Back to positions

Offensive Security Analyst (Penetration Testing)– Remote Position - Now Hiring

Remote role Full-time Open position

About us BlueOrange Compliance, a CloudWave company, is a leader in information privacy and security, regulatory compliance, and risk management services. About this Position We are seeking a highly skilled Penetration Tester (Ethical Hacker) to join our cybersecurity team. In this role, you will be responsible for simulating real-world cyberattacks on client systems, networks, and applications to uncover vulnerabilities before they can be exploited. You’ll think like an adversary but act as a trusted partner—helping organizations strengthen their defenses, meet compliance requirements, and protect critical data. Essential Duties Conduct internal and external penetration tests on networks, applications, and cloud environments. Simulate real-world attacks to identify exploitable vulnerabilities before adversaries do. Evaluate client environments against recognized security frameworks and regulatory requirements. Prepare detailed reports with findings, risk ratings, and remediation recommendations. Stay current on emerging threats, tools, and techniques in offensive security. Contribute to internal knowledge base and mentor junior team members. Create comprehensive penetration test reports and executive summaries for stakeholders. Maintain accurate records of testing activities and ensure compliance with internal standards. Present results of testing directly to clients and stakeholders Required Skills Bachelor's degree in Computer Science, Cybersecurity, a similar discipline, or comparable professional experience. Preferred certifications: OSCP, CEH, CRTP, PNPT, or similar offensive security credentials. 2+ years of hands-on experience in penetration testing, vulnerability assessments, or red team operations. Familiarity with healthcare compliance and/security frameworks (HIPAA, HITRUST, NIST) and regulatory standards. Proficiency with offensive security tools (e.g., Burp Suite, Metasploit, Nmap, Wireshark, Nessus, Kali, Phishing Tools, etc.). Strong understanding of network protocols, web application security, and secure coding practices. Ability to develop custom scripts in Python, Bash, or PowerShell for exploit development and automation preferred Deep understanding of OWASP Top 10, MITRE ATT&CK, and common attack vectors. Familiarity with Secure SDLC and threat modeling methodologies. To be considered for this excellent new opportunity, please send a resume with salary history directly to [email protected]. Your response will be held in strict confidence. About us BlueOrange Compliance, a CloudWave company, is a leader in information privacy and security, regulatory compliance, and risk management services. About this Position We are seeking a highly skilled Penetration Tester (Ethical Hacker) to join our cybersecurity team. In this role, you will be responsible for simulating real-world cyberattacks on client systems, networks, and applications to uncover vulnerabilities before they can be exploited. You’ll think like an adversary but act as a trusted partner—helping organizations strengthen their defenses, meet compliance requirements, and protect critical data. Essential Duties Conduct internal and external penetration tests on networks, applications, and cloud environments. Simulate real-world attacks to identify exploitable vulnerabilities before adversaries do. Evaluate client environments against recognized security frameworks and regulatory requirements. Prepare detailed reports with findings, risk ratings, and remediation recommendations. Stay current on emerging threats, tools, and techniques in offensive security. Contribute to internal knowledge base and mentor junior team members. Create comprehensive penetration test reports and executive summaries for stakeholders. Maintain accurate records of testing activities and ensure compliance with internal standards. Present results of testing directly to clients and stakeholders Required Skills Bachelor's degree in Computer Science, Cybersecurity, a similar discipline, or comparable professional experience. Preferred certifications: OSCP, CEH, CRTP, PNPT, or similar offensive security credentials. 2+ years of hands-on experience in penetration testing, vulnerability assessments, or red team operations. Familiarity with healthcare compliance and/security frameworks (HIPAA, HITRUST, NIST) and regulatory standards. Proficiency with offensive security tools (e.g., Burp Suite, Metasploit, Nmap, Wireshark, Nessus, Kali, Phishing Tools, etc.). Strong understanding of network protocols, web application security, and secure coding practices. Ability to develop custom scripts in Python, Bash, or PowerShell for exploit development and automation preferred Deep understanding of OWASP Top 10, MITRE ATT&CK, and common attack vectors. Familiarity with Secure SDLC and threat modeling methodologies. To be considered for this excellent new opportunity, please send a resume with salary history directly to [email protected]. Your response will be held in strict confidence. Apply tot his job Apply To this Job

Further positions

Platform Security Architect

Remote role Full-time

Senior Product Security Architect - Remote

Remote role Full-time

Experienced Full Stack Security Architect – IT Security and Compliance (Remote, Full Time)

Remote role Full-time

[Remote] Security Architect | PAM/IGA/Presales (Remote)

Remote role Full-time

Information Assurance Specialist/Analyst

Remote role Full-time

Director Information Assurance and Security

Remote role Full-time

[Remote] Senior Product Marketing Manager, Security Assurance (Remote)

Remote role Full-time

Federal Security Compliance Analyst United States Federal Security Compliance Analyst

Remote role Full-time

Sr. Security & Compliance Specialist - TS Clearance

Remote role Full-time

Cyber Security Operations Center Manager (Remote) in Baltimore, MD

Remote role Full-time

Experienced Part-time Remote Customer Service Representative – Flexible Work-from-Home Opportunities

Remote role Full-time

School Counselor (Virtual High School)

Remote role Full-time

Audio Video Field Service Engineer

Remote role Full-time

Senior Project Manager Public Trust (Remote)

Remote role Full-time

Remote AML Data Analyst

Remote role Full-time

Operational Risk Director

Remote role Full-time

Experienced Customer Operations Representative – Financial Services and Customer Support

Remote role Full-time

IT Lead Data Engineer

Remote role Full-time

Senior Relationship Strategist - PNC Private Bank

Remote role Full-time

Experienced Healthcare Data Entry Specialist – Remote Opportunity with arenaflex

Remote role Full-time