More jobs:
Security Assurance Penetration Tester
Job in
Meriden, New Haven County, Connecticut, 06451, USA
Listed on 2026-07-21
Listing for:
Jobtailor
Full Time
position Listed on 2026-07-21
Job specializations:
-
IT/Tech
Cybersecurity
Job Description & How to Apply Below
Responsibilities
- Tracking and triaging findings from third-party assessments, ensuring timely follow-up and remediation tracking.
- Collaborating with development, platform, and product teams to communicate findings, track remediation efforts, and improve overall security posture.
- Facilitating post-assessment reviews and lessons learned sessions with development teams to identify recurring security issues and promote secure development practices.
- Maintaining program documentation, test records, and reporting artifacts.
- Conducting penetration testing of web applications, APIs, cloud environments, and internal systems, escalating complex testing scenarios as needed.
- Performing peer review of penetration testing deliverables, including test plans, findings, and final reports.
- Participating in scoping exercises and contributing to the selection of appropriate testing methodologies.
- Supporting security assessments of GenAI-powered applications and features, including LLM integrations, RAG pipelines, and AI agents.
- Assisting in testing for AI‑specific vulnerabilities such as prompt injection, jail breaking, insecure output handling, model data leakage, and training data poisoning.
- Contributing to the development of internal GenAI security testing checklists and methodologies, aligned with frameworks such as OWASP Top 10 for LLMs.
- Experience in information security, penetration testing, or a related field.
- Experience or coursework in software development, Dev Ops, or scripting is highly desirable.
- At least one relevant security certification (e.g., Security+, eJPT, PNPT, CEH, or equivalent) preferred; advanced offensive security certifications such as OSCP are a plus.
- Foundational understanding of web application architecture, networking, and operating system security.
- Familiarity with common penetration testing tools (e.g., Burp Suite, Nmap, Metasploit, Nuclei, or equivalent).
- Working knowledge of OWASP Top 10, common CVEs, and vulnerability scoring frameworks (CVSS).
- Scripting ability in at least one language (Python, Bash, Power Shell, or similar); development experience is a strong plus.
- Basic understanding of cloud environments (AWS, Azure, or GCP) and associated security considerations.
- Exposure to SAST/DAST tools and secure code review practices is desirable.
- Awareness of GenAI security risks (prompt injection, LLM abuse, insecure AI integrations).
Demonstrates expertise in penetration testing, security assessments, and remediation tracking, with a strong foundation in web application architecture and cloud security. Proficient in scripting and familiar with security frameworks and methodologies relevant to GenAI applications.
#J-18808-LjbffrTo View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×