Kaliba logo

Penetration Tester

Kaliba Melbourne, Victoria, Australia

remotefull-time
Posted Feb 2, 2026Apply by Mar 4, 2026

Role & seniority

  • Penetration Testing Team Lead (hands-on + people/engagement leadership)

Stack/tools

  • Penetration testing across web, infrastructure, and cloud

  • Offensive security methods; certifications such as OSCP, OSWE, CREST are valued

  • Client engagement and pre-sales support

Top 3 responsibilities

  • Lead and support a Pen Testing team; ensure smooth day-to-day operations and delivery excellence

  • Stay hands-on with engagements while mentoring consultants and handling escalations (technical and client-related)

  • Engage with customers to extract requirements, scope projects, support pre-sales, and present findings to diverse stakeholders

Must-have skills

  • Strong background in penetration testing/offensive security

  • Excellent verbal communication; comfortable with client interaction

  • Ability to bridge technical and business stakeholders; mentoring or team support experience

Nice-to-haves

  • Formal leadership experience not required but helpful

  • Relevant security certifications (OSCP, OSWE, CREST)

Location & work type

  • Remote (Eastern Seaboard) with HQ in Melbourne; attendance not required

  • Fully remote role with optional Melbourne office access

  • Base salary $150K–$170K + super + perks

Notes

  • Role balances technical delivery (50%) and leadership/operations/client engagement (50%)

  • Opportunity to grow into leadership while remaining hands-on

Full Description

Penetration Testing Team Lead

Location: Remote on Eastern Seaboard (HQ in Melbourne – attendance not required)

Package: $150K – $170K base + super + perks

About the Company A fast-growing Australian-headquartered cybersecurity consultancy, known for delivering advanced Pen Testing and security services. With strong staff retention, a loyal customer base, and a reputation for technical excellence, the business is scaling its operations and looking for the right leader to take the Pen Testing function to the next level.

The Role We’re seeking a Penetration Testing Team Lead to oversee the day-to-day operations of a high-performing Pen Testing team while staying hands-on with technical delivery. This role is split evenly between technical work (50%) and leadership, operations, and client engagement (50%). You’ll act as the bridge between the delivery team and clients, supporting your consultants while also driving pre-sales conversations, scoping, and requirement gathering. It’s a role for someone who thrives at the intersection of technical depth and client-facing leadership.

Key Responsibilities Lead and support the Pen Testing team, ensuring smooth day-to-day operations. Mentor and coach consultants to maintain delivery excellence. Act as the escalation point for both technical and client-related issues. Stay hands-on with penetration testing engagements across web, infrastructure, and cloud.

Engage directly with customers: extracting requirements, scoping, and supporting pre-sales. Present findings clearly to both technical and non-technical stakeholders.

About You A strong background in penetration testing or offensive security. Excellent verbal communication skills — confident engaging with customers. Ability to bridge the gap between technical and business stakeholders. Experience mentoring or supporting a team (formal leadership not essential if you’re ready to step up). Certifications such as OSCP, OSWE, or CREST are highly regarded.

Why Apply?

Competitive salary package: $150K – $170K + super + perks. Fully remote role with optional access to a Melbourne office. A growing, well-run business with strong staff retention. Opportunity to step into leadership while staying hands-on.

If you’re a Pen Tester looking to step into leadership, or a Security Architect with an offensive security background wanting more responsibility, this role could be your next big career move.

multi-locationreview:company

Cookies & analytics consent

We serve candidates globally, so we only activate Google Tag Manager and other analytics after you opt in. This keeps us aligned with GDPR/UK DPA, ePrivacy, LGPD, and similar rules. Essential features still run without analytics cookies.

Read how we use data in our Privacy Policy and Terms of Service.