Penetration Tester
Summary
Boutique cybersecurity consultancy hiring a Penetration Tester to deliver external/internal network, web application, API, mobile, and wireless penetration tests and vulnerability assessments, producing detailed client reports under the Technical Assurance team in Melbourne.
About the role
A Security Consultant in the Technical Assurance team is responsible for carrying out common penetration testing services, vulnerability assessments, and any other security services with direction from a more senior team member. Security consultants will be reporting to the Director of Technical Assurance.
Key responsibilities
Perform penetration tests such as External & Internal Network, Web Application & API, Mobile Application, and Wireless using ethical hacking techniques to simulate real-world cyberattacks and discover exploitable vulnerabilities.
Attempt to exploit identified vulnerabilities to demonstrate the potential impact of a successful attack and provide relevant recommendations for remediation.
Conduct thorough vulnerability assessments on systems, networks, and applications to identify potential security weaknesses.
Document the testing process, methodologies, and findings in a clear and concise manner and generate detailed reports outlining vulnerabilities, risk levels, and recommended remediation actions.
Communicate effectively with clients to understand their business goals, discuss testing methodologies, and present findings and provide guidance on risk mitigation strategies.
Stay informed about the latest security threats, attack techniques, and countermeasures and contribute to research and development efforts to enhance testing methodologies.
Engage in supported continuous learning and professional development to stay current with emerging technologies, tools, and best practices in ethical hacking and penetration testing.
Achieve utilisation goals and ensure the delivery stays within the allocated budget.
About you
Experience across a wide variety of assessments across various industries and organisations.
Multiple years of experience in cyber security.
Industry certifications are well regarded, including Offensive Security Certifications, CREST, INE eWPTXv2, HTB Academy, or GIAC / SANS.
Industry relevant tertiary education would be advantageous but not required.
Transferrable skills from previous experience such as programming or network security would be a bonus.
About us
We are a boutique Cyber Security business with a mission to make the cybersecurity journey understandable and accessible to all. Backed by key customers and experiencing organic growth, we're expanding our team.
Benefits
Be part of a growing consultancy having an organic growth.
Engage in high-impact client work across multiple industries and security-focused projects.
Thrive in a team that values innovation, technical excellence, and continuous learning.
Enjoy a flexible, supportive work environment that puts people first.
Apply Now
We are proud to be an equal opportunity employer and welcome applications from all qualified individuals, regardless of background, age, neurodiversity, or any other aspect of identity. We value the unique perspectives that diversity brings to our team and to the cybersecurity challenges we solve. If you're passionate about penetration testing, offensive security, and helping organisations strengthen their security posture and have real world experience delivering security assessments and technical assurance services; we would love to hear from you.