Penetration Tester

4 days ago


Sydney, New South Wales, Australia NCS Full time $100,000 - $150,000 per year

Company Description

At NCS Australia, we believe in doing technology services better. Our commitment to quality, focus on people, and willingness to challenge traditional thinking set us apart. Our team brings this belief to life by partnering with our clients and communities to make tomorrow together.

We are committed to creating an environment that prioritises innovation, collaboration, and purposeful work. Our diverse team is empowered to make a meaningful impact with curiosity, creativity and resilience to shape better outcomes. Join us and accept the challenge of creating a better tomorrow.

Job Description

We are actively recruiting an experienced Penetration Tester to significantly enhance our security practice, focusing on delivering high-assurance offensive security services to both sensitive government and major commercial clientele. This role requires an expert capable of executing sophisticated and targeted testing methodologies, including Red Team exercises and focused penetration tests across a diverse range of environments. The scope of technical work will span modern and complex infrastructure, traditional, and specialized environments.

The successful candidate will not only identify and exploit vulnerabilities but must also translate complex technical findings into clear, high-quality deliverables. This involves authoring both detailed technical reports for engineering teams and precise executive reports for leadership. A critical element of the role is close collaboration with client security and development teams to guide and validate effective remediation strategies, ensuring our clients achieve a demonstrably superior security posture.

Key Responsibilities:

  • Offensive Security Execution: Plan, scope, and execute comprehensive penetration tests and Red Team engagements targeting diverse client environments, including: web applications, APIs, network infrastructure, multi-cloud workloads, and specialized systems.
  • Reporting Excellence: Produce high-quality, actionable deliverables, including detailed technical findings and executive reports that clearly articulate risk severity, exploitability, mitigation steps, and checklists.
  • Engagement Governance: Develop clear and strictly ensure all testing activities adhere to documented legal, contractual, and operational boundaries.
  • Advanced Testing Techniques: Conduct rigorous vulnerability assessments, manual exploitation, privilege escalation, persistence establishment, and to simulate real-world threats.
  • Remediation Assurance: Validate the effectiveness of client remediation actions through systematic retesting, providing definitive evidence and expert guidance for formal remediation acceptance.
  • Compliance Mapping: Map security findings directly to relevant compliance frameworks, including controls and the where applicable.
  • Accreditation Support: Provide critical input derived from testing findings to the support system processes.
  • Assurance Collaboration: Actively collaborate with and client security teams during formal assurance and compliance review activities.
  • Security and Confidentiality: Rigorously maintain confidentiality, chain of custody for evidence, and strictly adhere to all client site access and personnel.
  • Team and Tooling Development: Mentor junior security practitioners and contribute to the continuous improvement of internal penetration testing playbooks, methodologies, and specialized tooling.

Qualifications

  • Demonstrated strong, hands-on experience in executing complex penetration testing or Red Team engagements.
  • Proven capability in testing a wide range of environments, including web applications and containerized environments.
  • Expert proficiency in manual exploitation, privilege escalation, and advanced post-exploitation techniques.
  • Exceptional ability in high-quality technical report writing..
  • Solid scripting skills (Python, Bash, PowerShell) and deep familiarity with standard penetration testing tools
  • Government Framework Knowledge: Strong foundational understanding of key Australian Government security frameworks, including PSPF, ISM, Essential\ Eight and process.

Additional Information

Why join us:

NCS Australia is where you can feel at home, nurturing your talents and skills as we make tomorrow together, one day at a time. Our benefits include paid parental leave, initiatives focused on your well-being and discounted health insurance. You will also enjoy discounts on various products and services and be regularly recognised and rewarded for high performance. We are committed to your career development through our Capability Fingerprint, industry and partner training programs, special interest groups, and an AI-driven learning platform. No matter where you are in your career, we offer meaningful work and opportunities for growth.

NCS Australia is an equal-opportunity employer, and we take pride in our commitment to valuing and supporting our people and the communities we serve.We are dedicated to attracting, retaining and developing our people regardless of gender identity, ethnicity, sexual orientation, disability and age. Applications are encouraged from all sectors of the community and we strongly encourage applications from the Veterans, Aboriginal and/or Torres Strait Islander community.

At NCS Australia, we are committed to supporting adjustments throughout the recruitment and selection process, as well as during employment. We actively support and encourage people with disability to apply.

Agencies:

We've got this. We request that you do not contact NCS employees outside of the Talent Acquisition team. NCS exclusively accepts resumes from agencies on our preferred supplier panel through the NCS Agency Portal. Agencies that submit resumes must have a valid fee agreement and be assigned to the particular requisition by the Talent Acquisition team. Any resumes that are submitted outside of this process will become the sole property of NCS. If a candidate is hired outside of this process, no fee or payment will be given.

