العودة لجميع الوظائف

Penetration Tester

Security Egypt - Fully Remote Part-time

الوصف الوظيفي

We don't want to discover our security weaknesses from someone attacking our production systems.

At ErthDev, security is part of how we build software.

We're looking for a Penetration Tester to help us identify vulnerabilities before they become incidents and to strengthen the security of the products and systems we deliver.

What you'll do

  • Perform web application penetration testing.
  • Test APIs and backend services.
  • Assess authentication and authorization mechanisms.
  • Identify common and advanced application vulnerabilities.
  • Perform vulnerability validation and exploitation in authorized environments.
  • Conduct security assessments of cloud and infrastructure components where applicable.
  • Review application behavior from an attacker's perspective.
  • Produce clear technical findings and remediation guidance.
  • Work with engineers to explain vulnerabilities and validate fixes.
  • Contribute to secure development practices and threat modeling.
  • Support security testing throughout the software development lifecycle.

Security at ErthDev

Security isn't a report generated at the end of a project.

We want security considerations throughout development.

That includes:

Design → Development → Testing → Deployment → Monitoring

We also take client confidentiality seriously. Generative AI tools are restricted for client project work where their use could expose confidential information.

What you'll get

  • Fully remote work from Egypt
  • Flexible working hours with collaboration overlap
  • Cairo office access when needed
  • Paid annual leave and sick leave
  • Performance bonuses and annual salary reviews
  • Learning and certification support
  • Security training opportunities
  • Conference opportunities
  • Equipment and internet support
  • Medical insurance
  • Mentorship and career growth
  • Exposure to different applications, architectures, and industries

Hiring process

Application → Initial Conversation → Security Assessment → Technical Interview → Final Conversation → Offer

If your first instinct when looking at an application is "How could this fail?", we'd like to meet you.

Apply through LinkedIn Easy Apply or the ErthDev careers page.

المتطلبات

What we're looking for

  • Strong understanding of web application security.
  • Strong understanding of HTTP and modern web architectures.
  • Experience testing REST APIs.
  • Knowledge of OWASP Top 10 and OWASP API Security Top 10.
  • Understanding of authentication, authorization, session management, and access control.
  • Strong vulnerability research and analytical skills.
  • Ability to write clear, actionable security reports.
  • Understanding of common application and infrastructure attack techniques.
  • Strong communication skills.

Experience with Burp Suite, OWASP ZAP, Nmap, Linux, cloud security, source-code review, mobile security, or security automation is a plus.

Relevant security certifications are welcome, but practical ability matters more than collecting certificates.

قدم الآن