Intermediate Penetration Tester (YD/InPT/12/13/25)

Overview

Reference
YD/InPT/12/13/25

Salary
ZAR0 - ZAR0/hour

Job Location
- South Africa -- Johannesburg Metro -- Johannesburg

Job Type
Contract

Posted
13 August 2025

Closing date
14 Aug 2025 21:59


Job Title: Intermediate Penetration Tester

Overview

We are looking for a skilled Intermediate Penetration Tester with a strong background in Offensive Security, Penetration Testing, or Red Teaming. The successful candidate will have at least 5 years of demonstrable experience, hold relevant offensive security certifications, and possess the technical expertise to identify, exploit, and report vulnerabilities across diverse systems and applications.


Key Responsibilities

  • Perform penetration tests, vulnerability assessments, and red team exercises across network, application, and infrastructure environments.

  • Use industry-standard tools and methodologies to simulate real-world attack scenarios.

  • Document findings in detailed technical reports with clear remediation recommendations.

  • Collaborate with internal security teams and stakeholders to address vulnerabilities.

  • Maintain up-to-date knowledge of emerging security threats, tools, and testing methodologies.

  • Support and contribute to continuous improvement of penetration testing processes and toolsets.


Minimum Requirements

  • Experience: Minimum of 5 years’ demonstrable experience in Offensive Security, Penetration Testing, or Red Teaming (experience must be specified in months and years on CV).

  • Certifications:

    • One or more offensive security certifications such as OSCP, GIAC Penetration Tester (GPEN), Certified Ethical Hacker (CEH), Certified Red Team Professional (CRTP), or equivalent.

  • Technical Skills:

    • Proficiency in penetration testing tools and frameworks (e.g., Metasploit, Burp Suite, Nmap, Kali Linux).

    • Strong knowledge of network protocols, web application security, and operating system exploitation.


Preferred/Advantageous

  • Additional cybersecurity certifications such as CISSP, CISM, CRISC, or equivalent.

  • Experience with cloud security testing (AWS, Azure, GCP).

  • Familiarity with scripting or programming languages (Python, PowerShell, Bash).

  • Understanding of threat modeling and social engineering techniques.


Soft Skills

  • Strong analytical and problem-solving capabilities.

  • Effective communication skills for both technical and non-technical audiences.

  • Ability to work independently and manage testing tasks efficiently.

  • Detail-oriented with a structured approach to documentation and reporting.


Contact information

Yandiswa D