2

Full Time Crto Jobs (NOW HIRING)

Role Description Penetration Tester (Mid-Senior) Full-Time Remote (US) As a penetration tester on ... Certifications such as OSCP, BSCP, CRTO, GWAPT, GPEN, or equivalent practical credentials

Preferred: Industry certifications such as OSWE, OSCP, OSCE, GPEN, GWAPT, CRTO, or related ... full-time, regular part-time, or temporary employment. Adhere to and ensure compliance of all ...

Job Type: Full-time * Location: Huntsville, AL - Customer Site & REMOTE * Travel: 15%-20 ... Relevant certifications such as OSCP, CRTO, OSEP, PNPT, CEH, CISSP * Experience with: * EDR evasion ...

Job Type: Full-time * Location: Huntsville, AL - Customer Site & REMOTE * Travel: 15%-20 ... Relevant certifications such as OSCP, CRTO, OSEP, PNPT, CEH, CISSP * Experience with: * EDR evasion ...

OSCP, OSWP, CRTP, OSEP, CRTO, GXPN, CISSP or other related industry certifications Education ... This fulltime position is eligible for a comprehensive benefits package designed to support the ...

Full Time Crto information

See salary details

$12

$17

$25

How much do full time crto jobs pay per hour?

As of Aug 23, 2026, the average hourly pay for full time crto in the United States is $17.50, according to ZipRecruiter salary data. Most workers in this role earn between $15.38 and $18.99 per hour, depending on experience, location, and employer.

What is the difference between Full Time Crto vs Full Time Data Analyst?

AspectFull Time CrtoFull Time Data Analyst
Required CredentialsCertifications in compliance, risk management, or related fieldsDegree in statistics, mathematics, or related fields; certifications like CAP or Microsoft Certified Data Analyst
Work EnvironmentFinancial institutions, corporate compliance departments, or consulting firmsBusiness, finance, healthcare, or marketing sectors
Employer & Industry UsageUsed in banking, insurance, and financial services for risk and compliance rolesUsed across industries for data interpretation, reporting, and decision-making

Full Time Crto and Full Time Data Analyst roles share some analytical skills but differ mainly in focus. Crto roles emphasize compliance, risk management, and regulatory knowledge, often within financial institutions. Data Analysts focus on interpreting data, creating reports, and supporting business decisions across various industries. Both roles require strong analytical skills but serve different organizational needs.

More about Full Time Crto jobs

What cities are hiring for Full Time Crto jobs?

Cities with the most Full Time Crto job openings:

What are the most commonly searched types of Crto jobs?

The most popular types of Crto jobs are:

What states have the most Full Time Crto jobs?

States with the most job openings for Full Time Crto jobs include:

Infographic showing various Full Time Crto job openings in the United States as of August 2026, with employment types broken down into 87% Full Time, 7% Part Time, and 6% Contract. Highlights an 75% Physical, 11% Hybrid, and 14% Remote job distribution, with an average salary of $36,392 per year, or $17.5 per hour.

Senior Penetration Tester (US)

BreachLock

Remote

Full-time

Re-posted yesterday


Job description

Company Description
BreachLock is a global leader in Offensive Security including Red Teaming, Continuous Attack Surface Discovery and Penetration Testing services. We help organizations discover, prioritize, and mitigate exposures with evidence-backed Attack Surface Management, Penetration Testing, and Red Teaming. BreachLock provides an attacker's perspective that goes beyond standard vulnerabilities, enabling organizations to build a comprehensive, proactive defense strategy.
Role Description
Penetration Tester (Mid-Senior) Full-Time Remote (US)
As a penetration tester on BreachLock's US Strategic delivery team, you'll execute manual, methodology-driven engagements across web applications, APIs, and internal networks - including assumed breach simulations - for enterprise clients. You'll work directly with delivery leadership, contribute to internal tooling and quality systems, and help raise the bar for the team around you.
Key Responsibilities
  • Execute web application, API and mobile penetration tests with a focus on manual testing beyond automated scanning - business logic, authentication abuse, authorization flaws, and injection chains
  • Conduct internal network assessments, external network assessments and assumed breach engagements, including Active Directory enumeration, lateral movement, privilege escalation, and post-exploitation
  • Leverage frameworks including MITRE ATT&CK, PTES, and OWASP to structure assessments and findings
  • Develop and contribute to internal tooling - automation scripts, reporting utilities, and workflow improvements using Python, Bash, or similar
  • Participate in QA review cycles, providing structured feedback on findings, CVSS scoring accuracy, and report quality
  • Mentor junior testers through technical guidance and finding review
  • Collaborate with delivery leadership on scoping, client kickoff calls, and remediation guidance

Requirements
  • 3-5 years of professional penetration testing experience in a delivery or consulting context
  • Strong web application and API testing fundamentals - Burp Suite proficiency, OWASP Top 10 and beyond, authentication and session management testing
  • Solid internal network assessment skills - AD enumeration, Kerberoasting, NTLM relay, ADCS misconfigurations, assumed breach methodology
  • Proficiency in scripting and automation (Python, PowerShell, Bash)
  • Strong written communication - capable of writing clear, accurate, well-scoped findings independently
  • Familiarity with PTaaS delivery models or platform-based reporting workflows is a plus
  • US-based and eligible to work without sponsorship

Preferred
  • Experience with C2 frameworks (Cobalt Strike, Havoc, Sliver, or similar)
  • Active involvement in cybersecurity communities, research, or bug bounty programs
  • Certifications such as OSCP, BSCP, CRTO, GWAPT, GPEN, or equivalent practical credentials
  • Experience with SIEM platforms or EDR tools from an adversarial perspective

Benefits
  • Competitive compensation and performance-based equity opportunities
  • Flexible work hours with hybrid remote options
  • Opportunity to work with international cybersecurity experts
  • Strong career progression in a rapidly expanding early-stage company
  • Exposure to cutting-edge research, tools, and techniques in offensive security

Additional Organization Details
  • BreachLock Website
  • Leadership Team
  • Meet the BreachLockers Video Series
  • Reuters Coverage
  • CEO Interview - Cybercrime Magazine
  • Seemant Sehgal Interview on RT4 & RTLZ