Job Description
The Opportunity:
Are you a digital warrior looking to protect the world's most critical infrastructure? Nexus Cyber Defense is seeking a world-class Senior Penetration Tester to join our elite Red Team. In this pivotal role, you will spearhead offensive security operations, identifying vulnerabilities before malicious actors can exploit them. You will work in a dynamic, high-growth environment where your technical prowess directly safeguards our clients' reputations and data assets.
Why Nexus?
We don't just fix breaches; we prevent them. Our team is driven by curiosity and a relentless pursuit of excellence. You will have the autonomy to deploy custom toolsets, challenge the status quo, and mentor junior analysts in a culture that rewards innovation and technical depth.
What You'll Do:
As our Senior Penetration Tester, you will be responsible for the full lifecycle of security assessments, ensuring our defense-in-depth strategy remains impenetrable. Your day-to-day will involve:
Responsibilities
- Conduct comprehensive vulnerability assessments and penetration tests on web applications, networks, and infrastructure.
- Identify, exploit, and document security flaws with high precision, providing actionable remediation advice.
- Present complex technical findings to executive stakeholders and engineering teams in a clear, concise manner.
- Develop custom tools and scripts to automate the testing process and enhance our testing capabilities.
- Maintain a deep understanding of the latest threat landscapes, attack vectors, and emerging security trends.
- Collaborate with the Blue Team to close detection gaps and improve incident response procedures.
Qualifications
- Minimum of 5 years of professional experience in penetration testing or ethical hacking.
- Certifications such as OSCP, CEH, OSCE, or CISSP are highly preferred.
- Strong proficiency in scripting languages (Python, Bash, PowerShell) and command-line tools.
- Excellent communication skills with the ability to translate technical jargon into business risk.
- Ability to work independently in a high-pressure, agile environment and meet tight deadlines.
- Deep knowledge of OWASP Top 10, network protocols, and operating systems (Windows/Linux).