Work rights and background checks:

To be eligible for a position with us, applicants will need to have valid work rights for Australia and be willing to undergo a comprehensive background checking process, including probity and police checks


  • Penetration Tester

    2 weeks ago


    Sydney, New South Wales, Australia Cyberlinx Full time $120,000 - $180,000 per year

    Cyberlinx | Full-Time | Remote (Australia-based)Cyberlinx is a fast-growing, pure-play cybersecurity consultancy delivering high-impact work across enterprise, government, and critical infrastructure. We're looking for a highly skilled Lead Penetration Tester and take the lead on advanced testing engagements across Australia.About the RoleAs a Lead Pen...


  • Sydney, New South Wales, Australia Tech Aalto Full time $120,000 - $200,000 per year

    Senior Penetration Tester – Job DescriptionRole Overview-The Senior Penetration Tester will lead and execute advanced penetration testing and vulnerability assessment activities across applications, networks, cloud, and infrastructure. This role requires deep technical expertise, hands-on testing skills, and the ability to communicate findings and...


  • Sydney, New South Wales, Australia CareCone Group Full time $120,000 - $180,000 per year

    Role:Senior Penetration TesterLocation:Sydney/ Melbourne/ CanberraEmployment Type:ContractDuration:9 monthsMust have:Full working rights. No sponsorship available.Role OverviewThe SeniorPenetration Testerwill lead and execute advanced penetration testing and vulnerability assessment activities across applications, networks, cloud, and infrastructure. This...


  • Sydney, New South Wales, Australia Cyberlinx Full time $104,000 - $130,878 per year

    Cyberlinx | Full-Time | (Sydney)Cyberlinx is a fast-growing, pure-play cybersecurity consultancy delivering high-impact work across enterprise, government, and critical infrastructure. We're looking for a highly skilled Lead Penetration Tester and take the lead on advanced testing engagements across Australia.About the RoleAs a Lead Pen Tester, you'll be...


  • Sydney, New South Wales, Australia Commonwealth Bank Full time $120,000 - $180,000 per year

    Your RoleThe Cyber Security Team protects the bank and our customers from theft, losses and risk events through effective and proactive management of cyber security, privacy and operational risk.The Security Testing Centre of Excellence (COE) conducts simulated cyber-attacks to ensure systems are safe, sound, and secure by performing security assessments of...


  • Sydney, New South Wales, Australia Decipher Bureau Full time

    Are you technical and looking for an opportunity that can leverage your expertise?Maybe you've been pigeonholed into web app, after web app, or you're stuck in an organisation with limited career growth opportunities?If you're a seasoned penetration tester or red teamer, this role is worth exploring.About CompayWe're partnering with a fast-growing,...

  • Penetration Tester

    3 days ago


    Sydney, New South Wales, Australia NCS Group Australia Full time $120,000 - $180,000 per year

    At NCS Australia, we believe in doing technology services better. Our commitment to quality, focus on people, and willingness to challenge traditional thinking set us apart. Our team brings this belief to life by partnering with our clients and communities to make tomorrow together.We are committed to creating an environment that prioritises innovation,...

  • Penetration Tester

    2 weeks ago


    Sydney, New South Wales, Australia Robert Walters Full time $120,000 - $160,000 per year

    An exciting opportunity has arisen for a Penetration Tester to join a well-established cyber security team within a large organisation. This role offers the chance to work on a variety of offensive security engagements in a complex environment, building your skills alongside experienced security professionals and contributing to high-profile projects.What...


  • Sydney, New South Wales, Australia Cybertify Full time $120,000 - $180,000 per year

    About CybertifyCybertify is Australia's premier compliance-first cybersecurity consulting firm, proudly Australian owned, fully independent, and sovereign in every respect. We specialise in protecting and enabling organisations in the country's most heavily regulated sectors: financial services, superannuation, legal, aged care, healthcare, banking,...

  • Cyber Assurance

    1 week ago


    Sydney, New South Wales, Australia AYAN INFOTECH PTY LTD Full time $120,000 - $180,000 per year

    AYAN InfoTech is looking for Cyber Assurance - Consultant/Architect/ Analyst to join an exciting project based in Sydney / Melbourne / Canberra. The role offers you the opportunity to contribute towards an extremely well structured and mature environment, working on sophisticated enhancement projects. Role: Cyber Assurance - Consultant/Architect/...