29 Penetration Tester jobs in Kenya
Lead Penetration Tester
Posted 20 days ago
Job Viewed
Job Description
Key Responsibilities:
- Lead and execute comprehensive penetration testing engagements across networks, web applications, mobile applications, and cloud environments.
- Develop and refine penetration testing methodologies, tools, and techniques.
- Manage and mentor a team of penetration testers, providing technical guidance and oversight.
- Identify, analyze, and report on security vulnerabilities and their potential impact.
- Develop detailed and actionable remediation recommendations for discovered vulnerabilities.
- Conduct post-engagement debriefings with clients, clearly communicating findings and mitigation strategies.
- Stay current with the latest security threats, attack vectors, and penetration testing tools.
- Contribute to the development of security policies and best practices.
- Automate repetitive testing tasks where possible.
- Ensure adherence to industry standards and ethical hacking principles.
Qualifications:
- Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience.
- Minimum of 7 years of experience in penetration testing and vulnerability assessment.
- Proven experience leading offensive security engagements and teams.
- In-depth knowledge of network protocols, operating systems, and common attack vectors.
- Proficiency with a wide range of penetration testing tools (e.g., Metasploit, Burp Suite, Nmap, Wireshark).
- Experience with scripting languages (e.g., Python, Bash) for exploit development and automation.
- Strong understanding of web application security, mobile security, and cloud security (AWS, Azure, GCP).
- Excellent written and verbal communication skills, with the ability to produce clear and concise reports.
- Relevant security certifications such as OSCP, CISSP, CEH, or GPEN are highly preferred.
- Ability to work independently and collaboratively in a fully remote setting.
Senior Penetration Tester
Posted 20 days ago
Job Viewed
Job Description
Responsibilities:
- Plan, scope, and execute penetration tests against web applications, mobile applications, APIs, and network infrastructure.
- Utilize a variety of tools and techniques to identify and exploit security vulnerabilities.
- Perform social engineering engagements to assess human vulnerabilities.
- Analyze scan results, identify false positives, and conduct in-depth manual testing.
- Document findings clearly and concisely, including detailed steps to reproduce vulnerabilities.
- Develop comprehensive penetration test reports that provide actionable recommendations for remediation to clients.
- Present findings and recommendations to clients, technical teams, and management.
- Stay current with the latest attack vectors, threats, and penetration testing methodologies.
- Contribute to the development and refinement of internal testing methodologies and tools.
- Mentor junior penetration testers and share knowledge within the team.
- Maintain a high level of professionalism and ethical conduct at all times.
- Bachelor's degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience.
- Minimum of 5 years of hands-on experience in penetration testing and vulnerability assessment.
- Demonstrated expertise in identifying vulnerabilities in web applications, APIs, cloud environments, and networks.
- Proficiency with penetration testing tools such as Burp Suite, Metasploit, Nmap, Nessus, etc.
- Strong understanding of common vulnerabilities (e.g., OWASP Top 10) and attack vectors.
- Experience with scripting languages (e.g., Python, Bash) for automation is highly desirable.
- Excellent analytical, problem-solving, and reporting skills.
- Strong communication and interpersonal skills, with the ability to effectively explain technical concepts to non-technical audiences.
- Ability to work independently and manage time effectively in a remote setting.
- Relevant certifications such as OSCP, CEH, GPEN, or GWAPT are a significant advantage.
Principal Penetration Tester
Posted 20 days ago
Job Viewed
Job Description
As a Principal Penetration Tester, your expertise will be crucial in planning, executing, and reporting on comprehensive penetration testing engagements. This includes both external and internal network testing, web application security testing, and social engineering assessments. You will be responsible for simulating real-world attacks to identify exploitable vulnerabilities and providing detailed, actionable recommendations for remediation. This role requires a deep understanding of attack vectors, exploit techniques, and defensive strategies.
Key responsibilities include:
- Leading and conducting in-depth penetration tests across various environments (network, web application, mobile).
- Developing and maintaining cutting-edge penetration testing methodologies and tools.
- Simulating advanced persistent threats (APTs) and other sophisticated attack scenarios.
- Identifying and analyzing vulnerabilities, including their potential impact and exploitability.
- Producing detailed and clear penetration test reports with prioritized remediation recommendations.
- Collaborating with development and operations teams to guide secure coding practices and infrastructure hardening.
- Mentoring and guiding junior penetration testers.
- Staying current with the latest security threats, vulnerabilities, and penetration testing techniques.
- Presenting findings and recommendations to technical teams and senior management.
The ideal candidate will possess a Bachelor's degree in Computer Science, Cybersecurity, or a related field, or equivalent practical experience. A minimum of 7 years of dedicated experience in penetration testing and offensive security is required. Relevant certifications such as OSCP, OSCE, GPEN, or CEH are highly desirable. You must have demonstrable expertise in various testing tools (e.g., Metasploit, Burp Suite, Nmap) and a strong understanding of operating systems, networking protocols, and web application architectures. Excellent report writing and communication skills are essential for effectively conveying complex technical findings. This is a premier fully remote opportunity for an expert to significantly contribute to our client's security efforts, based near **Kitale, Trans-Nzoia, KE**.
