Rhymetec Logo

Rhymetec

Lead Penetration Tester

Posted 8 Days Ago
Be an Early Applicant
Easy Apply
In-Office or Remote
Hiring Remotely in New York City, NY
Mid level
Easy Apply
In-Office or Remote
Hiring Remotely in New York City, NY
Mid level
The Lead Penetration Tester leads penetration testing engagements, mentors team members, and produces clear reports for clients, focusing on web applications and networks.
The summary above was generated by AI

Role: Lead Penetration Tester

Location: Remote (must be located in U.S.)

About Rhymetec: 

Rhymetec is an industry leader in the MSSP cybersecurity space. Our goal is to simplify cybersecurity for our clients so they can become compliant faster and focus more on their business and less on the complexities of building effective and compliant infosec programs.

Description: 

The Lead Penetration Tester is an experienced offensive security professional who reports directly to the Director of Offensive Security. In this client-facing role, you will lead and execute penetration testing engagements for MSSP customers, serve as an escalation point for other penetration testers, and help ensure high-quality, defensible deliverables across the team

Responsibilities: 

  • Lead and execute penetration tests primarily across web applications, external APIs, and networks, performing manual testing, exploitation, and validation beyond automated scanning.
  • Serve as the primary escalation point for other penetration testers to unblock investigations, validate exploitation paths, and review findings for accuracy and consistency.
  • Conduct scoping calls with customers, confirm rules of engagement, and manage the pentest lifecycle.
  • Present findings to engineering teams and executive stakeholders, translating technical issues into remediation priorities.
  • Contribute to internal offensive security tooling, playbooks, templates, and scripts.

Required Minimum Qualifications:

Minimum 2 years of verifiable experience as a professional penetration tester in a full-time role. Must have direct experience in pentesting web applications, external web API’s, and networks, as well as one or more of the following categories:

  • Mobile Applications
  • Cloud Infrastructures (AWS, Azure, GCP)
  • GenAI/ML
  • Desktop (Thick Client) Applications
  • Vishing/Phishing
  • Secure Code Reviews
  • Strong exploitation and validation skills with technical abilities above verifying scan results.
  • Ability to produce clear and precise penetration test reports with reproducible steps and screenshots of evidence to provide practical remediation guidance effectively with customers.
  • Ability to mentor and uplift other Offensive Security team members through technical guidance, review, and structured feedback.

Must be currently based in the United States. No sponsorship available for this position.


Benefits: 

Rhymetec offers a robust employee package, including:

  • Supportive leadership and a clear growth path
  • 100% of employee medical premiums are covered by the employer and discounted family insurance options
  • Dental and Vision Benefits
  • PTO and Sick Time + 11 paid Holidays
  • 401K retirement option with company match
  • Company-paid Life Insurance
  • Annual Subscription to TalkSpace (online counseling & therapy service)

Compensation may vary outside of the range depending on several factors, including a candidate's qualifications, skills, competencies, experience, and location. Base pay is one part of the Total Package provided to compensate and recognize employees for their work, and this role may be eligible for additional discretionary bonuses/incentives.

Rhymetec is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will be considered for employment without regard to race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetics, disability, age, or veteran status.

Top Skills

AWS
Azure
Cloud Infrastructures
GCP
Penetration Testing

Similar Jobs at Rhymetec

4 Hours Ago
Easy Apply
In-Office or Remote
New York City, NY, USA
Easy Apply
Mid level
Mid level
Cloud • Information Technology • Consulting • Cybersecurity • Data Privacy
The Cyber Security Analyst will develop and implement security solutions, manage compliance requirements, and enhance clients' security postures through various responsibilities including audits, configurations, and client engagements.
Top Skills: AWSAzureDatadogGCPHexnodeJAMFJumpcloudMicrosoft Endpoint Manager

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account