NetSPI is the proactive security solution used to discover, prioritize, and remediate security vulnerabilities of the highest importance.
We help secure the most trusted brands on Earth with our Penetration Testing as a Service (PTaaS), Attack Surface Management (ASM), and Breach and Attack Simulation (BAS) solutions.
Leveraging a unique combination of dedicated security experts, intelligent process, and advanced technology, NetSPI brings a proactive approach to cybersecurity with more clarity, speed, and scale than ever before.
NetSPI is on an exciting growth journey as we disrupt and improve the proactive security market.
We are looking for individuals with a collaborative, innovative, and customer-first mindset to join our team.
Learn more about our award-winning workplace culture and get to know our A-Team at www netspi com/careers.
We are seeking an experienced professional with demonstrated technical depth and breadth in Mobile and Web Application Penetration Testing as well as the soft skills to effectively communicate with executive and technical teams.
In this role, you'll have the ability to work alongside a world-class team using top-tier custom tools.
Applicants are expected to leverage strong problem-solving skills, as well as lead, collaborate, and innovate to deliver high-quality exercises and exceptional experiences for our customers.
A day in the life of a NetSPI Pentester:.
Perform web and mobile (Android and iOS) application penetration tests.
Create and deliver penetration test reports to clients.
Collaborate with clients to create remediation strategies that will help improve their security posture.
Other important tasks you'll partake in:.
Research and develop innovative techniques, tools, and methodologies for penetration testing services.
Help define and document internal, technical, and service processes and procedures.
Contribute to the community through the development of tools, presentations, white papers, and blogs.
The experience you'll need to be successful:.
Bachelors degree or higher, preferred with a concentration in Computer Science, Engineering, Math, or IT, or equivalent experience.
Minimum of 3 years of relevant experience with hands-on application security and/or penetration testing (Android and iOS).
Experience with Frida or other dynamic instrumentation toolkits.
Reverse engineering experience with disassemblers.
Examples include Ghidra, Binary Ninja, or Hopper.
Mobile device rooting and jailbreaking concepts.
Familiarity with offensive and defensive IT concepts.
Knowledge of Linux and/or Windows administration.
If you have any of the below, that would be a plus:.
Programming experience in one or more of the following languages: Java, Python, Swift, Objective-C, JavaScript.
ARM assembly and instruction set.
Strong communication and writing skills.
GXPN, GMOB, GPEN, OSCP, CISSP, GWAPT or similar certifications.