Penetration Tester (Offensive Security)
Run web, API and network penetration tests for AXUM SEC clients, and turn the findings into fixes their teams can actually ship.
- Employment type
- Full-time
- Location
- Hybrid · Addis Ababa, Ethiopia
- Level
- Mid-level
- Openings
- 1 opening
The role
You will work across our PTaaS engagements: scoping targets with the client, testing against the agreed rules of engagement, and writing reports that engineers can act on.
We are a small team, so you will have direct contact with the people who build and defend the systems we test.
What you will do
- Plan and execute web, API, mobile and network penetration tests
- Document findings with reproduction steps, impact and remediation guidance
- Verify fixes on retest and keep the client's ticket trail accurate
- Contribute techniques and tooling back to the team
What we are looking for
- Hands-on penetration testing experience on web and API targets
- Working knowledge of the OWASP Top 10, CVSS and CWE
- Clear written English: our reports are read by engineers and executives
- Eligibility to work with client systems under NDA and rules of engagement
Nice to have
- OSCP, OSWE, CRTO or similar certification
- Experience with cloud (AWS) testing
- Bug bounty or CTF track record
- Amharic and English
Compensation
Competitive, discussed at interview
Apply for this role
Applications are collected through our AxConnect form, so your submission is tracked and answered by the team that owns the role.
AXUM SEC · https://www.axumsec.com/hunters/careers/penetration-tester-offensive-security