Penetration Testing jobs
- ICE ConsultingLahore
- Strong knowledge of network penetration testing methodologies.
- Perform web application penetration testing, including authentication testing, input validation,…
- View all ICE Consulting jobs - Lahore jobs
- Salary Search: Penetration Tester salaries in Lahore
- Magnatec Systems Private LimitedLahore Johar Town
- 3+ years hands-on penetration testing — web and mobile focus.
- Android and iOS hands-on testing experience.
- Prioritised remediation roadmap and re-testing after…
- View all Magnatec Systems Private Limited jobs - Lahore Johar Town jobs
- Salary Search: Penetration Tester salaries
- See popular questions & answers about Magnatec Systems Private Limited
- Tata Consultancy ServicesHyderabad
- Experience & Knowledge Vulnerability Management,Qualys guard , ServiceNow · Executed and experienced in Manual Penetration Testing · Performed Threat modelling…
- Tata Consultancy ServicesHyderabad
- Experience & Knowledge Vulnerability Management,Qualys guard , ServiceNow · Executed and experienced in Manual Penetration Testing · Performed Threat modelling…
- NKU Technologies Pvt.Ltd.Lahore
- Support Web Application and API penetration testing activities.
- This role offers hands-on exposure to penetration testing, vulnerability validation, evidence…
Penetration Testing Senior Associate
Often replies in 1 dayPwCKarachi- Those in penetration testing at PwC will focus on penetration testing (or pen testing) which is a security exercise where a cybersecurity consultant attempts to…
- View all PwC jobs - Karachi jobs - Senior Associate Engineer jobs in Karachi
- Salary Search: Penetration Testing Senior Associate salaries in Karachi
- See popular questions & answers about PwC
- Lab Diagnostic SystemsLahore
- Conduct regular field visits to strengthen customer relationships, enhance market penetration, and improve product visibility and availability.
- Pny Group of CompaniesLahore
- Teach students network security, ethical hacking, penetration testing, and cyber threats.
- Strong knowledge of ethical hacking, penetration testing, firewalls,…
- HayDevsLahore
- Experience with vulnerability assessment and penetration testing tools.
- Conduct security research on emerging cyber threats, attack techniques, and…
- View all HayDevs jobs - Lahore jobs - CyberSecurity Specialist jobs in Lahore
- Salary Search: Cyber Security Researcher salaries in Lahore
- NKU Technologies Pvt.Ltd.Lahore
- Perform penetration testing on web applications, APIs, and network environments.
- 3–4 years of hands-on experience in offensive security e.g. penetration…
- NKU Technologies Pvt.Ltd.Lahore
- Experience preparing client-facing penetration testing reports.
- Perform Web Application and API penetration testing under the guidance of senior security…
- View all NKU Technologies Pvt.Ltd. jobs - Lahore jobs - Security Consultant jobs in Lahore
- Salary Search: Offensive Security Consultant salaries
- See popular questions & answers about NKU Technologies Pvt.Ltd.
- MTBCRawalpindi
- Minimum 2+ years of hands-on experience in penetration testing or red teaming.
- Conduct advanced penetration testing on networks, applications, APIs, and cloud…
- View all MTBC jobs - Rawalpindi jobs - Red Team Operator jobs in Rawalpindi
- Salary Search: RED Team Analyst salaries
- See popular questions & answers about MTBC
- Bahria Enterprise Systems & TechnologiesKarachi
- Expertise in vulnerability assessment and penetration testing.
- Proficiency in security testing tools and methodologies.
- CureMD HealthcareLahore
- Assist in conducting penetration tests to assess the security posture of applications and systems.
- Conduct manual security testing for web applications, APIs,…
- View all CureMD Healthcare jobs - Lahore jobs - Application Security Engineer jobs in Lahore
- Salary Search: Application Security Intern salaries in Lahore
- See popular questions & answers about CureMD Healthcare
- MTBCBagh
- Conduct vulnerability assessments and assist in penetration testing exercises.
- Exposure to penetration testing, vulnerability management, and ethical hacking…
- View all MTBC jobs - Bagh jobs - Soc Analyst jobs in Bagh
- Salary Search: Senior Soc Analyst salaries
- See popular questions & answers about MTBC
- National Univsersity of Sciences and TechnologyIslamabad
- Security and penetration testing awareness.
- Establishing robust testing strategies, implementing automated testing frameworks, ensuring software reliability,…
Job Post Details
Job details
Job type
- Full-time
Location
Full job description
Job Overview
We are looking for a motivated and skilled Penetration Tester with hands-on experience in Active Directory, Network, and Web Application penetration testing. The ideal candidate should be able to identify security vulnerabilities, misconfigurations, and weaknesses across enterprise environments and provide actionable recommendations to improve the organization's security posture.
In addition to traditional penetration testing, the candidate will participate in purple-team exercises, collaborating with defensive teams to simulate real-world attack scenarios and strengthen detection and response capabilities. An interest in SOC operations, monitoring, and threat detection will be considered a strong advantage.
Key Responsibilities
- Perform Active Directory penetration testing to identify privilege escalation paths, insecure configurations, and potential lateral movement opportunities.
- Conduct internal and external network penetration tests to identify vulnerabilities and weaknesses within the enterprise infrastructure.
- Perform web application penetration testing, including authentication testing, input validation, session management, and business logic testing.
- Identify and analyze security misconfigurations across systems, services, and network infrastructure.
- Conduct security audits and configuration reviews to identify gaps against security best practices and industry standards.
- Perform risk assessments by evaluating vulnerabilities, misconfigurations, and their potential business impact.
- Document security findings, misconfigurations, and vulnerabilities with clear risk ratings and remediation guidance.
- Participate in purple team engagements by simulating attacker techniques and helping SOC teams improve detection and response capabilities.
- Support threat simulation exercises based on real-world attack techniques and frameworks such as MITRE ATT&CK.
- Work closely with SOC and defensive teams to improve alerting, monitoring, and threat detection use cases.
- Assist in validating remediation efforts by performing retesting and verification of fixes.
- Prepare technical and executive-level reports summarizing findings, risks, and recommended mitigation strategies.
Requirements
Required Skills & Experience
- Hands-on experience in Active Directory security assessments and penetration testing
- Strong knowledge of network penetration testing methodologies
- Experience in web application security testing (OWASP Top 10)
- Understanding of security configuration reviews and misconfiguration analysis
- Experience performing vulnerability validation and risk analysis
- Hands-on experience with tools such as:
- Nmap
- Burp Suite
- Metasploit
- BloodHound
- Impacket
- CrackMapExec
- Strong understanding of Windows security architecture and AD attack techniques
- Knowledge of network protocols, authentication mechanisms, and common attack vectors
- Experience with Purple Team exercises
- Exposure to SOC operations, SIEM platforms, or security monitoring
- Familiarity with MITRE ATT&CK framework
- Scripting knowledge (Python, PowerShell, Bash)
- Exposure to cloud security assessments (Azure / AWS)
Preferred Certifications (Optional)
- PNPT
- eCPPT
- GPEN / GWAPT
Soft Skills
- Strong analytical and problem-solving mindset
- Ability to clearly communicate technical risks and remediation steps
- Good documentation and reporting skills
- Ability to collaborate with both offensive and defensive security teams
- Strong curiosity and passion for continuous learning in cybersecurity