SixGen, Inc.

cyber and intelligence

SeniorWebApplicationPenetrationTester

$100–135k New York, New York, United States; Denver, Colorado, United States; United States Remote Friendly
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Senior candidates.

The Brief

“Senior Web Application Penetration Tester at SixGen, Inc.. Skills: Web Application Penetration Tester, vulnerability analysis/exploitation, custom tooling development, penetration testing. perform endpoint discovery. open source research”

What You'll Achieve.

report details and actionable findings on critical assets and infrastructures

Industry & Context.

cyber and intelligence
Problems you'll solve

novel vulnerability analysis/exploitation; risk analysis; root cause analysis; predict and overcome cybersecurity vulnerabilities

Eligibility Requirements

10% travel requirement, Must be willing to travel as needed, Must be able to obtain Secret Clearance, Up to 10% travel

What They're Looking For.

Must Have

5 years of Web Application Penetration Tester experience, experience in web application penetration testing, experience in network mapping, vulnerability scanning, and penetration and web application testing, Experience using approved test protocols and procedures to conduct network and application-level penetration tests, Experience attending client meetings, recording internal and technical client interviews and preserving the contents of reports and memoranda, Must be willing to travel as needed, Must be able to obtain Secret Clearance, Experience in script writing and crafting of payloads

Nice to Have

OSCP preferred, Some cloud/Active Directory experience is a plus for post exploitation activities

What You'll Do.

perform endpoint discovery

web application enumeration

novel vulnerability analysis/exploitation

develop custom tooling

achieve a deep understanding of target infrastructure/technology in exploitation paths

Conduct assessments of web applications

client-side applications and tools

Analyze security findings

Generate comprehensive reports

How You'll Work.

Team & Collaboration

Collaborate with team members and clients to define project scopes, business cases, review test results, and determine remediation steps; Participate in client meetings; communicate clearly and openly on incremental progress; inform the team of any help needed on impediments and roadblocks

Communication Scope

communicate complex security concepts and test findings to clients and stakeholders; communicate clearly and openly on incremental progress

Full Job Description

We are seeking a Senior Web Application Penetration Tester to join our growing team. As a Senior Web Application Penetration Tester, you will be challenged to perform endpoint discovery, open source research, web application enumeration, and novel vulnerability analysis/exploitation. This is much more than Burp scans; operators routinely develop custom tooling (in languages such as PHP, Java, and Python) and achieve a deep understanding of target infrastructure/technology in exploitation paths. The assessments are usually a long haul and great for advanced bug bounty hunters who enjoy getting deep in the weeds. Some cloud/Active Directory experience is a plus for post exploitation activities. This role resides in our Delivery Department and reports to our VP of Cyber Operations. This position is remote with a 10% travel requirement. SIXGEN supports cyber and intelligence missions by serving government and commercial organizations as they overcome global cybersecurity challenges. Our highly skilled operators conduct research and assessments based on real-world threats. We simulate adversaries and malicious actors to report details and actionable findings on critical assets and infrastructures. Our program planners advise mission owners to bring rapid solutions to intelligence mission leaders. Using innovative processes, tools, and techniques, we predict and overcome cybersecurity vulnerabilities. Our successes are supported by our diverse team of experienced, technical talent. SIXGEN is growing our support to mission by adding an ambitious Strategic Management Consultant to our team. SIXGEN, Inc. is an Equal Opportunity/Veterans/Disabled Employer. Core Responsibilities: Conduct assessments of web applications, mobile applications, databases, client-side applications and tools, and APIs. Collaborate with team members and clients to define project scopes, business cases, review test results, and determine remediation steps. Analyze security findings, including risk ana

Free ATS check

Applying for this Senior Web Application Penetration Tester role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Greenhouse

  • Create a Greenhouse profile before applying — it saves time across multiple applications.
  • Upload your resume as a PDF; the parser handles it better than Word.
  • Answer all knockout questions carefully — wrong answers auto-reject before a human sees you.
  • Enable email notifications to track application status in real time.

ANONYMOUS · UNFILTERED

What do employees actually say about SixGen, Inc.?

Real rants from real employees. Read before you apply.

Read Company Rants →