The Role
This is an entry-level role for aspiring penetration testers who have a solid foundation in IT/security and are eager to learn from an amazing group of offensive security professionals. Associate Testers work under the guidance of more experienced team members to deliver network and cloud assessments. The focus at this stage is on building core skills, learning methodologies, tools, and reporting standards of the team.
Associates utilize their system administration skills support for the team with vulnerability scanning, configuration assessments, and testing infrastructure improvements while developing the skills necessary to become a penetration tester.
Skills that align to the role:
· Understanding of IP addressing, subnetting, gateways, DNS, and DHCP
· Basic knowledge of firewalls and how to allow/deny traffic using ports and protocols (TCP/UDP)
· Understanding of vulnerability and configuration management.
· Configuring and troubleshooting VPN clients (IPSec, SSL VPN)
· Navigating cloud portals, launching virtual machines, and assigning security groups
· Understanding basic IAM concepts like users, roles, and policies
· Configuring and troubleshooting internal and external DNS zones
· Managing S3 buckets (AWS) or Blob Storage (Azure)
· Understanding access permissions and basic data lifecycle policies
· Using cloud-native tools (e.g., CloudWatch, Azure Monitor) to track uptime, performance, and security events
· Basic Scripting for Automation
Typical Experience: An Associate level pen tester typically has 1–3 years of general IT and/or cyber security experience.
Technical Skills: Practical knowledge of networking fundamentals and configuration and vulnerability management. Able to run port scans and network mapping (using tools like Nmap) and identify simple misconfigurations. Familiar with fundamental protocols (TCP/IP, DNS, HTTP, etc.) and aware of common network attack vectors (e.g. open ports, default credentials).
Soft Skills: This position is eager to learn and receptive to feedback. Capable of documenting findings and drafting portions of reports, though these will be reviewed by seniors. Beginning to develop communication skills – for example, can explain a discovered vulnerability clearly to the team and is learning to tailor explanations to non-technical audiences. Demonstrates professionalism, ethical conduct, and knows when to ask questions or seek help. Teamwork is important; junior members are expected to collaborate and take direction well.
Certifications (Optional): While hands-on ability is more important than certificates, many in this role work toward certifications to validate their skills. While certifications can bolster an associate’s credibility, the ability to demonstrate practical skills is the primary requirement.
About Evolve Security
Evolve Security is a next generation cybersecurity services firm headquartered in Chicago, IL powered by the Darwin Attack® Platform. We are dedicated to improving our client’s security posture by providing Attack Surface Management (ASM), Vulnerability Management as a Service (VMaaS), Continuous Penetration Testing (CPT) and cyber advisory.
In addition to our professional cybersecurity service offerings, Evolve Security offers a cybersecurity bootcamp, “Evolve Academy”, currently ranked the #1 cybersecurity bootcamp in the world. The Cybersecurity Bootcamp in Chicago provides immersive training, giving students the concrete and practical skills, needed on the job. Students gain real work experience through live security assessment work that they perform on not-for-profit companies.
We are passionate about directly improving our customers’ security posture, and we proudly train others to help meet the need for qualified cybersecurity talent.
Why Join Evolve Security?
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
Lead and execute the Third-Party Security strategy at American Express to safeguard the company’s technology assets and ensure regulatory compliance.
Drive innovative network security strategies at American Express as a Staff Cybersecurity leader focused on data protection and enterprise-wide security architecture.
A strategic contract role for an experienced Information Risk Analyst in AI, focused on risk management and security of generative AI technologies, offered remotely in Oregon.
Lead strategic architecture initiatives for Digital Workplace technologies at American Express, focusing on innovative solutions and enterprise-wide impact.
WOONGJIN, Inc. is looking for an experienced Database Administrator to lead and manage mission-critical SQL Server, Oracle, and PostgreSQL databases in a 6-month contract position.
Provide technical support and customer service as an IT Support Specialist at Penn State Berks, supporting diverse campus users with hardware, software, and technology needs.
Lead innovative network security data protection strategies as a Staff Cybersecurity expert at American Express, driving architecture transformation and team leadership.
Lead Tarro's global IT Engineering team and manage corporate technology solutions that empower small businesses to thrive.
Join American Express as a Cybersecurity Engineer III to architect and enhance IAM solutions, ensuring robust security and seamless user access.
Lead the strategic design and implementation of technology and business solutions to empower fundraising and alumni engagement at Emory University.
Support USPS infrastructure as a skilled Windows Administrator for GovCIO, focusing on Windows server management and network technology.
Experienced Senior Oracle PL/SQL Developer needed at Presbyterian Healthcare to design, develop, and support advanced healthcare IT applications.
An enriching summer internship at Truist focused on technology and innovation, designed for 2025 Truist interns to build technical skills and leadership experience in a financial services environment.
Smartvue delivers cutting edge video surveillance technology at a great value. Featuring award-winning software, Smartvue solutions are highly intuitive, scalable and reliable. Installing compatible IP cameras with Smartvue NVRs is as simple as pl...
1 jobs