Neu 👁 Gesehen ✓ Beworben vor 4 Tg.
Offchainlabs
Senior Penetration Tester (AWS)
Offchainlabs
⚡ Früh bewerben Remote · standortgebunden
● Neu 👁 Gesehen ✓ Beworben vor 5 Tg.
Twilio
Staff Engineer - Offensive Security
Twilio
⚡ Früh bewerben Remote - US · standortgebunden
● Neu 👁 Gesehen ✓ Beworben vor 6 Tg.
NVIDIA
Senior Offensive Security Engineer, Vulnerability Operations
NVIDIA
⚡ Früh bewerben US, CA, Remote · standortgebunden
● Neu 👁 Gesehen ✓ Beworben vor 6 Tg.
Sporty Group
Offensive Security Engineer
Sporty Group
⚡ Früh bewerben Europe - Remote · standortgebunden
● Neu 👁 Gesehen ✓ Beworben vor 1 Wo.
Greenlight
Staff Offensive Security Engineer
Greenlight
⚡ Früh bewerben Atlanta (Remote Friendly) · standortgebunden $165,000–$200,000
● Neu 👁 Gesehen ✓ Beworben vor 1 Wo.
IA
Ethical Hacker/Pentester Mid Level (2+ Years) - LATAM
Insight Assurance
⚡ Früh bewerben Brazil (Remote); Colombia (Rem... · standortgebunden
● Neu 👁 Gesehen ✓ Beworben vor 2 Wo.
Finite State
Staff Product Security Engineer - Offensive Testing
Finite State
⚡ Früh bewerben United States or Canada Vor Ort
● Neu 👁 Gesehen ✓ Beworben vor 3 Wo.
Bishop Fox
Penetration Tester
Bishop Fox
⚡ Früh bewerben Mexico, Remote · standortgebunden
● Neu 👁 Gesehen ✓ Beworben vor 3 Wo.

Registrieren für Vorschläge, die auf die von Ihnen geöffneten Jobs und gespeicherten Suchen zugeschnitten sind.

Mehr Jobs bei SixGen, Inc.

Alle Jobs bei SixGen, Inc. ansehen →

Jetzt bewerben
🤖

Moment — langsam

JobsRadar wurde für echte Menschen gebaut, die eine schwere Zeit bei der Jobsuche haben — nicht für automatisierte Anfragen. Sie klicken viel zu schnell und sind jetzt vorübergehend blockiert.

Kommen Sie später wieder. Wenn Sie wirklich auf Jobsuche sind, stehen wir hinter Ihnen — verhalten Sie sich einfach wie ein Mensch.

Catch your next role the second it’s posted.

Create a free account and we’ll watch the boards for you — the instant a job matches your search, it lands in your inbox or Telegram. No digging, no refreshing.

Create free account

Free forever · takes 30 seconds · already have one?

Verschaffe dir einen Vorsprung bei der Jobsuche.

Tritt unserem Telegram-Kanal bei für das, was dir hilft, die Stelle zu bekommen — Gehaltsbenchmarks, den wöchentlichen Marktpuls und neue Feature-Drops. Kein Spam, nur Signal.

Dem Kanal beitreten — kostenlos