Pen Tester | Help Shape the Future of Offensive Security

The Client

This client combines the agility of a start-up with the depth of four decades of cybersecurity expertise. They are building something bold; a future where collaboration and resilience sit at the core of every cyber solution.

They are seeking a highly capable Penetration Tester to join their growing cyber security team. This role involves performing a wide range of offensive security assessments across infrastructure, cloud, and application layers, with a strong preference for individuals who bring deep expertise in web application, API, and mobile application security testing.

As part of their assurance services team, you will work with a variety of clients to help identify vulnerabilities and provide clear, actionable advice to reduce risk and strengthen cyber resilience.

Key Responsibilities
  • Plan and conduct penetration testing engagements across multiple domains:
    • Web applications and APIs
    • Mobile applications (iOS and Android)
    • Internal and external networks
    • Cloud platforms and configurations
  • Document and communicate findings through structured, professional reports and client debriefs
  • Provide remediation guidance and advisory support to technical and non-technical stakeholders
  • Contribute to tooling, methodologies, and team knowledge sharing
  • Support red and purple team exercises when required


Skills and Experience
  • Minimum 3 years’ hands-on experience in penetration testing or application security
  • Strong understanding of application-layer vulnerabilities and secure development practices
  • Proficiency in tools such as Burp Suite, OWASP ZAP, Postman, Nmap, and custom scripts
  • Experience testing APIs (REST, GraphQL) and mobile applications (iOS and Android)
  • Familiarity with secure development practices and the software development lifecycle
  • Relevant industry certifications (e.g., OSCP, OSWE, GWAPT) are highly regarded
  • Excellent written and verbal communication skills, with the ability to articulate technical issues to both technical and non-technical audiences

Why joining this company?

This is one of those rare opportunities to join a cyber security start-up that already has an established reputation, experienced leadership and an impressive client portfolio.

You will join a highly collaborative and passionate cyber security team with a strong reputation for delivering high-quality outcomes to clients.

The organisation is Parnell based and offers hybrid working arrangements, a collaborative and supportive culture, exposure to a diverse range of clients and environments, and opportunities for ongoing professional development and career growth.



You must currently reside in Auckland, New Zealand; and hold valid working rights or an appropriate visa.

Please apply today, we revise CVs daily.

See also

要針對這個職缺調整履歷嗎?

目前無法檢查您與這個職缺的符合程度;請先將履歷加入個人檔案,下次即可查看。

A new version of freehire is available