MisuJob - AI Job Search Platform MisuJob

Penetration Tester

ICE Consulting

Lahore, Punjab, Pakistan Remote permanent

Posted: March 6, 2026

Interested in this position?

Create a free account to apply with AI-powered matching

Quick Summary

A penetration tester with hands-on experience in Active Directory, Network, and Web Application penetration testing. The ideal candidate should be able to identify security vulnerabilities and provide actionable recommendations to improve the organization's security posture.

Job Description

Job Overview
We are looking for a motivated and skilled Penetration Tester with hands-on experience in Active Directory, Network, and Web Application penetration testing. The ideal candidate should be able to identify security vulnerabilities, misconfigurations, and weaknesses across enterprise environments and provide actionable recommendations to improve the organization's security posture.
In addition to traditional penetration testing, the candidate will participate in purple-team exercises, collaborating with defensive teams to simulate real-world attack scenarios and strengthen detection and response capabilities. An interest in SOC operations, monitoring, and threat detection will be considered a strong advantage.

Key Responsibilities

• Perform Active Directory penetration testing to identify privilege escalation paths, insecure configurations, and potential lateral movement opportunities.
• Conduct internal and external network penetration tests to identify vulnerabilities and weaknesses within the enterprise infrastructure.
• Perform web application penetration testing, including authentication testing, input validation, session management, and business logic testing.
• Identify and analyze security misconfigurations across systems, services, and network infrastructure.
• Conduct security audits and configuration reviews to identify gaps against security best practices and industry standards.
• Perform risk assessments by evaluating vulnerabilities, misconfigurations, and their potential business impact.
• Document security findings, misconfigurations, and vulnerabilities with clear risk ratings and remediation guidance.
• Participate in purple team engagements by simulating attacker techniques and helping SOC teams improve detection and response capabilities.
• Support threat simulation exercises based on real-world attack techniques and frameworks such as MITRE ATT&CK.
• Work closely with SOC and defensive teams to improve alerting, monitoring, and threat detection use cases.
• Assist in validating remediation efforts by performing retesting and verification of fixes.
• Prepare technical and executive-level reports summarizing findings, risks, and recommended mitigation strategies.


Requirements:
Required Skills & Experience
• Hands-on experience in Active Directory security assessments and penetration testing
• Strong knowledge of network penetration testing methodologies
• Experience in web application security testing (OWASP Top 10)
• Understanding of security configuration reviews and misconfiguration analysis
• Experience performing vulnerability validation and risk analysis
• Hands-on experience with tools such as:

• Nmap
• Burp Suite
• Metasploit
• BloodHound
• Impacket
• CrackMapExec

• Strong understanding of Windows security architecture and AD attack techniques
• Knowledge of network protocols, authentication mechanisms, and common attack vectors
Nice to Have

• Experience with Purple Team exercises
• Exposure to SOC operations, SIEM platforms, or security monitoring
• Familiarity with MITRE ATT&CK framework
• Scripting knowledge (Python, PowerShell, Bash)
• Exposure to cloud security assessments (Azure / AWS)

Preferred Certifications (Optional)

• PNPT
• eCPPT
• GPEN / GWAPT

Soft Skills

• Strong analytical and problem-solving mindset
• Ability to clearly communicate technical risks and remediation steps
• Good documentation and reporting skills
• Ability to collaborate with both offensive and defensive security teams
• Strong curiosity and passion for continuous learning in cybersecurity

Why Apply Through MisuJob?

AI-Powered Job Matching: MisuJob uses advanced artificial intelligence to analyze your skills, experience, and career goals. Our matching algorithm compares your profile against thousands of job requirements to find positions where you have the highest chance of success. This saves you hours of manual job searching and ensures you only see relevant opportunities.

One-Click Applications: Once you create your profile, applying to jobs is effortless. Your resume and cover letter are automatically tailored to highlight the most relevant experience for each position. You can apply to multiple jobs in minutes, not hours.

Career Intelligence: Beyond job matching, MisuJob provides valuable career insights. See how your skills compare to market demands, identify skill gaps to address, and understand salary benchmarks for your experience level. Make data-driven decisions about your career path.

Frequently Asked Questions

How do I apply for this position?

Click the "Register to Apply" button above to create a free MisuJob account. Once registered, you can apply with one click and track your application status in your dashboard.

Is MisuJob free for job seekers?

Yes, MisuJob is completely free for job seekers. Create your profile, get matched with jobs, and apply without any cost. We help you find your dream job without any hidden fees.

How does AI matching work?

Our AI analyzes your resume, skills, and experience to understand your professional profile. It then compares this against job requirements using natural language processing to calculate a match percentage. Higher matches mean better fit for the role.

Can I apply to jobs in other countries?

Absolutely. MisuJob features jobs from companies worldwide, including remote positions. Filter by location or look for remote opportunities to find jobs that match your preferences.

Ready to Apply?

Join thousands of job seekers using MisuJob's AI to find and apply to their dream jobs automatically.

Register to Apply