{"id":1323160,"url":"https://alion.io/job/cyberone-penetration-tester","title":"Penetration Tester","company":{"id":695879,"name":"CyberOne","domain":"cyberone.security","url":"https://alion.io/company/cyber-one","size_band":"51-200","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Teamtailor","truth_index":{"grade":"C","score":68,"open_postings":13,"ghost_share":0.538,"stale_share":0,"repost_share":0,"time_to_fill_p50_days":null,"computed_at":"2026-10-01T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":null,"employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Manila, Philippines"],"countries":["PH"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":16500,"max_usd":46000,"period":"year","method":null,"sample_n":2929},"experience_years_min":null,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"Active Directory","optional":false},{"name":"BloodHound","optional":false},{"name":"Copilot","optional":false},{"name":"Impacket","optional":false},{"name":"Metasploit","optional":false},{"name":"Mimikatz","optional":false},{"name":"Nmap","optional":false},{"name":"OWASP","optional":false},{"name":"Red Teaming","optional":false},{"name":"Responder","optional":false},{"name":"Windows","optional":false},{"name":"Windows Server","optional":false}],"status":"live","first_seen_at":"2026-09-24T13:06:02Z","employer_posted_date":"2026-09-24","last_verified_at":"2026-09-30T10:04:32Z","board_verified":true,"closed_at":null,"days_open":7,"trust":{"level":"ok","repost_count":0,"flags":["company_stale"],"days_open":6},"description":"“I am hugely excited about my future and the future of CyberOne. I have enjoyed my time here immensely and have learnt a huge amount in a short space of time, year-for-year I've learnt more here than I have at Microsoft and PwC.” - CyberOne Consultant\nAbout CyberOne\nCyberOne is a pure-play Microsoft security partner dedicated to helping enterprises realise the full value of the Microsoft Security portfolio-across Defender XDR, Sentinel, Entra, Purview, Intune, Copilot for Security and more. We combine deep technical expertise with outcome-driven services that accelerate secure cloud adoption, modernise threat protection and simplify compliance.\nJob Title: Penetration Tester\nLocation: Remote\nEmployment Type: Full-time\nWe are seeking a highly skilled and motivated Penetration Tester to join our Cyber Security team. The successful candidate will be responsible for conducting advanced penetration testing engagements across enterprise environments, with a particular focus on Active Directory (AD) security assessments. This role requires hands-on experience identifying, exploiting, and documenting security vulnerabilities while providing practical remediation recommendations to strengthen clients' security posture.\nKey Responsibilities\nConduct comprehensive penetration testing engagements against enterprise infrastructure, networks, systems, and applications.\n\nPerform manual and automated security assessments to identify vulnerabilities, weaknesses, and potential attack vectors.\n\nAssess and exploit Active Directory environments, identifying security risks including:\nMisconfigurations\n\nPrivilege escalation paths\n\nLateral movement opportunities\n\nCredential theft vulnerabilities\n\nExcessive permissions and insecure delegation\n\nExecute network and system exploitation activities to validate security weaknesses and assess their impact.\n\nEvaluate the effectiveness of security controls, hardening measures, and defensive configurations within Active Directory environments.\n\nSimulate real-world attack scenarios to assess organizational resilience against cyber threats.\n\nDevelop detailed technical reports outlining attack paths, findings, business impact, proof-of-concept evidence, and remediation recommendations.\n\nPresent technical findings to both technical and non-technical stakeholders.\n\nWork closely with internal teams and clients to support remediation efforts and provide security best-practice guidance.\n\nStay up to date with emerging threats, attack techniques, exploitation methodologies, and security technologies.\n\nRequired Skills & Experience\nProven experience conducting penetration tests across enterprise networks and infrastructure.\n\nStrong knowledge of Windows environments and Active Directory security.\n\nExperience identifying and exploiting Active Directory vulnerabilities and attack paths.\n\nExcellent understanding of:\nNetwork protocols and architecture\n\nWindows Server administration\n\nAuthentication mechanisms (Kerberos, NTLM)\n\nPrivilege escalation techniques\n\nLateral movement methodologies\n\nHands-on experience with penetration testing and red team tools such as:\nBloodHound\n\nMimikatz\n\nCrackMapExec\n\nImpacket\n\nNmap\n\nBurp Suite\n\nMetasploit\n\nResponder\n\nFamiliarity with vulnerability assessment and security testing methodologies including OWASP, NIST, and PTES.\n\nStrong technical documentation and report-writing skills.\n\nExcellent analytical, troubleshooting, and problem-solving abilities.\n\nPreferred Qualifications\nOffensive Security Certified Professional (OSCP)\n\nCRTO (Certified Red Team Operator)\n\nCREST Registered Penetration Tester (CRT) or CREST Certified Infrastructure Tester (CCT INF)\n\nGIAC Penetration Tester (GPEN)\n\nRelevant Microsoft security certifications\n\nExperience delivering internal or external client-facing security assessments","description_format":"text","description_chars":3801,"description_truncated":false,"requirements":{"experience_years_min":null,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Penetration Testing","Security Operations","Managed Security"],"lifecycle":[{"event":"open","at":"2026-09-26T23:40:00Z"}],"liveness":{"score":63,"band":"ok","label":"Likely open","p_open":1,"p_active":0.63,"p_room":1,"age_days":6,"expected_fill_days":36,"reasons":["conf:19","stale_co","velocity","win:early"],"computed_at":"2026-10-01T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/cyberone-penetration-tester","json_url":"https://alion.io/job/cyberone-penetration-tester.json","meta":{"generated_at":"2026-10-02T02:43:56Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":3697,"day_limit":5000,"remaining_today":1303,"minute_limit":60,"resets_at":"2026-10-03T00:00:00Z"}}}