VacanciesCompanies
PackagesBlog
logoShtat.az

Azərbaycanda iş axtarışı və karyera inkişafı üçün etibarlı platforma

© 2026 Shtat.az

Information Security - Cybersecurity

Penetration Tester

🏢Kapital Bank📍Address not specifiedFull-time📅12.05.2026💰Interview-based

Job Description & Requirements

2–4 years of hands-on experience in penetration testing across web applications, APIs, mobile, and network infrastructure. Solid knowledge of OWASP Top 10 (Web), OWASP API Security Top 10, and common vulnerability classes. Experience with penetration testing tools including Burp Suite, OWASP ZAP, Nmap, Metasploit, and Nessus/OpenVAS. Ability to perform thorough manual testing in addition to automated scanning. Understanding of network protocols, firewall rules, and common infrastructure misconfigurations. Basic knowledge of Active Directory environments and common attack techniques. Experience with both internal and external network assessments. Ability to document vulnerabilities clearly with CVSS scoring, proof of concept, and remediation guidance. Basic scripting skills in Python or Bash for automating tasks and extending tooling. Familiarity with CI/CD security concepts and integrating security scans into pipelines. Understanding of MITRE ATT&CK framework and the Cyber Kill Chain. Preferred certifications: OSWE, OSEP, OSCP, CAPE, CRTO or equivalent ones.

Job Responsibilities

The Penetration Tester will conduct security assessments across web, mobile, API, and network environments. This role focuses on identifying vulnerabilities, documenting findings, and working closely with development and security teams to remediate risks. The ideal candidate has a solid foundation in offensive security techniques and is eager to grow within a product-focused security team.

Apply Now

This position requires application on the employer's website.