This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Making a meaningful difference with mission-critical software that empowers communities to thrive. ReadyTech is more than just a one-trick pony playing in one market with one product, or one customer. We re-imagine, design, develop and deliver technology to solve our customer’s diverse problems – supporting multiple businesses across a variety of markets to be ready for anything.
Job Responsibility:
Conduct independent penetration testing across applications, networks, APIs, and cloud environments using methodologies consistent with industry-recognised certifications (e.g., CEH, OSCP, OSWE, GWAPT)
Apply ethical hacking techniques, exploit development skills, and adversarial thinking that align with the capabilities validated through external penetration-testing qualifications
Perform advanced manual testing to identify complex vulnerabilities and business logic flaws, leveraging skills in reconnaissance, enumeration, exploitation, privilege escalation, and post exploitation
Review system architecture, configurations, and—where required—source code, applying secure coding and vulnerability-analysis knowledge aligned with CEH/OSCP/OSWE-level standards
Provide high-quality remediation guidance and technical uplift to engineering, DevOps, and security teams, informed by best practices from recognised security certification bodies
Maintain detailed testing documentation, methodologies, and evidence in a manner consistent with professional penetration-testing standards and compliance expectations (IRAP, SOC 2, ISO 27001)
Contribute to developing and maturing Ready Tech’s internal penetration-testing frameworks, adopting techniques and methodologies from leading certification programs and industry bodies (e.g., OWASP, SANS)
Continuously update skillsets by tracking emerging vulnerabilities, exploit techniques, and threat actor behaviour’s, maintaining competency equivalent to CEH/OSCP-level professionals
Requirements:
Conducting penetration tests using industry-aligned techniques and toolsets (e.g., Burp Suite, Nmap, Metasploit, OWASP ZAP)
Manual vulnerability discovery, exploit validation, and risk assessment
Identifying and analysing security weaknesses across web applications, APIs, cloud platforms, and infrastructure
Communicating technical findings clearly to both technical and non-technical audiences
Writing structured, high-quality reports and documentation
Problem-solving, critical thinking, and applying an adversarial mindset during testing
Collaborating effectively with engineering, DevOps, and cybersecurity teams
Common vulnerabilities and exploitation techniques (e.g., OWASP Top 10, SANS Top 25)
Secure development practices and common coding flaws (e.g., injection, access control issues)
Network and application security fundamentals, including authentication, encryption, and cloud security concepts
Ethical hacking frameworks and methodologies aligned with qualifications such as CEH, OSCP, OSWE, GWAPT, or similar
Compliance frameworks relevant to the organisation such as IRAP, SOC 2, and ISO 27001, and how penetration testing supports these
Threat landscapes, attacker behaviours, and modern exploitation tooling
Performing penetration tests or structured security assessments (professional experience or lab-based training acceptable for junior/mid-level)
Using recognised penetration-testing tools and scripting languages (e.g., Python, Bash, PowerShell) to aid testing activities
Working with cloud environments (AWS/Azure/On Prem) and understanding common misconfigurations
Applying hacking and secure-testing practice in line with certification standards
Preparing penetration test reports and remediation guidance
Participating in capture-the-flag events, home labs, or self-directed security research (For early-career/junior candidates)
Hold a CEH, OSCP, OSWE, GWAPT, or similar qualification
What we offer:
A day off for your birthday
Additional 4 days of leave each year
ReadyTecher Awards each quarter with the chance to win flights and accommodation to Hamilton Island
Hybrid work, with in-house baristas in Australia via the Ready Beans team
Access to Sonder- a technology-driven platform supported by safety, medical and mental health experts - available 24/7
Paid parental leave
Additional paid leave for miscarriage, endometriosis and menopause