- 4+ years' experience in penetration testing and/or red team operations
- 2+ years programming experience in at least one of the following: Golang, Python, Java, C#, C/C++
- Working knowledge of DevSecOps and CI/CD pipelines and related tooling (Gitlab, Github, Jenkins,…)
- Application Analysis (fuzzing, static analysis, app scanning)
- Familiarity with reviewing source code for security vulnerabilities and related tooling (Code QL, semgrep,…)
- Basic understanding of machine learning its attack surface
- Advanced knowledge in application security, network security, authentication protocols
- Proficiency in one or more operating systems: Linux, Windows, macOS
- Experience with tooling such as Metasploit, Bloodhound, Burp, PromptFoo, ZAP, Sliver, …
- Web and Database Penetration Testing Experience