Logo for Navitas Partners, LLC

Junior Penetration Tester

Roles & Responsibilities

  • 2-3 years in penetration testing or security testing
  • Hands-on exposure via labs, CTFs, bug bounties, or academic projects
  • Proficiency with Burp Suite, Nmap, and vulnerability scanners (e.g., Nessus, Qualys) and basic scripting (Python, Bash, or PowerShell)
  • Strong understanding of TCP/IP, DNS, HTTP/S, Linux and Windows fundamentals; familiarity with OWASP Top 10

Requirements:

  • Execute scoped penetration testing tasks under supervision across external/internal networks, web applications/APIs, and entry-level cloud security testing
  • Perform reconnaissance, enumeration, vulnerability validation, and limited exploitation; validate automated scanner outputs and eliminate false positives
  • Capture defensible evidence (reproduction steps, screenshots, command outputs) and draft technical vulnerability content (root cause, impact, remediation) for reports; maintain detailed working notes
  • Adhere to ethical testing principles and client confidentiality; follow defined playbooks, escalation paths, and quality standards; contribute to post-engagement reviews and develop toward independent test ownership

Job description


Job Title: Junior Penetration Tester
Location: Remote
Duration: 6-12 months


Job Summary:
Role Purpose
  • The Junior Penetration Tester is an execution-focused role responsible for performing authorized security testing activities under defined methodologies and senior supervision. The role emphasizes technical fundamentals, repeatable testing discipline, and high-quality evidence capture in support of client penetration testing engagements.
  • This role is designed to build strong delivery hygiene and prepare the individual for independent test ownership at the next grade.
  • Responsibilities
  • Delivery Execution
  • Execute scoped penetration testing tasks under supervision across:
  • External and internal network assessments
  • Web application and API testing
  • Entry-level cloud security testing (AWS, Azure, GCP)
  • Perform reconnaissance, enumeration, vulnerability validation, and limited exploitation in strict accordance with approved Rules of Engagement.
  • Validate automated scanner output and eliminate false positives through manual testing.

Evidence & Reporting Support
  • Capture defensible evidence including:
  • Reproduction steps
  • Screenshots and command output
  • Clear attack narratives
  • Draft technical vulnerability content for reports, including:
  • Root cause analysis
  • Impact explanation
  • Remediation guidance aligned to best practice
  • Maintain detailed working notes suitable for audit, peer review, and retesting.
  • Operational Discipline
  • Adhere strictly to ethical testing principles, authorization boundaries, and client confidentiality.
  • Follow defined testing playbooks, escalation paths, and quality standards.
  • Participate in post-engagement lessons learned and internal quality reviews.
  • Learning & Development
  • Actively develop technical capability through labs, internal training, and supervised client work.
  • Progress toward independently executing complete test components.

Required Skills & Experience
  • Technical Foundation
  • Strong understanding of:
  • TCP/IP, DNS, HTTP/S
  • Linux and Windows fundamentals
  • Common vulnerability classes (OWASP Top 10)
  • Hands-on familiarity with:
  • Burp Suite
  • Nmap
  • Vulnerability scanners (e.g., Nessus, Qualys)
  • Basic scripting capability (Python, Bash, or PowerShell).

Experience
  • 2–3 years in penetration testing, security testing, or a closely related security role.
  • Demonstrable hands-on exposure via labs, CTFs, bug bounties, or academic projects.

Certifications (Preferred)
  • CompTIA Security+
  • Burp Suite Certified Practitioner (Associate)
  • Progressing toward CREST CRT

Penetration Tester Related jobs

Other jobs at Navitas Partners, LLC

We help you get seen. Not ignored.

We help you get seen faster — by the right people.

🚀

Auto-Apply

We apply for you — automatically and instantly.

Save time, skip forms, and stay on top of every opportunity. Because you can't get seen if you're not in the race.

AI Match Feedback

Know your real match before you apply.

Get a detailed AI assessment of your profile against each job posting. Because getting seen starts with passing the filters.

Upgrade to Premium. Apply smarter and get noticed.

Upgrade to Premium

Join thousands of professionals who got noticed and hired faster.