Zelvin Security

2 jobs near Columbus, OH

Be Seen First

Penetration Tester

Knoxville, TN · Remote

$120K - $145K/yr

Zelvin Security is seeking an experienced Penetration Tester to join our Ethical Hacking Team and conduct hands-on ethical hacking engagements across networks, web applications, APIs, cloud platforms ...

New

Be Seen First

Penetration Tester

Knoxville, TN · Remote

$120K - $145K/yr

Zelvin Security is seeking an experienced Penetration Tester to join our Ethical Hacking Team and conduct hands-on ethical hacking engagements across networks, web applications, APIs, cloud platforms ...

New

Penetration Tester

Zelvin Security LLC

Knoxville, TN • Remote

$120K - $145K/yr

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 3 days ago

New

Be Seen First

After you apply to this job, you can share why you’re interested to jump to the top of the candidate list.


Job description

Zelvin Security is seeking an experienced Penetration Tester to join our Ethical Hacking Team and conduct hands-on ethical hacking engagements across networks, web applications, APIs, cloud platforms, and hybrid environments.

This role requires proven hands-on capability in both network and web application/API penetration testing. You’ll combine manual analysis with appropriate tooling, identify and pursue viable attack paths, validate exploitability, demonstrate real-world impact, and turn technical evidence into a clear, compelling narrative that helps clients understand their risk and take meaningful action.

At Zelvin, penetration testing is not about generating a list of vulnerabilities. Our testers think like attackers, follow the evidence, challenge assumptions, and determine which weaknesses create meaningful risk. They then help clients understand what matters, why it matters, and what they can do about it.

We are looking for someone who wants their work to make a meaningful impact serving clients, contributing to our team, their own professional growth, and the broader offensive security community.

Skills & Qualifications

· Minimum of three years of professional penetration testing or offensive security experience.

· Demonstrated hands-on experience conducting both network and web application/API penetration testing.

· Strong knowledge of Active Directory and Windows enterprise environments, including authentication, privilege escalation, lateral movement, and common attack paths.

· Working knowledge of cloud and hybrid environments, including identity, networking, permissions, and exposed services.

· Strong understanding of networking, operating systems, web technologies, authentication, exploitation techniques, and offensive security methodologies.

· Ability to analyze attack paths, adapt testing approaches, troubleshoot unsuccessful techniques, and distinguish demonstrated risk from assumptions or theoretical exposure.

· Strong critical-thinking, technical-curiosity, attention-to-detail, and problem-solving skills.

· Excellent written and verbal communication skills, including the ability to translate technical evidence and security risk for technical and non-technical audiences.

· Demonstrated professionalism, integrity, accountability, and sound judgment.

· Ability to work independently while collaborating effectively, sharing knowledge, respecting different perspectives, and contributing to team success.

· Bachelor’s degree in information security, computer science, a related field, or equivalent professional experience.

Professional Requirements:

At least one recognized hands-on offensive security certification such as OSCP, OSWE, or an equivalent. Other certifications such as CPTS, BSCP, GPEN, GWAPT, or equivalents will be considered.

Strong desire to make a meaningful impact through client service, team contribution, continued professional growth, and active engagement with the broader offensive security community. Uphold professional and technical standards, especially when doing so is challenging.

Responsibilities

As a Penetration Tester:

· Conduct all aspects of hands-on, manual and tool-assisted penetration testing of internal and external networks, web applications, APIs, cloud platforms, and hybrid environments.

· Identify, investigate, validate, safely exploit, and document vulnerabilities and attack paths to demonstrate actual security risk and real-world impact.

· Turn technical evidence into clear, defensible findings and practical remediation guidance that helps clients understand their risk and take meaningful action.

· Take ownership of assigned engagements through completion, while producing technically accurate, well-supported deliverables that uphold Zelvin’s quality standards.

As a Teammate:

· Participate in peer reviews and give and receive constructive feedback that improves the quality and accuracy of our work.

· Develop or adapt scripts, tools, payloads, and exploitation techniques when existing approaches are insufficient

· Research emerging technologies, vulnerabilities, and attack techniques, and contribute improvements to Zelvin’s methodologies, tools, and technical capabilities to support continuous innovation.


· Combine technical excellence with curiosity, professional judgment, and accountability. Communicate concerns, share in finding solutions to barriers, and act with integrity.

Technical excellence has its greatest impact when it strengthens our clients, improves our work, and develops the people around us.

What We Offer

· Remote work environment

· Unlimited paid time off (Policy Guided)

· Continuing education and professional development opportunities

· Competitive base salary and performance-based bonus

· Medical, dental, and vision insurance

· 401(k) with company match

· Opportunities to contribute directly to Zelvin’s testing methodologies, tools, processes, and technical capabilities

· Process improvement is guided by the team and everyone’s suggestions are considered


Position Details

This is a full-time remote position with less than 5% of required travel annually.

Zelvin Security is an equal opportunity employer. Employment is contingent upon successful completion of applicable background screening, drug screening, and E-Verify requirements. This position is not eligible for visa sponsorship. Applicants must have permanent authorization to work in the U. S. at the time of hire.

Base salary is determined by experience, technical capability, certifications, and overall qualifications. Performance bonuses are awarded according to defined company standards.

Company Description

Zelvin Security is a cybersecurity firm specializing in Ethical Hacking. We work with businesses and organizations to help them secure applications, networks, architecture and other sensitive assets to reduce cybersecurity risks. Our experienced Ethical Hacking testers perform penetration tests: application, mobile, cloud, network testing and other red and purple team exercises. We are a privately owned business with strong values and a team environment.