Sprocket Security Logo

Sprocket Security

Penetration Tester

Posted 18 Days Ago
Remote
Hiring Remotely in USA
Expert/Leader
Remote
Hiring Remotely in USA
Expert/Leader
Perform penetration testing at scale on web applications and networks, develop automated tools, and simulate cyber-attack techniques. Manage tasks and client interactions while contributing to security projects and research.
The summary above was generated by AI

Company Mission - Our mission is to help secure as many companies as possible, by using the best way of doing so, penetration testing. Sprocket Security prioritizes offensive security for enterprises, empowering them to build robust defense strategies based on individual business risk.

How - At Sprocket Security, we've built an expert-driven Continuous Penetration Testing platform that blends cutting-edge automated and manual testing methods.

Your Mission - You will be part of our passionate and innovative Service Delivery team, simulating real-world cyber-attack tactics, techniques, and procedures (TTPs). We look for risks and security vulnerabilities utilized by real-world attackers, and you’ll contribute directly to uncovering and explaining them. This role is ideal for an individual who wants to deepen their craft, learn continuous testing at scale, and grow in their career.

Responsibilities:

  • Perform web application testing across a large and diverse client base using established methodologies, and creating your own. 
  • Perform network and wireless testing methodologies at scale from time to time.
  • Discover newly exploitable systems across our fleet of clients. It's fun to test that new vulnerability the day it's released!
  • Build payloads and C2 infrastructure that evades defenses.
  • Mimic tactics and techniques used by real-world adversaries.
  • Show impact with post-exploitation activities. 
  • Manage our platform by conducting tasks, write findings, and work with clients to help detect and prevent.
  • Build scripts, tooling, or templates to improve personal testing efficiency and contribute ideas for future automation in the platform. You'll commonly program in the following languages: Ruby, Python, PowerShell, C# Bash, etc.
  • Advanced usage of the following tools: Burp Suite Pro, Nessus, Metasploit, CobaltStrike, etc.
  • Manage project lifecycles and present professionally to clients. Kickoff calls, debriefs, etc.
  • Work closely with development teams to migrate human-driven tasks into automation.
  • Work with AWS, Azure, terraform, ansible, and gitlab pipelines.

Requirements:

Minimum:

  • Four or more years of hands-on penetration testing experience.
  • Two or more years of hands-on web application penetration testing experience.
  • Detailed knowledge of identifying and exploiting vulnerabilities in Windows, Linux, and cloud -based systems.
  • Programming experience in Ruby, Python, Bash. Bonus (C#, JavaScript, terraform, ansible).
  • Clear and concise verbal and written skills.
  • United States resident

Preferred:

  • OSCP or equivalent skills-based certification mandatory, or will need to obtain within 12 months of employment. 
  • Adversary Simulation experience.
  • Has industry involvement by contributes research, open-source projects, or public speaking
  • Experience managing or working with management on security projects and teams. Bonus if CISSP certified.
  • Remote work acceptable.
  • Preferred proximity to Madison, WI

Benefits:

  • Unlimited and mandatory PTO for healthy work/life balance.
  • Company matched 401k (immediate eligibility, no one should have to wait to start saving).
  • 75% company contribution for health insurance for employees and 50% for dependants.
  • 100% company contribution for dental and vision.
  • Work whatever schedule works best for you. We care about results, not 9-5.
  • Hardware and tools of your choice
  • Support for your career development with paid training, conferences, certifications, etc.

Location: Remote

Ready to Trailblaze the Cybersecurity Frontier? If you're passionate about cybersecurity and eager to make an impact in the industry, we want you on our team. Apply now at Sprocket Security and join the revolution of safeguarding businesses from cyber threats!

Top Skills

Ansible
AWS
Azure
Bash
Burp Suite Pro
C#
Cobaltstrike
Gitlab
Metasploit
Nessus
Powershell
Python
Ruby
Terraform

Similar Jobs

8 Days Ago
Easy Apply
In-Office or Remote
New York City, NY, USA
Easy Apply
Mid level
Mid level
Cloud • Information Technology • Consulting • Cybersecurity • Data Privacy
The Lead Penetration Tester leads penetration testing engagements, mentors team members, and produces clear reports for clients, focusing on web applications and networks.
Top Skills: AWSAzureCloud InfrastructuresGCPPenetration Testing
6 Days Ago
Easy Apply
Remote
United States
Easy Apply
Junior
Junior
Security • Cybersecurity
The Penetration Tester will execute security assessments, including network and application pen tests, and deliver detailed reports while supporting management.
Top Skills: BashKali LinuxNmap
13 Days Ago
Remote
United States
Senior level
Senior level
Financial Services
The Senior Penetration Tester is responsible for executing penetration tests, managing client expectations, training team members, and contributing to practice development while demonstrating cybersecurity expertise.
Top Skills: BashBurp SuiteJavaScriptPowershellPython

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account