Cybersecurity Engineer (Pentester)
San Salvador, El Salvador
Applaudo Studios
We are a software development company that develops and deploys custom software solutions for organizations that want to make an impact through technology.Job Description
About you:
The Cybersecurity Engineer is responsible for scoping, executing, and reporting on comprehensive security assessments of software solutions—including web applications, mobile apps, and cloud-based systems. This role applies advanced penetration testing methodologies and tools to discover vulnerabilities, demonstrate real-world exploit scenarios, and provide clear, actionable steps to address and remediate findings. By collaborating with cross-functional teams, the Pentester ensures thorough coverage of security risks and drives continuous improvements to protect the organization’s software solutions.
You bring to Applaudo the following competencies:
- Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, or a related field, or equivalent professional experience.
- 2–3 years of hands-on experience in penetration testing or offensive security roles.
- Proven expertise in conducting comprehensive pentests on web, mobile, or cloud-based applications, including vulnerability research and exploit development.
- Proficiency in common pentesting tools and frameworks (e.g., Burp Suite, Metasploit, Nmap, custom scripting).
- Familiarity with threat intelligence integration, adversary TTPs, and the MITRE ATT&CK framework as it applies to offensive engagements.
- Strong analytical and problem-solving skills to identify, exploit, and document vulnerabilities.
- Effective communication abilities, both written and verbal, to clearly present findings and remediation steps to technical and non-technical stakeholders.
- Collaborative mindset and adaptability when working with cross-functional teams (e.g., development, operations, security).
- Advanced English (required).
- Desired Certifications: Offensive Security (e.g., OSCP, OSWE, OSCE, OSWP), eLearnSecurity (e.g., eCPPT, eWPT, eWPTX, eMAPT), CEH (Certified Ethical Hacker), Other advanced certifications (e.g., GPEN, GXPN) are a plus.
You will be accountable for the following responsibilities:
- Plan, scope, and execute end-to-end penetration tests on web, mobile, and cloud-based applications.
- Develop testing strategies aligned with organizational goals and compliance requirements.
- Conduct in-depth assessments to identify weaknesses and potential exploit paths.
- Demonstrate real-world attack scenarios and validate impact using both manual and automated methods.
- Leverage up-to-date threat intelligence feeds, attacker TTPs, and industry insights to enhance testing methodologies.
- Incorporate relevant intelligence into pentest scoping, targeting the most critical or emerging risks.
- Work closely with application owners, DevOps teams, and security engineers to ensure clarity on testing goals and scope.
- Provide real-time updates on findings, collaborating on remediation strategies and security improvements.
- Maintain expertise in penetration testing tools and frameworks (e.g., Burp Suite, Metasploit, custom scripting).
- Continuously refine and optimize tools for improved detection of complex vulnerabilities.
- Record all findings, exploitation steps, and mitigation recommendations in clear, actionable reports.
- Communicate results to both technical and non-technical stakeholders, ensuring understanding of risk and remediation paths.
Additional Information
Here at Applaudo Studios values as trust, communication, respect, excellence and team work are our keys to success. We know we are working with the best and thus treat each other with respect and admiration without asking.
Submit your application today, and don't miss this opportunity to join the Best Digital team in the Region!
We truly appreciate all the hard and outstanding work our team makes every day at Applaudo Studios, and that's why the perks that we offer, are deeply thought and designed as a way to thank them for their commitment and excellence.
Some of our perks and benefits:
- Work from home
- Flexible schedule
- Celebrations
- Special discounts
- Entertainment area
- Flexible work spaces
- Great work environment
- Private medical insurance
*Benefits may vary according to your location and/or availability. Request further information when applying.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Burp Suite CEH Cloud Compliance Computer Science DevOps eWPT eWPTx Exploit GPEN GXPN Metasploit MITRE ATT&CK Nmap Offensive security OSCE OSCP OSWE OSWP Pentesting Scripting Security assessment Threat intelligence TTPs Vulnerabilities
Perks/benefits: Flex hours Health care
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.