Skip to content

Open nowPosted 102 days ago

Penetration Tester

Workable (global search)108,016 open roles

Where
Amman, Amman Governorate, Jordan
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowPenetration TesterWorkable (global search) · Amman, Amman Governorate, Jordan
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on Workable (global search)'s own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

7.9% of postings close within 7 days. Measured by our own scanner across the market. Workable (global search) postings stay open a median of 7 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 7.9%7 days
  4. 14.9%14 days
  5. 34.0%30 days
This job: posted 102 days ago

Workable (global search) median: 7 days open

The posting

The Penetration Tester is responsible for conducting authorized security assessments across enterprise, government, and critical infrastructure environments to identify, validate, and report security vulnerabilities. As part of ZainTECH's Cybersecurity practice, the role supports the delivery of penetration testing engagements across infrastructure, web, wireless and applications.

The Penetration Tester performs hands-on offensive security testing, validates exploitability of identified vulnerabilities, and delivers clear, actionable remediation guidance to customers. The role works closely with cybersecurity consultants, advisory teams, and customer stakeholders to help strengthen security posture and reduce organizational risk across the MENA region.

Responsibilities:

Penetration Testing & Security Assessments

  • Conduct penetration testing engagements across: External and internal networks, Web applications, APIs and web services, Wireless environments, Infrastructure and supporting systems
  • Execute testing activities in accordance with approved methodologies, industry standards, and customer-defined rules of engagement
  • Identify, validate, and safely demonstrate security vulnerabilities and attack paths
  • Assess exploitability, business impact, and risk exposure associated with identified findings
  • Perform security validation and retesting activities following remediation efforts

Vulnerability Analysis & Reporting

  • Analyze identified vulnerabilities and security weaknesses to determine potential business impact
  • Develop detailed technical findings and remediation recommendations
  • Produce high-quality penetration testing reports that clearly communicate: Vulnerability details, Risk ratings, Attack scenarios, Business impact, Remediation guidance
  • Ensure findings are reproducible, technically accurate, and aligned with industry best practices

Testing Governance & Compliance

  • Conduct all testing activities within approved scope and rules of engagement
  • Ensure customer systems, data, and environments are protected throughout testing activities
  • Maintain strict confidentiality of customer information and testing results
  • Adhere to applicable regulatory, contractual, and legal requirements governing penetration testing engagements
  • Support compliance with NCSC Jordan licensing requirements and operational standards

Technical Research & Continuous Improvement

  • Stay current on: Emerging threats, Attack techniques, Vulnerability trends, Security research, Offensive security tools and methodologies
  • Contribute to the enhancement of penetration testing methodologies, tools, and processes
  • Participate in internal knowledge-sharing initiatives and technical training programs
  • Support continuous improvement activities within the Cybersecurity Advisory Services practice

Cross-Functional Collaboration

  • Collaborate with: Penetration Testing Team Leaders, Cybersecurity Consultants, Security Architects, Managed Security Services teams
  • Support remediation discussions and knowledge transfer activities where required
  • Contribute technical expertise during customer engagements and security assessments

Our Culture & Code of Conduct:

At ZainTECH, we take pride in a culture built on collaboration, innovation, and uncompromising integrity. We are looking for individuals who share these values and are committed to customer-centricity and ethical excellence. All employees are expected to uphold our Code of Conduct, which serves as a guiding framework for responsible behavior across everything we do — from how we work with each other to how we engage with clients and partners globally.

Requirements

  • Bachelor's degree or Intermediate Diploma from a recognized university or academic institution
  • Minimum 3 years of practical cybersecurity experience
  • Demonstrated participation in at least two completed penetration testing projects
  • Possession of at least one valid NCSC-approved penetration testing certification, including: Certified Ethical Hacker (CEH), CREST Registered Penetration Tester (CRT), Offensive Security Wireless Professional (OSWP), Offensive Security Certified Professional (OSCP), CompTIA PenTest+, or another NCSC-approved equivalent certification
  • Hands-on offensive skills across network, web, and application testing, with command of common tooling (Burp Suite, Nmap, Metasploit) and scripting
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against Workable (global search)'s own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on Workable (global search)'s form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    Workable (global search)'s answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.