Security Penetration Tester

Xerox - Oak Brook, IL

Hiring: Security Penetration Tester Company: Xerox Location: Oak Brook, IL Job Posted Time: 2026-09-17 02:38:44 Employment Type: Remote Target Skills & Keywords : AWS, Azure, Bash, GCP, Linux, OWASP, Penetration Testing, PowerShell, Python, SOC 2 About the job Experience: •3 years of hands-on experience to join our Offensive Security team. In this role, you will identify, exploit, and help remediate security vulnerabilities across our applications, networks, and infrastructure through simulated attacks, contributing directly to the security posture of our products and enterprise environment. •3 years of professional experience in penetration testing, offensive security, or a closely related role. Required Skills: •Plan and execute penetration tests against web applications, networks, APIs, and cloud environments to identify exploitable vulnerabilities. •Perform manual and automated security testing using industry-standard tools (e.g., Burp Suite, Metasploit, Nmap, Nessus, Cobalt Strike). •Document findings clearly in professional reports, including risk ratings, reproduction steps, and remediation recommendations. •Partner cross-functionally with engineering and IT teams to validate fixes and re-test remediated issues. •Stay current on emerging threats, attack techniques, and vulnerability disclosures relevant to Xerox's technology stack. •Support red team exercises, social engineering assessments, or physical security tests as needed. •Contribute to internal tooling, scripts, or playbooks that improve testing efficiency and coverage. •Assist with compliance-driven testing (e.g., PCI-DSS, SOC 2) as required. Qualifications: •Approximately 3 years of professional experience in penetration testing, offensive security, or a closely related role. •Must be based in the United States and authorized to work in the U.S. without sponsorship. •Solid understanding of common vulnerability classes. •Applied hands-on capability in penetration testing tools and frameworks. •Solid functional working knowledge of scripting/programming (Python, Bash, or PowerShell) for tooling and automation. •Strong written communication skills for producing clear, actionable technical reports. •Demonstrated capacity to work independently in a remote environment while collaborating across distributed teams. •Industry certifications such as OSCP, CEH, or GPEN (preferred, not required). •Operational familiarity with secure code review or application security testing. •Prior experience in a regulated industry (e.g., government, healthcare, finance, or print/imaging technology). Compensation: •Flexible work environment (work from home / hybrid options) Interested candidates, please apply directly through the job posting on company's career page or try via AI auto apply on this platform. Don't miss this opportunity to join a forward-thinking team!