Senior Penetration Tester

Raas Infotek

Dallas, USremote countryPosted Jul 2, 2026
Posting intelligenceActively listed

Skills

pythonios

About the role

Role :- Senior Penetration Tester / Offensive Security Specialist

Location: - Remote (Preferably Dallas, TX)

Job Title:

Senior Penetration Tester / Offensive Security Specialist (Red Team)

Role Overview

HCLTech is seeking an experienced Penetration Testing and Offensive Security Specialist to lead and execute advanced adversarial simulations across enterprise environments. The role focuses on identifying exploitable weaknesses across network, application, cloud, human, and physical layers, emulating real-world attacker techniques.

The ideal candidate will bring hands-on expertise in multi-vector penetration testing, red teaming, exploit development, and adversarial simulation, with the ability to provide actionable remediation insights to strengthen enterprise security posture.

Key Responsibilities

1. Penetration Testing & Red Team Operations

Conduct end-to-end penetration testing engagements, including:

Internal network assessments

External perimeter testing

Web application and API security testing

Cloud and container security testing

Mobile (iOS) and thick client application assessments

Wireless infrastructure testing

Execute advanced attack simulations to emulate real-world adversary tactics

2. Exploitation & Vulnerability Analysis

Identify, validate, and exploit vulnerabilities using techniques such as:

SQL Injection

Cross-Site Scripting (XSS)

Privilege Escalation

Credential harvesting and manipulation

Perform:

Vulnerability chaining and lateral movement simulations

Post-exploitation persistence and privilege escalation

Provide risk-rated findings with clear remediation guidance

3. Social Engineering & Human Layer Testing

Design and execute social engineering campaigns, including:

Phishing and spear-phishing

Smishing and pretexting

Assess organizational resilience to human-centric attacks

4. Red Team Automation & Tool Development

Develop and maintain:

Custom exploitation scripts and toolkits

Automation workflows for reconnaissance and exploitation

Leverage:

Python scripting and Linux toolchains

AI/GenAI-assisted tooling for attack simulation and reconnaissance

5. Offensive Intelligence & Reconnaissance

Perform OSINT-based reconnaissance, including:

Target profiling and attack surface discovery

Dark web and surface web intelligence gathering

Utilize tools such as:

Nmap, Wireshark

Threat intelligence platforms (e.g., Recorded Future or equivalents)

6. Purple Teaming & Validation Support

Collaborate with defensive teams to:

Validate detection and response capabilities

Simulate attack scenarios and measure control effectiveness

Support:

Breach simulations

Ransomware scenario testing

Required Skills & Experience

Core Technical Skills

Proven experience in:

Multi-vector penetration testing (Network, Web, Cloud, Mobile, Wireless, Physical)

Red teaming and adversary emulation

Exploit execution and vulnerability validation

Strong understanding of:

MITRE ATT&CK framework

Modern attack techniques and threat actor TTPs

Tools & Technologies

Hands-on expertise with:

Nmap, Wireshark, Burp Suite, Metasploit (or similar toolsets)

Experience with:

Web application security tools

Network and protocol analysis tools

Automation & Scripting

Strong development experience in:

Python

Linux environments

Ability to build:

Custom scripts, payloads, and automation frameworks

Complementary Experience (Preferred)

Exposure to:

Investigations and compromise assessments

Threat Intelligence and IOC analysis

Experience participating in:

Red Team vs Blue Team or Purple Team exercises

Certifications (Preferred)

Offensive Security Certified Professional (OSCP)

Certified Ethical Hacker (CEH)

GIAC Security Essentials (GSEC)

Other advanced Red Team or exploit development certifications are a plus

Soft Skills & Attributes

Strong analytical and problem-solving skills

Ability to think like an adversary and simulate realistic attack paths

Clear communication skills for delivering executive-ready risk reports

Ability to operate independently and in high-stakes testing environments

Thanks & Regards

Mohd Rahbar (Technical Recruiter)

Raas Infotek Corporation.

262 Chapman Road, Suite 105A,

Newark, DE -19702

E-Mail: mohd.rahbar@raasinfotek.com| Website: www.raasinfotek.com

LinkedIn https://www.linkedin.com/in/mohd-rahbar-180a4725a

Questions about this role

Click "Apply with AI Applyd" above. We auto-fill the application from your resume and answer screening questions in seconds. No copy and paste, no juggling tabs.

Compensation for Penetration Tester roles in United States varies widely by seniority, employer size, and remote vs onsite arrangement. Check the salary range on this listing when published, or browse our Penetration Tester hub for United States medians across recent openings.

Most applications complete in under 90 seconds. You can track the status in your dashboard and watch the screenshot proof land the moment the application submits.

AI Applyd supports Greenhouse, Lever, Ashby, Workday, iCIMS, SmartRecruiters, Personio, Teamtailor and other major ATS platforms. If we can submit through the platform, we do.

Want AI Applyd to auto-apply to roles like this?

We tailor your resume per posting, fill the forms, and track replies for you.