Cyber Security Engineer (Pen Tester)
reversidesoftwaresolutionspt City of Johannesburg Metropolitan Municipality, Gauteng, South Africa
IT Services and IT Consulting · 201-500 employees
About the role
The Cyber Security Engineer will conduct penetration testing across web applications, APIs, and internal systems to identify vulnerabilities. They are responsible for providing actionable remediation recommendations and engaging with stakeholders to discuss security findings.
What they look for
Requirements
Candidates must have 6+ years of professional penetration testing experience and a strong understanding of the OWASP Top 10. A tertiary qualification or relevant IT/Cyber Security certification is required, along with proficiency in scripting languages like Python or PowerShell.
Full description
Reverside is an established IT services provider delivering Software Development, IT Resourcing, Digital Transformation, and Systems Support solutions. We are seeking a Cyber Security Engineer specialising in Penetration Testing to identify vulnerabilities across applications, APIs, and internal systems. The role focuses on proactive security testing, risk identification, and providing actionable remediation recommendations.
Key Responsibilities
- Conduct penetration testing across web
applications, APIs, and internal systems.
- Participate in scoping sessions and define
testing requirements.
- Perform security assessments, particularly
across web and API environments.
- Identify, analyse, and document vulnerabilities.
- Provide clear and actionable remediation
recommendations.
- Engage with stakeholders to discuss findings and
remediation.
- Research and improve security testing
methodologies.
- Support senior team members with complex
security assessments.
Qualifications & Experience
- 6+ years’ professional penetration testing experience.
- Strong web application and API security
experience.
- Experience with Burp Suite or similar security
testing tools.
- Strong understanding of OWASP Top 10 and common
vulnerabilities.
- Ability to read and understand a
programming/scripting language such as Python, Bash, PowerShell, Java, or PHP.
- Strong analytical, problem-solving, and
communication skills.
- Ability to manage the full penetration testing
lifecycle from scoping to reporting.
- Grade 12 / Matric required.
- Tertiary qualification or relevant IT/Cyber
Security certification. Preferred
Certifications
- OSCP – Offensive Security Certified Professional
- eWPT – eLearnSecurity Web Penetration Tester
- Burp Suite Certified Practitioner
Core Skills
- Penetration Testing
- Web Application Security
- API Security
- Burp Suite
- OWASP Top 10
- Vulnerability Assessment
- Security Testing
- Python/Bash/PowerShell
- Risk & Remediation
- Cyber Security
Similar roles
-
Lead Security Engineer, GRC
Anduril Industries Boston, Massachusetts, United States · $166K–$253K/yr
-
Information Security Engineer (R14207)
Oportun Mexico
-
Principal Application Security Specialist
Global Relay Vancouver, British Columbia, Canada · CA$125K–CA$160K/yr
-
HSM & PKI Security Engineer
CCDS Dammam, Eastern Province, Saudi Arabia
-
Security Engineer
Warp New York, New York, United States · $230K–$290K/yr
-
Product Security Engineer
YipitData (Alternative) United States · $180K/yr