NinjaRMM

Penetration Tester

NinjaRMM • $130K — $165K *
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Information Technology, Computer Science, or related field
  • 8+ years of hands-on penetration testing experience
  • Strong understanding of security protocols and modern attack techniques
  • Security certifications such as OSCP, Security+, CISSP, or CISM are a plus
  • Proficiency with penetration testing tools like Burp Suite and Caido
  • Experience with bug bounty triage and vulnerability scoring (CVSS)
  • Ability to develop custom testing tools or scripts in languages like Java, Python, or Go

Responsibilities

  • Perform controlled penetration testing of applications and infrastructure
  • Conduct security testing of new API endpoints during release cycles
  • Collaborate with Engineering to validate vulnerabilities and support remediation
  • Develop custom tools or scripts for penetration testing and automation
  • Triage and validate bug bounty submissions, assessing severity and impact
  • Communicate with external security researchers throughout the report lifecycle
  • Stay current on emerging threats and apply knowledge to guide security initiatives
  • Create comprehensive reports for technical and executive stakeholders
  • Promote security awareness and contribute to best practices across the organization

Benefits

  • Collaborative and supportive work environment
  • Flexible hybrid remote work options
  • Comprehensive medical, dental, and vision insurance
  • 401(k) plan for financial planning
  • Unlimited PTO for work-life balance
  • Opportunities for growth and advancement
Full Job Description
Description

About the Role

The Penetration Tester role is a key part of NinjaOne's core security team, with visibility across the entire organization, from individual developers to executive leadership. You will directly strengthen the security of the NinjaOne platform by identifying and helping resolve technical, security, and architectural vulnerabilities across our applications and environments. The ideal candidate takes a multi-layered approach to uncovering weaknesses in software, web applications, and client-side components to drive meaningful security improvements. This role is also a key contributor to NinjaOne's public bug bounty program, validating externally reported vulnerabilities and working directly with security researchers around the world.

Location: We are flexible on remote working from home, if you are located in the USA and reside in one of the following states: CA, CO, CT, FL, GA, *IL, KS, MA, MD, ME, NJ, NC, NY, OH, OR, TN, TX, VA, and WA. We have physical offices in Austin, TX and Tampa, FL, if you prefer a hybrid option.

*Onsite interviews may be required for this role.

What You'll Be Doing
  • Perform controlled penetration testing of NinjaOne applications, cloud environments, and infrastructure, demonstrating exploitability and documenting risks and remediation steps
  • Perform security testing of new and modified API endpoints and features as part of each release cycle, prioritizing coverage against release timelines
  • Collaborate with Engineering to validate vulnerabilities, communicate impact, and support secure design and remediation efforts
  • Develop custom tools or scripts to support penetration testing, automation, and exploit development
  • Perform first-pass triage and validation of bug bounty submissions: reproduce reported issues, assess severity and impact (CVSS), identify duplicates, and route confirmed findings to the appropriate teams
  • Communicate directly with external security researchers in clear, professional written English throughout the report lifecycle
  • Stay current on emerging threats, TTPs, and cybersecurity trends, applying them to evaluate NinjaOne's exposure and guide security initiatives
  • Create clear, comprehensive reports and presentations for both technical and executive stakeholders
  • Promote security awareness across the organization, contributing to policies, best practices, and ongoing security education
  • Other duties as needed

About You
  • Bachelor's degree in Information Technology, Computer Science, or a related field
  • 8+ years of hands-on penetration testing experience, within a broader 5+ years in cybersecurity-related roles
  • Strong understanding of security protocols, cryptography, authentication/authorization, and modern attack techniques
  • Security certifications such as OSCP (highly desired) and/or Security+, CISSP, or CISM are a plus
  • Proficiency with penetration testing tools such as Burp Suite, Caido, and related frameworks
  • Experience validating and scoring vulnerabilities (CVSS) and communicating findings to both technical and non-technical audiences; bug bounty triage or program experience is a strong plus
  • Ability to develop custom testing tools or scripts (Java, Kotlin, C++, Python, or Go)
  • Knowledge of security frameworks and methodologies (OWASP, NIST, BSIMM), threat modeling (STRIDE, DREAD), and system hardening standards (CIS, CSA)
  • Solid understanding of Linux and Windows operating systems, enterprise architecture, and TCP/IP and UDP networking fundamentals
  • Experience testing or exploiting cloud-native applications; understanding cloud security architecture is a plus
  • Strong analytical and problem-solving skills with excellent written and verbal communication; this role communicates directly with external security researchers, engineers, and leadership

What You'll Love
  • A collaborative, kind, and curious community
  • Full-time work that is hybrid remote, honoring your flexibility needs
  • A comprehensive benefits package, including medical, dental, and vision insurance
  • A 401(k) plan to help you prepare for your financial future
  • Unlimited PTO that prioritizes your work-life balance
  • Opportunity for growth and advancement

Additional Information

This position is NOT eligible for Visa sponsorship.

*Due to operational policies, NinjaOne is unable to hire for this role within the city limits of Chicago. We will consider all qualified candidates who reside outside of the city proper or are willing to self-relocate.

Starting pay for the successful applicant depends on a variety of job-related factors, including but not limited to location, market demands, experience, job-related knowledge, and skills. The benefits available for this position include medical, dental, vision, 401(k) plan, life insurance coverage, and PTO. For roles based in California, Colorado, Maryland, New Jersey, or Washington, the base salary hiring range for this position is $130,000 to $165,000 per year.

For roles based in New York, the base salary hiring range for this position is $130,000 to $165,000 per year.

About NinjaRMM

NinjaRMM is an all-in-one remote monitoring and management platform that combines powerful, time-saving IT automation with remote access and live support for IT teams. NinjaRMM offers a single-pane-of-glass experience that helps IT professionals efficiently manage their IT infrastructure and support end-users. The platform is designed to be easy to use, with a simple and intuitive interface that allows IT teams to quickly deploy and manage their IT infrastructure. NinjaRMM is trusted by thousands of IT professionals worldwide, and is used by businesses of all sizes, from small startups to large enterprises.
Learn more about NinjaRMM
Size
200 employees
Industry
Net Income
-$5 million
Founded
2013
5 Year Trend
+50%
Revenue
$20 million
NASDAQ

Similar Jobs

More Jobs at NinjaRMM

  • NinjaRMM
    Penetration Tester
    $130K — $165K *
    Austin, TX 78745 (Travis County)
    Information Technology
    In-Person
  • NinjaRMM
    Penetration Tester
    $130K — $165K *
    Remote
    Information Technology
    Remote in Austin, TX
  • NinjaRMM
    Sales Analytics Analyst
    $80K — $95K *
    Tampa, FL 33647 (Hillsborough County)
    Business Services
    In-Person
  • NinjaRMM
    Sales Analytics Analyst
    $80K — $95K *
    Austin, TX 78745 (Travis County)
    Business Services
    Hybrid
  • NinjaRMM
    Cyber Threat Hunter
    $80K — $110K *
    Austin, TX 78745 (Travis County)
    Information Technology
    In-Person

More Information Technology Jobs

Find similar Penetration Tester jobs: