Cybersecurity experts / penetration testing

Posted 2025-10-26
Remote, USA Full Time Immediate Start
Job Title: Cybersecurity Expert / Penetration Tester Location: Remote Type: Full-Time/Part-timeAbout Band of Coders: At Band of Coders, we build software solutions for startups and enterprises alike. Were a team of engineers, designers, and product strategists passionate about solving complex challenges through technology. As we continue to grow, were expanding our capabilities in cybersecurity to ensure that the solutions we deliver are secure, reliable, and resilient from day one. Job Summary: We are seeking a Cybersecurity Expert / Penetration Tester to join our growing team. This role involves identifying vulnerabilities in systems, applications, and infrastructure, and working collaboratively with development teams to remediate security risks. You will play a crucial role in enhancing our internal security practices and supporting client engagements where security is a top priority. Key Responsibilities:Conduct penetration tests on web and mobile applications, APIs, and cloud infrastructure (AWS, GCP, etc)Perform security assessments and vulnerability scans using industry-standard toolsAnalyze systems for misconfigurations, insecure code, and data exposure risksCollaborate with developers to guide remediation efforts and implement secure coding practicesDesign and improve internal security processes, including threat modeling and secure SDLC practicesPrepare technical reports and communicate findings and recommendationsStay current with the latest security threats, tools, and best practicesRequirements:3+ years of experience in cybersecurity, ethical hacking, or penetration testingProficiency with tools such as Burp Suite, OWASP ZAP, Metasploit, Nmap, Wireshark, and Kali LinuxStrong understanding of web and mobile application security (OWASP Top 10)Experience testing cloud-based infrastructure (AWS, GCP, etc.)Familiarity with programming/scripting languages like Python, JavaScript, Bash, or PowerShellKnowledge of network protocols, authentication mechanisms, and common vulnerabilitiesExperience working in DevOps and CI/CD pipelines is a plusStrong written and verbal communication skills, including technical documentation and reportingKnowledge of regulatory frameworks and compliance standards (e.g., SOC 2, GDPR, HIPAA)Nice to Have:Certifications such as OSCP, CEH, CISSP, or GWAPTExperience working with API Gateways (e.g., Kong), microservices, and event-driven architecturesExperience working with real-time communication systems like Twilio or LiveKitOriginally posted on Himalayas Apply To this Job
Back to Job Board