🔥 WE ARE HIRING: Web Application Penetration Testers (5 Openings)
Are you an experienced Penetration Tester ready to work at the intersection of offensive cybersecurity and cutting-edge AI? Bytei360 is expanding its security operations and looking for 5 Web Application Penetration Testers to drive black-box pentesting and leverage our internal AI agent capabilities!
📌 Company: Bytei360
📍 Location: Onsite – DHA Phase 8 (Ex-Parkview), Lahore
⏰ Shift / Time Zone: Pacific Standard Time (PST)
👥 Positions Available: 5
💼 Experience Level: 4 to 5 Years (Full-time Web App Pentesting)
What You Will Do
Execute Black-Box Pentests: Test complex insurance and financial services platforms, including customer portals, claims systems, payment flows, and multi-tenant architectures.
Supervise AI Agents: Operate Bytei360's internal AI pentesting agent, oversee automated runs, take over manual control when automated execution hits walls, and exploit identified attack vectors.
Complex Auth & Business Logic: Uncover flaws in OAuth, SAML, JWT, SSO, IDOR, privilege escalation, and access control mechanisms that conventional scanners miss.
Deliver Executive Reports: Write detailed technical findings with actionable remediation guidance and clear executive summaries for key stakeholders.
Manage Concurrent Scopes: Run multiple active client assessments across diverse enterprise environments simultaneously.
What We Are Looking For
Experience: 4 to 5 years of dedicated, full-time web application penetration testing.
Certifications (Must have at least one): OSCP, OSCE, CREST, or PCI-certified.
Tooling & Vulnerabilities: Expert proficiency with Burp Suite Professional (Proxy, Repeater, Intruder, custom extensions) and manual exploitation of the OWASP Top 10 (SQLi, XSS, CSRF, SSRF, XXE, Deserialization, API security).
Scripting: Hands-on ability in Python, JavaScript, or Bash to build custom exploits and PoCs.
Domain Expertise: Prior experience auditing insurance or financial services platforms is highly preferred.