Cookies & analytics consent
We serve candidates globally, so we only activate Google Tag Manager and other analytics after you opt in. This keeps us aligned with GDPR/UK DPA, ePrivacy, LGPD, and similar rules. Essential features still run without analytics cookies.
Read how we use data in our Privacy Policy and Terms of Service.
🤖 15+ AI Agents working for you. Find jobs, score and update resumes, cover letter, interview questions, missing keywords, and lots more.

Reqroute, Inc • United States
Role & seniority
Stack/tools
Web/API/Network security testing, AD security, cloud security (AWS, Azure, GCP)
Tools: Burp Suite Pro, Metasploit, BloodHound
Scripting: Python (automation/exploit development)
Top 3 responsibilities
Lead and execute penetration testing engagements (external/internal networks, web apps, APIs, AD, cloud)
Develop realistic attack paths; perform authorized exploitation, post-exploitation, and lateral movement where permitted
Deliver end-to-end reporting: executive summaries, risk prioritization, remediation guidance; ensure QA and client satisfaction; mentor junior testers
Must-have skills
5 years professional pentesting experience with client-facing engagements
Deep hands-on skills in: web/API exploitation, network and AD security, authn/authorization weaknesses, cloud misconfig/perimeter risks
Proficiency with Burp Suite Pro, Metasploit, BloodHound; scripting for automation (Python preferred)
Experience in enterprise or regulated environments; ability to translate findings into business risk
Nice-to-haves
CREST CRT/CCT, OSCP, Burp Suite Certified Practitioner
Cloud security certifications (AWS/Azure)
Experience contributing to methodologies, tooling improvements, playbooks, and estimation inputs
Location & work type
Remote
Contract: 12+ months
Job Title: Cloud Security & Penetration Tester
Location: Remote
Contract: 12+ Months
Job Description
This role is accountable for end-to-end test delivery quality.
Core Responsibilities Independent Test Delivery
Experience 5 years of professional penetration testing experience. Proven track record delivering client-facing engagements. Experience in enterprise or regulated environments preferred.
Certifications (Strongly Preferred) CREST CRT or CCT OSCP Burp Suite Certified Practitioner Cloud security certifications (AWS / Azure) Show more Show less