Posted on: 11/02/2026
Job Summary :
- Assess firewalls, routers, switches, VPNs, load balancers, servers, etc., for misconfigurations and vulnerabilities.
- Conduct port scanning, banner grabbing, service enumeration, and protocol-level analysis.
- Exploit discovered vulnerabilities using manual methods and custom scripts (e.g., Python, Bash).
- Identify and exploit common misconfigurations (e.g., SMB shares, weak SNMP strings, default credentials).
- Analyze and exploit network services (DNS, SMTP, FTP, SSH, RDP, etc.).
- Test for segmentation flaws and lateral movement opportunities within internal networks.
- Assess cloud infrastructure (AWS/Azure/GCP) from a network and IAM perspective (bonus).
- Generate detailed, clear, and actionable technical and executive-level reports.
- Collaborate with system/network administrators and DevOps teams to explain findings and remediation steps.
- Stay updated with emerging threats, exploits, and TTPs (Tactics, Techniques, and Procedures).
Technical Skills & Tools Expected :
Manual Pentesting & Recon :
- Hands-on with nmap, netcat, telnet, dig, tcpdump, etc.
- Strong understanding of TCP/IP, DNS, DHCP, NAT, VPNs, firewalls, and network topologies.
- Deep understanding of network protocols and their weaknesses (e.g., ARP spoofing, DHCP poisoning).
- Manual enumeration of services (e.g., SMB, LDAP, RDP, HTTP headers).
Exploitation & Tools :
- Familiar with CrackMapExec, Responder, Impacket, Kerberos attacks.
- Use of Hydra, John the Ripper, or Hashcat for credential testing.
- Privilege escalation techniques in Linux/Windows environments.
Vulnerability Analysis :
- Manual verification of CVEs, misconfigurations, and weak services.
- Understanding of OWASP Top 10 for Infrastructure, CIS Benchmarks, and MITRE ATT&CK.
Reporting & Documentation :
- Ability to create clear, concise remediation guidance.
Preferred Certifications (not mandatory but an advantage) :
Soft Skills :
- Strong analytical thinking and problem-solving skills.
- Excellent verbal and written communication.
- Ability to work independently and in team settings.
- Curious mindset with a passion for offensive security.
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
Networking & Wireless
Job Code
1611766