Penetration Testing

Penetration Tester

Run scoped web, API, and network assessments with clear reports and ethical craft. Permission always — no drive-by hacking.

← All roles
Type
Full-time
Location
Remote / hybrid
Posted
2026-10-01

Responsibilities

  • Plan and execute authorized pentests across web apps, APIs, and infra
  • Write findings that engineers can fix — severity, repro, remediations
  • Coordinate scope, rules of engagement, and retests with clients
  • Contribute methodology notes back to the HackerOnStreet learn tracks

Requirements

  • Hands-on experience with OWASP-style web/API testing
  • Comfort with Linux, Burp (or equivalent), and scripting (Python/Bash)
  • Clear written English for reports
  • Proof you understand authorization and responsible disclosure

Nice to have

  • OSCP, PNPT, eJPT, or equivalent lab proof
  • Bug bounty / VDP history with public write-ups
  • Cloud (AWS/GCP) attack surface experience

Secure application

Applying for Penetration Tester. Only use this for roles you are qualified for — ethical craft only.