What You’ll Do
- Perform security assessments across various platforms and technologies
- Simulate sophisticated cyberattacks to assess and improve client defenses
- Advise clients on technical security and compliance best practices
- Manage your own testing priorities and deliver high-quality work on time
- Collaborate with internal teams - PMs, QA, sales, and other consultants to deliver exceptional client service
- Create and maintain testing methodologies, documentation, and processes
- Write detailed, high-quality reports for both technical and executive stakeholders
- Scope and lead penetration testing engagements from start to finish
- Help resolve escalations during active assessments
- Mentor junior team members and contribute to a positive team environment
- Support the team’s success by contributing to KPIs, innovation, and knowledge sharing
What You’ll Bring
- Bachelor's degree (four-year college or university) or equivalent combination of education and work experience
- 3+ years of hands-on experience in network and/or application penetration testing
- Proficiency with scripting languages such as Python, PowerShell, Shell, or Ruby
- Familiarity with security frameworks (e.g., PCI, HIPAA, FedRAMP, HITRUST, or FISMA)
- 1–3 years of experience in IT security audit and/or compliance roles
- Strong technical foundation in networks, servers, workstations, and applications
- Experience working in a consulting or client-facing role (minimum 3 years)
- Strong communication and presentation skills - able to interface with both technical and non-technical stakeholders
- Willingness to travel occasionally (up to 10%)
- Compliance-Driven Penetration Testing (e.g., PCI, FedRAMP)
- Cloud Penetration Testing (e.g., AWS, Azure, GCP)
- Network/Active Directory Penetration Testing
- Application (Web/API/Mobile/Thick) Penetration Testing
- Secure Code Review
- Hardware or IoT Testing
- Container Security Testing
- AI or ML System Testing
- Proven ability to manage time and juggle multiple tasks under tight deadlines
- Strong consulting presence - can lead client meetings, kickoff calls, and present findings clearly
- Excellent report writing skills - capable of drafting both technical detail and executive summaries
- Continuous learning mindset - actively pursuing certifications and keeping up with threat landscapes
Coalfire Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Coalfire and has not been reviewed or approved by Coalfire.
-
Leave & Time Off Breadth — Flexible paid time off and paid parental leave are prominently offered, with remote/WFH support enabling time away when workload allows.
-
Healthcare Strength — Comprehensive medical, dental, vision, wellness resources, and an EAP are part of the core package. Carrier coverage and plan options are regularly highlighted across employer materials.
-
Retirement Support — A company‑matched 401(k) is included alongside other financial and development perks. This retirement benefit is consistently featured across benefits overviews.
Coalfire Insights
Similar Jobs
What We Do
Coalfire is the cybersecurity advisor that helps private and public sector organizations avert threats, close gaps, and effectively manage risk. By providing independent and tailored advice, assessments, technical testing, and cyber engineering services, we help clients develop scalable programs that improve their security posture, achieve their business objectives, and fuel their continued success. Coalfire has been a cybersecurity thought leader for more than 20 years and has offices throughout the United States and Europe.








