Pentesting/ethical Hacker

hace 1 semana


Bogotá, Colombia Insight Assurance A tiempo completo

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance. Founded by former Big 4 (EY) professionals, we deliver next-generation audit services across SOC 2, ISO 27001, PCI DSS (QSA), HITRUST, CMMC (C3PAO), and FedRAMP (3PAO) frameworks.

We're not your traditional audit firm — we're tech-enabled, leveraging compliance automation and advanced collaboration tools to make audits faster, smarter, and more impactful for our clients.

Recognized on the Inc. 5000 and Fast 50 lists, Insight Assurance is one of the fastest-growing global audit firms, with 170+ professionals supporting nearly 2,000 clients across the Americas, EMEA, and APAC.

If you're a driven sales professional who thrives on building relationships, driving growth, and being part of a high-performance global team — this is your opportunity to sell trust, innovation, and impact with one of the most exciting firms in the audit industry.

**JOB RESPONSIBILITIES**

**Key Responsibilities**:

- Act as a primary point of contact between penetration testing teams, internal stakeholders, and external clients.
- Coordinate and schedule penetration testing engagements, ensuring alignment with business objectives and regulatory requirements.
- Maintain documentation related to penetration testing activities, including scope definitions, engagement tracking, and risk assessments.
- Ensure all penetration testing reports and findings are effectively communicated to relevant teams and stakeholders.
- Monitor and schedule remediation efforts following penetration tests and track progress until closure.
- Prepare and deliver final pentest reports to clients.
- Assist in the development and refinement of penetration testing policies, procedures, and methodologies.
- Support compliance efforts by ensuring testing activities align with frameworks such as SOC2, NIST, ISO 27001, PCI DSS, and other relevant regulations.
- Collaborate with cybersecurity, IT, and development teams to integrate security best practices into the software development lifecycle (SDLC).
- Identify and escalate operational challenges, process gaps, or resource needs related to penetration testing activities.
- Provide reporting and metrics on penetration testing engagements, including key performance indicators (KPIs) and remediation progress.

**Required Skills & Qualifications**:

- Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field.
- 3+ years of experience in penetration testing coordination, cybersecurity operations, or a related role.
- Familiarity with penetration testing methodologies (OWASP, PTES, NIST SP 800-115, etc.).
- Strong understanding of vulnerability management and risk assessment principles.
- Excellent communication and stakeholder management skills, with the ability to translate technical findings into business impact.
- Experience with penetration testing tools such as Burp Suite, Metasploit, Nessus, Active Directory, Bloodhound, netexec, certipy, kali Linux, python, bash, recon, OSINT, VPN, cloud Azure, AWS, and GPC. Code review and Nmap are a plus.
- Experience with project management software, such as Asana or others.

Strong organizational skills and ability to manage multiple testing engagements simultaneously.
- Certified in any of the following: CPTS, PNPT, CBBH, CRTO, CEH, CAPE, Security+
- Bilingual in Spanish is a plus.

**B**enefits**
- Flexible Paid Time Off and paid holidays
- Performance Bonuses
- 100% Remote

**Privacy Notice CCPA**:

- _Insight Assurance shares your personal data/information with Greenhouse recruiting because this is the tool we use for the recruitment process. _
- _Insight Assurance does not sell personal data/information under any circumstances. _

**Privacy Notice GDPR**:

- We are a U.S. based company, hence some or all Personal Data pertaining to you will be hosted in the U.S._
- The categories of Personal Data under Processing consist of:_
- _Identification_
- _Contact_
- _Education and Professional_
- _Interview performance_
- _Evaluation_
- You may exercise several Rights as determined under applicable Personal Data Protection legislation, in short:_
- **_Right of Access_**_ - meaning getting information about the Personal Data under Processing by us, except for the information you already know;_
- **_Right of Erasure_**_ - you may ask for us to erase all Personal Data pertaining to you under Processing; this may imply you being excluded from the recruitment process, for without information we cannot proceed with it;_
- **_Right of Opposition or Restriction of Processing_**_ - you may ask us to stop some Processing or restrict the Processing of some Personal Data, this may imply you being excluded from the recruitment process, at our sole discretion also for without information we cannot proceed with it;_
- **_Rectification _**_- you can rectify your Personal Data at anytime_


  • Lider de Ciberseguridad

    hace 1 semana


    Bogotá, Colombia ALLIANCE ENTERPRISE SAS A tiempo completo

    LIDER DE PROYECTOS DE CIBERSEGURIDAD. - PENTESTER Empresa de tecnología se encuentra en la búsqueda de un Líder de Proyectos de Ciberseguridad, encargado de realizar proyectos de auditoría y consultoría en Seguridad de la información y Ciberseguridad para clientes, bajo el estándar ISO 27001:2022 o NIST o PCI. **Requisitos**: **Estudios**: Ingeniero...


  • Bogotá, Colombia Stefanini LATAM A tiempo completo

    Get AI-powered advice on this job and more exclusive features. Ejecutar actividades especializadas de ciberseguridad ofensiva y defensiva , enfocadas en Ethical Hacking , evaluación de controles de seguridad y fortalecimiento de la postura de seguridad de la organización, asegurando el cumplimiento de mejores prácticas y estándares internacionales....


  • Bogotá, Colombia STEFANINI LATAM A tiempo completo

    ¡Sé parte de Stefanini! En Stefanini somos más de 30.000 genios, conectados desde 41 países, haciendo lo que les apasiona y co-creando un futuro mejor. ¡Seguro no te quieres quedar fuera! **¡Analista de Ciberseguridad!** **** ¿Por qué te elegiremos? ¡Porque los desafíos que asumirás reflejan tus ambiciones! **Responsabilidades y...


  • Bogotá, Colombia STEFANINI LATAM A tiempo completo

    ¡Sé parte de Stefanini! En Stefanini somos más de 30.000 genios, conectados desde 41 países, haciendo lo que les apasiona y co-creando un futuro mejor. ¡Seguro no te quieres quedar fuera! **¡Analista de Ciberseguridad EH Jr!** **** ¿Por qué te elegiremos? ¡Porque los desafíos que asumirás reflejan tus ambiciones!. Si eres un profesional...


  • Bogotá, Colombia Marco A tiempo completo

    Únete al equipo de Marco MKT y juntos co-creemos estrategias y soluciones que marquen la vida de las personas en la industria del Trade Marketing. ¿Cuáles serán tus funciones? - Acompañar y apoyar al RSGSI en la administración, mantenimiento y mejora continua del Sistema de Gestión de Seguridad de la Información (SGSI), conforme a la norma ISO...

  • IT Auditor

    hace 13 horas


    Bogotá, Colombia Aramco A tiempo completo

    Aramco energizes the world economy. Aramco occupies a special position in the global energy industry. We are one of the world’s largest producers of hydrocarbon energy and chemicals, with among the lowest Upstream carbon intensities of any major producer. With our significant investment in technology and infrastructure, we strive to maximize the value of...