Penetration Tester

Job Description

We are seeking a Penetration Tester to automate our regular compliance checks and discover potential vulnerabilities in our architecture.


Role Highlights

  • Join an Australian company which develops next-generation cloud technology.
  • Opportunity to work with like-minded technical professionals.
  • Show us your skills and learn new ones


About Vault Cloud

Vault is one of the first cloud service providers globally to be certified by ASD at a ‘protected’ level. Vault is rapidly growing and is dedicated to providing sovereign, agile and hyper-scale cloud services to the Government and its partners.


The Role

The purpose of this role is to be part of a team which ensures our cloud complies with government security requirements at all times. You will be actively looking for potential security issues across all systems and analyse any security incidents, providing a compliant path to implementing a solution to the other teams. Automation is your key focus, and you continuously monitor and improve the automated tasks.


Job Tasks and Responsibilities

The duties and tasks are varied and complex needing independent judgement. Below you will find a list of some of the key duties and responsibilities:

  • Use the monitoring data from Cloud Operations team to analyse potential breaches, and working with other teams on solutions.
  • Proactively shares knowledge through technical sharing and training, solution contribution and self service participation.
  • Respond to and resolve emergent security and compliance problems; contributes to building tools and automation to prevent problem recurrence.
  • Continuously go through the current ISM controls and ensure they are correctly applied everywhere.
  • Automate regular tests as much as possible
  • Conduct regular internal security audits.
  • Working on the techniques, principles and theories pertaining to providing security and protection to IT resources, including knowledge of policies, guidelines and procedures involved with the protection of hardware, software and services.
  • Productize pen-testing and turn it into an aaS offering


Skills and Experience

Below is a list of the experience, skills and qualifications that will be required for you to be successful in this role.

  • Minimum of 3 years past experience in a similar role.
  • Ability to read and write code, ideally python, bash and PowerShell.
  • Willingness to learn and bring forth ideas and work in a collaborative environment.
  • Familiarity with federal data classification standards and their associated implications.
  • Automating job tasks as required.
  • Strong stakeholder management abilities.
  • Ability to multitask and priorities different projects.  
  • Ability to think ahead and make decision-based on facts.
  • High level of attention to detail and exceptional organisational skills.
  • A process-driven personality and high-performance standards.
  • Exceptional communication skills both written and verbal.
  • The ability to communicate with and influence all levels of stakeholders.
  • A demonstrated track record of meeting critical task milestones.
Desirable Skills:
  • Skills to actively check for security issues through code review, vulnerability testing and manual probing of Linux and Windows systems and network equipment.
  • Knowledge with IRAP assessment process.
  • Knowledge on Fortigate (FortiOS) Firewall.
  • Understanding of Windows CIS Compliance Audit Policies.


Other skills include:

  • Exceptional communication skills both written and verbal.
  • Ability to think strategically and execute quality output.
  • Proven success in contributing to a team-oriented environment, and ability to work as part of a team.
  • Strong problem solving and troubleshooting skills.
  • Experience researching, developing and applying new methodologies and technologies.


How To Apply

If you are looking for an opportunity to add value to a fast growing Australian company, please submit your resume along with your cover letter (no more than two pages) to 

Apply Now