Unknown Company

Security Consultant II (Web Application Penetration Tester)

minneapolis, mn • Posted 3 weeks ago
Onsite Full Time General

Security Consultant IINetSPI® pioneered Penetration Testing as a Service (PTaaS) and leads the industry in modern pentesting. Combining world-class security professionals with AI and automation, NetSPI delivers clarity, speed, and scale across 50+ pentest types, attack surface management, and vulnerability prioritization. The NetSPI platform streamlines workflows and accelerates remediation, enabling our experts to focus on deep dive testing that uncovers vulnerabilities others miss.

Trusted by the top 10 U.S. banks and Fortune 500 companies worldwide, NetSPI has been driving security innovation since 2001.NetSPI is on an exciting growth journey as we disrupt and improve the proactive security market. We are looking for individuals with a collaborative, innovative, and customer-first mindset to join our team.

Learn more about our award-winning workplace culture and get to know our A-Team at the mission as a Security Consultant II. We are seeking a skilled and detail-oriented Penetration Tester to conduct thorough security assessments, identify vulnerabilities, and provide expert recommendations to strengthen our clients' security posture. As a Penetration Tester supporting web applications, you will work closely with clients to deliver clear, actionable reports and contribute to the development of security best practices.Responsibilities:Conduct penetration testing engagements on web applications and underlying APIs.Create, deliver, and collaborate on penetration testing reports in diverse client environments, maintaining client-specific processes, reporting standards, and access protocols to help improve their security posture.Research and develop innovative techniques, tools, and methodologies for penetration testing services, alongside commitment to improvement and execution on NetSPI specific products and processesPerform administrative tasks related to day-to-day consulting activities to ensure smooth business and engagement operations.Minimum Qualifications:Bachelor's degree or higher required, with a concentration in Computer Science, Engineering, Math, or IT preferred, or equivalent experienceMinimum of 2-3 years of work experience in application penetration testingFamiliarity with offensive tools, based on applicable skillset (e.g., Kali Linux, Burp Suite, Metasploit, Nessus)Familiarity with offensive and defensive IT concepts and protocolsExtensive understanding of the OWASP Top 10 and various security frameworks.Working knowledge of Windows, Linux and MacOS operating systems internalsAbility to work independently and as part of a teamProficient communication skills, both written and verbalWillingness to travel up to 5-10%This position requires an 8-hour workday, with occasional evenings or weekends necessary to meet project deadlines or critical needsPreferred Qualifications:Experience mentoring or coaching to growing team members, while sharing knowledge externally through blogs, hosting webinars, or presenting at conferencesExperience in one or more of the following programming or scripting languages (e.g., Ruby, Python, Perl, C, C++, Java, and C#)Offensive cybersecurity certifications (e.g., GXPN, GPEN, OSCP, CISSP, GWAPT)We are an equal employment opportunity employer.

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability status, protected veteran status or any other characteristic protected by law.Equal Opportunity Employer This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.

Security Consultant II (Web Application Penetration Tester) in minneapolis at Unknown Company

This position is listed as full time and onsite.

Back to Job Search