Find Jobs
Find Jobs Near You – Available Work in Your Location
Senior Penetration Tester
Career Insights for Vulnerability Analyst / Penetration Tester
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on Illinois data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Vulnerability Analyst or Penetration Tester probes for and exploits security vulnerabilities in web-based applications, networks and systems. Penetration Tests are designed to achieve a specific, attacker-simulated goal and should be requested by customers who are already at their desired security posture. A typical goal could be to access the contents of the prized customer database on the internal network, or to modify a record in an HR system. Vulnerability Assessments are designed to yield a prioritized list of vulnerabilities and are generally for clients who already understand they are not where they want to be in terms of security. The customer already knows they have issues and simply need help identifying and prioritizing them.
$115,132 / year median in Illinois
+3% projected growth
Job Description
EN18031, CRA , UK PSTI , UL
Standards to diverse product types, translating requirements into effective test plans. + Collaborate closely with clients to understand their security objectives, provide technical guidance, and deliver clear, professional reports with findings, risk ratings, and remediation recommendations. + Provide high-level technical support in areas like test planning, methodology development, procedure updates, staff training, and resolution of complex quality or testing issues. + Maintains/improves technical knowledge by attending educational workshops, reviewing professional publications, obtaining applicable certifications, and participating in professional societies and cross-departmental task forces. + Follow-up with the latest technical developments in the physical attacks area that need to be contributed to the internal R D developments in hardware (analogue and digital electronics) and software (C, C++, Assembly, and others) to enhance the level of our attacks and to explore new forms of attacks. + Implement sophisticated attacks requiring multiple techniques such as vulnerability analysis, signal processing, FPGA , optical, and others. + Undertake security evaluation attacks on smart cards or embedded systems. The main activity will be the real product analysis with the aim to highlight its strengths and weaknesses. + Specialize in the realization of innovative physical attacks using laser or EM techniques, in-depth understanding on how the products work with the aim to stress them using complex hardware techniques. + Conduct web application penetration testing (covering OWASP Top 10, API security, authentication/authorization flaws, business logic vulnerabilities, and modern web frameworks). + Perform mobile application security assessments on iOS and Android platforms, including static analysis, dynamic analysis, reverse engineering, and platform-specific vulnerability testing. + Execute cloud security testing and configuration reviews across AWS , Azure, GCP , or multi-cloud environments, focusing on identity and access management ( IAM ), network security, container/Kubernetes security, serverless architectures, storage security, and cloud misconfigurations. + University Degree (Equivalent to Bachelor's Degree) in Electronic/Computer Science/Computer Engineering/Electrical Engineering or a related discipline plus 3-5 years of related experience. Good skills in Cloud security testing preferred. + Proficiency in low-level programming (C, C++, Assembly) and scripting. Experience with FPGA , signal processing, or hardware debugging tools is a strong plus. + Familiar with test equipment and working in a multi-skills environment mixing electronic, optical, security, mechanical, and IT. + Excellent written and verbal communication skills, with the ability to explain complex technical concepts to both technical and non-technical stakeholders. + A self-motivated team player who can work independently and likes to bring new ideas for technical development. What you'll experience working for ULS UL Solutions has been pioneering change since 1894 and we're still leading the way. From day one, we've blazed a trail protecting the planet and everyone on it. Our teams have influenced billions of products, plus services, software offerings and more. We break things, burn things and blow things up. All in the name of safety science. That's where you come in - because none of it could happen without you. It takes passion to protect people, problem-solving to safeguard personal data and conviction to make the world a more sustainable place. It takes bold ideas and brilliant minds to build a better world for future generations across the globe. This is more than a job. It's a calling. A passion to use our expertise and play our part in creating a more secure, sustainable world today - and tomorrow. As a member of our safety science community, you'll use your ideas, your energy and your ambition to innovate, challenge and ultimately, help create a safer world. Everyone here is unique. But we're also a global community, working together to help create a safer world. Join UL Solutions and you can connect with the brightest minds in the business, all bringing their distinct perspectives and diverse backgrounds together to deliver real change. Empowering our customers to keep the world safe means thinking ahead. It means investing in training and empowering our people to learn and innovate. At UL Solutions, we help build a better future - one where everyone benefits. Join UL Solutions to be at the center of safety. To learn more about us and the work we do, visit?UL.com