Bugcrowd Logo

Bugcrowd

Junior Penetration Tester

Reposted 7 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United Kingdom
Junior
Remote
Hiring Remotely in United Kingdom
Junior
As a Junior Penetration Tester, you will conduct security vulnerability assessments, learn about offensive security, and support senior team members while developing core skills.
The summary above was generated by AI

We are Bugcrowd. Since 2012, we’ve been empowering organizations to take back control and stay ahead of threat actors by uniting the collective ingenuity and expertise of our customers and trusted alliance of elite hackers, with our patented data and AI-powered Security Knowledge Platform™. Our network of hackers brings diverse expertise to uncover hidden weaknesses, adapting swiftly to evolving threats, even against zero-day exploits. With unmatched scalability and adaptability, our data and AI-driven CrowdMatch™ technology in our platform finds the perfect talent for your unique fight. We aim to create a new era of modern crowdsourced security that outpaces threat actors. Unleash the ingenuity of the hacker community with Bugcrowd, visit www.bugcrowd.com. Based in San Francisco and New Hampshire, Bugcrowd is supported by General Catalyst, Rally Ventures, Costanoa Ventures, and others.

We are seeking a motivated and driven Junior Penetration Tester to join our team of existing security specialists. This role is a foundational position, focused on developing core skills in offensive security testing under the guidance of more senior team members. 

As a Junior Penetration Tester, you will be responsible for working through existing methodologies and applying them against assigned targets to identify security vulnerabilities. This will support the team's overall mission of helping improve our client’s infrastructure and codebase by raising high quality (and often high impact) security concerns as evidenced by your capability to exploit.

This is an excellent opportunity for an individual with a strong passion for cybersecurity to learn and grow within an elite offensive security team.

Primary Role Responsibilities:

  • Conduct Structured Testing to Identify Security Vulnerabilities:
    • Demonstrating a functional understanding of modern attack vectors and penetration testing software as well as being technically capable of using them in the identification of security vulnerabilities in Web applications, APIs and network infrastructure.
    • Consistently complete assigned penetration tests within allocated timeframes, and in accordance with our methodologies.
  • Continuous Learning:
    • Actively engage in keeping up-to-date with fundamental security concepts and core testing tools, applying newly acquired knowledge under instruction and supervision.
  • Problem Identification & Escalation:
    • Promptly identify and effectively communicate technical blockers or concerns to mentors or Technical Pentest Managers (TPMs) as needed, actively seeking clarification and guidance to avoid missteps.
  • Team Support & Documentation:
    • Assist in test retrospectives, documentation of processes, and provide support to more senior team members as directed by the team lead or manager.
  • Working Hours:
    • Be able to execute testing within UK core business hours (09:00 - 17:30 GMT). Some tests may fall outside of these hours, but the majority of tests will need to be completed within this timeframe.

Desired Skills & Experience:

  • Experience: 6+ months as a penetration tester (or equivalent demonstrable experience) with a foundational understanding of wider cybersecurity concepts and best practices.
  • Technical Skills: Familiarity with commonly used security testing tools (e.g. BurpSuite, Nmap) and approach to penetration testing activities.
  • Soft Skills: 
    • Strong desire to learn, good communication skills for peer and mentor interactions, and the ability to follow instructions.
    • Strong written and spoken business English (C1+ or native fluency). 
  • Certifications: Certifications such as CEH (Certified Ethical Hacker), OSCP(+) (Offensive Security Certified Professional), CPSA (CREST Practitioner Security Analyst), etc. are considered a plus.

Working Conditions and Physical Requirements

  • The ideal candidate must be able to complete all physical requirements of the job with or without reasonable accommodation.
  • Sitting and / or standing - Must be able to remain in a stationary position 50% of the time
  • Carrying and / or lifting - Must be able to carry / move laptop as needed throughout the work day.
  • Environment - remote, work-from-home 100% of the time.

Culture

  • At Bugcrowd, we understand that diversity in the workplace is vital to a company’s success and growth. We strive to make sure that people are included and have a sense of being part of making Bugcrowd not only a great product but a great place to work.
  • We regularly hear from both customers and researchers that Bugcrowd feels like a family, and we strive to maintain that internally as well.
  • Our team consists of a broad range of people: musicians, adventure sports junkies, nature lovers, parents, cereal enthusiasts, night owls, cyclists, artists—you get the point.

At Bugcrowd, we are solving security threats and vulnerabilities that are relevant to everyone, therefore we believe solving these problems takes all kinds of backgrounds. We value the perspectives and experiences people from underrepresented backgrounds bring.


Disclaimer

This position has access to highly confidential, sensitive information relating to the technologies of Bugcrowd. It is essential that the applicant possess the requisite integrity to maintain the information in the strictest confidence.

The company is authorized to obtain background checks for employment purposes under state and federal law. Background checks will be conducted for positions that involve access to confidential or proprietary information (including trade secrets).

Background checks may include Social Security verification, prior employment verification, personal and professional references, educational verification, and criminal history. Applicants with conviction histories will not be excluded from consideration to the extent required by law.


Equal Employment Opportunity:

Bugcrowd is EOE, Disability/Age Employer. 

Individuals seeking employment at Bugcrowd are considered without regards to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, or sexual orientation. 

Apply at: https://www.bugcrowd.com/about/careers/


Top Skills

Burpsuite
Nmap

Similar Jobs

An Hour Ago
Remote
United Kingdom
Mid level
Mid level
Cloud • Information Technology • Productivity • Security • Software • App development • Automation
The Customer Reference Manager connects referenceable customers to various requests, maintains the Customer Referenceable Database, and tracks program success metrics.
Top Skills: DeetoGainsightSalesforce
4 Hours Ago
In-Office or Remote
34 Locations
Entry level
Entry level
Machine Learning • Natural Language Processing
Welo Data seeks individuals fluent in Ukrainian for remote roles in annotation, evaluation, and data collection to enhance AI models.
Top Skills: Ai ToolsDigital ToolsFrameworks
4 Hours Ago
In-Office or Remote
35 Locations
Entry level
Entry level
Machine Learning • Natural Language Processing
Join Welo Data as part of a global community focusing on data annotation and enhancing AI models with diverse linguistic expertise.
Top Skills: AIDigital ToolsMachine Learning

What you need to know about the Belfast Tech Scene

If asked to name the birthplace of the RMS Titanic, you might not say Belfast. Similarly, if asked to name Europe's leading destination for foreign direct investment in new software development, Belfast might not come to mind. Yet, both are true. The city has emerged as a tech powerhouse, recently ranked among the best in the U.K. for tech careers — especially for software developers. It also leads the U.K. with the highest percentage of software development jobs advertised.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account