Remote Penetration Tester
Posted 10 days ago
Job Viewed
Job Description
Responsibilities:
- Conduct comprehensive penetration tests on web applications, networks, APIs, and mobile applications.
- Perform vulnerability assessments and security audits to identify exploitable weaknesses.
- Develop detailed reports outlining findings, risk assessments, and actionable remediation recommendations.
- Execute social engineering campaigns and other attack vectors to test human elements of security.
- Research and stay current with the latest hacking techniques, exploits, and security threats.
- Collaborate with development and IT teams to provide guidance on secure coding practices and system configurations.
- Develop and maintain custom tools and scripts for penetration testing and vulnerability analysis.
- Document test methodologies, findings, and recommendations clearly and concisely.
- Assist in the development and implementation of security policies and procedures.
- Participate in incident response activities when required.
- Stay abreast of emerging security technologies and industry best practices.
- Ensure all testing is conducted ethically and within agreed-upon scopes.
- Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related field, or equivalent practical experience.
- Proven experience as a Penetration Tester, Ethical Hacker, or Security Consultant.
- In-depth knowledge of common vulnerabilities (e.g., OWASP Top 10) and attack methodologies.
- Proficiency with penetration testing tools such as Metasploit, Burp Suite, Nmap, and Kali Linux.
- Experience with scripting languages like Python, Bash, or PowerShell for automation.
- Strong understanding of network protocols, operating systems, and web technologies.
- Excellent analytical and problem-solving skills.
- Strong written and verbal communication skills, with the ability to present technical findings to both technical and non-technical audiences.
- Ability to work independently, manage time effectively, and meet project deadlines in a remote environment.
- Relevant certifications such as OSCP, CEH, CISSP, or GPEN are highly valued.
- Experience with cloud security testing (AWS, Azure, GCP) is a significant plus.
Lead Penetration Tester - Remote
Posted 1 day ago
Job Viewed
Job Description
Remote Lead Penetration Tester
Posted 18 days ago
Job Viewed
Job Description
Responsibilities:
- Lead and conduct comprehensive penetration tests on network infrastructure, web applications, APIs, and mobile applications.
- Identify and exploit security vulnerabilities using a variety of manual and automated tools and techniques.
- Develop detailed reports documenting identified vulnerabilities, potential impact, and clear remediation recommendations.
- Collaborate with client security teams to explain findings and guide the remediation process.
- Research and stay current with the latest penetration testing methodologies, tools, and emerging threats.
- Develop custom scripts and tools to automate testing processes where appropriate.
- Mentor and guide junior penetration testers, fostering their technical growth.
- Contribute to the development and refinement of the company's security assessment methodologies.
- Effectively communicate technical findings and risk assessments to both technical and non-technical stakeholders.
- Maintain strict confidentiality and ethical standards throughout all engagements.
Qualifications:
- Bachelor's degree in Cybersecurity, Computer Science, or a related field, or equivalent practical experience.
- Relevant certifications such as OSCP, GPEN, GWAPT, CEH, or CISSP are highly desirable.
- Minimum of 8 years of experience in penetration testing and vulnerability assessment.
- In-depth knowledge of common vulnerabilities (e.g., SQL injection, XSS, buffer overflows) and their exploitation.
- Proficiency with a wide range of penetration testing tools (e.g., Metasploit, Burp Suite, Nmap, Nessus).
- Strong understanding of networking protocols, operating systems, and web application security.
- Excellent analytical, problem-solving, and report-writing skills.
- Outstanding written and verbal communication skills, with the ability to present technical information effectively.
- Proven ability to work independently and manage complex testing projects in a remote setting.
- A proactive and inquisitive mindset towards uncovering security weaknesses.
Senior Penetration Tester (Red Team)
Posted 6 days ago
Job Viewed
Job Description
Be The First To Know
About the latest Penetration tester Jobs in Kenya !
Senior Penetration Tester (Ethical Hacker)
Posted 18 days ago
Job Viewed
Job Description
Remote Senior Penetration Tester
Posted 19 days ago
Job Viewed
Job Description
Senior Penetration Tester - Remote
Posted 20 days ago
Job Viewed
Job Description
Key Responsibilities:
- Plan, scope, and execute manual and automated penetration tests across various systems, networks, and applications.
- Identify, analyze, and document security vulnerabilities and their potential impact.
- Develop detailed and actionable reports with clear recommendations for remediation.
- Perform security assessments, including network, web application, mobile application, and infrastructure penetration testing.
- Utilize a variety of penetration testing tools and methodologies (e.g., Metasploit, Burp Suite, Nmap).
- Stay current with the latest attack vectors, threats, and vulnerabilities.
- Collaborate with security and IT teams to communicate findings and guide remediation efforts.
- Develop custom scripts or tools to automate testing processes where applicable.
- Participate in security architecture reviews and provide input on secure design principles.
- Contribute to the development and improvement of penetration testing methodologies and standards.
- Mentor junior penetration testers and share knowledge within the security team.
- Maintain confidentiality of all findings and client information.
- Stay abreast of industry best practices and emerging security technologies.