Job Description
Insight Global is seeking a highly experienced penetration testing expert with 10+ years in offensive security and secure software delivery. This senior role is designed for a “pen test SME” who thrives on executing complex, manual, full-kill-chain assessments and driving meaningful improvements across engineering, operations, and leadership. Day-to-day, this individual will lead full-scope penetration tests across networks, cloud, wireless, and applications, collaborate with defenders in purple-team engagements, and mentor developers on secure coding practices. They will architect secure delivery pipelines, automate tooling, and serve as a trusted advisor to executives and technical teams alike—materially elevating the organization’s security posture.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Required Skills & Experience
10+ years of hands-on penetration testing and secure software delivery experience
Deep expertise in manual exploitation, chaining vulnerabilities, and full-kill-chain assessments
Strong application security knowledge aligned with OWASP Top 10 and modern secure coding practices
Proven experience with internal/external network, cloud (Google Workspace/Google Cloud), wireless, and web application testing
Comfort operating in red/purple-team engagements, collaborating with blue/IR teams
Ability to mentor developers and integrate secure coding practices into SDLC and CI/CD workflows
Strong scripting skills (Python, PowerShell, Bash) for automation and custom exploit development
Experience architecting secure CI/CD pipelines with SAST, DAST, SCA, IaC, container security, and secrets scanning
Nice to Have Skills & Experience
Active participation in labs, CTFs, or research to stay sharp on emerging attack surfaces
Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.