Ethical Hacker/Pentester Mid Level (2+ Years) - LATAM
Insight Assurance
Tailor my CV for this job, freeView job and applyYour CV rewritten for this role, from your real experience. Sign in with Google, nothing to install.
Got this interview? Our apps help you get the job.
Skills named in this job
Read from the description itself, not inferred.
This role on the market
5 open pentester roles across 4 companies are on ApplySarthi right now.
- Junior PentesterJobgether
- Red Team PenTesterNxp
- Web3 VAPT / Security PentesterQuillAudits | Web3 Security
What pentester roles keep asking for: Penetration testing (80%), LLMs (40%), AWS (20%), Android (20%), Azure (20%), GCP (20%), Linux (20%), Python (20%) — counted across their open postings here.
AWS jobs · Azure jobs · GCP jobs · Linux jobs
Insight Assurance has 6 open roles listed here.
- Director of Partnerships - US Remote
- PCI Compliance Analyst - Remote
- Strategic Account Executive - US Remote
- Senior SOC2 Auditor - Japanese Speaker
- GLOBAL PCI QSA Sr. Consultant - Japanese speaker
Counted across 14 company job boards, updated as roles open and close.
Preparing for this interview
Interviews for pentester roles keep coming back to Penetration testing, LLMs, AWS, Android. Practise those questions before you sit with Insight Assurance.
Questions you are likely to be asked
- Why do you want to join Insight Assurance?
- What is your experience with Penetration testing? Tell me one thing you learned the hard way.
- Where do you want to be in three years?
- What is a weakness you are working on, and how?
- Tell me about yourself, and why this role is the right next step.
Prep Sarthi gives you a free mock interview: an AI interviewer asks you questions like these out loud, from your own CV and this job, and shows your score and your weakest answer.
Practise the Ethical Hacker/Pentester Mid Level (2+ Years) - LATAM at Insight Assurance interview free →
Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance. Founded by former Big 4 (EY) professionals, we deliver next-generation audit services across SOC 2, ISO 27001, PCI DSS (QSA), HITRUST, CMMC (C3PAO), and FedRAMP (3PAO) frameworks.
We’re not your traditional audit firm — we’re tech-enabled, leveraging compliance automation and advanced collaboration tools to make audits faster, smarter, and more impactful for our clients.
Recognized on the Inc. 5000 and Fast 50 lists, Insight Assurance is one of the fastest-growing global audit firms, with 170+ professionals supporting nearly 2,000 clients across the Americas, EMEA, and APAC.
About the Role
We are seeking a skilled and experienced Red Team Operator to join our cybersecurity team. The ideal candidate will be responsible for simulating advanced persistent threats (APTs), conducting adversarial assessments, and helping strengthen our organization's security posture. You will work closely with cross-functional teams, including blue teams, to identify vulnerabilities, test incident response mechanisms, and provide actionable insights to mitigate risks.
Key Responsibilities
- Adversary Simulation:
- Plan and execute realistic attack scenarios simulating the tactics, techniques, and procedures (TTPs) of sophisticated threat actors.
- Design and deliver red team engagements, including physical, social engineering, and cyberattack components.
- Technical Assessments:
- Perform penetration testing of networks, applications, and systems using tools such as Burp Suite, Metasploit, Cobalt Strike, and custom scripts.
- Bypass defensive controls, including IDS/IPS, firewalls, EDR solutions, and WAFs.
- Exploit vulnerabilities to achieve and escalate privilege levels while avoiding detection.
- Reporting and Remediation:
- Prepare detailed reports documenting findings, attack vectors, and recommended mitigation.
- Present results to both technical and non-technical stakeholders.
- Collaboration and Knowledge Sharing:
- Collaborate with blue teams to refine incident detection and response capabilities.
- Guide on improving threat hunting and monitoring strategies.
- Continuous Improvement:
- Stay updated on the latest attack techniques, vulnerabilities, and defensive countermeasures.
- Research and develop new tools, exploits, and methodologies to enhance the red team’s capabilities.
Qualifications and Experience
- Experience: Minimum 2 years in offensive security, penetration testing, or red team operations.
- Technical Expertise:
- Proficient in scripting and automation using Python, PowerShell, Bash, or similar.
- Strong knowledge of Windows and Linux systems, Active Directory, and cloud environments (AWS, Azure, GCP).
- Familiarity with modern TTPs (e.g., MITRE ATT&CK framework).
- Certifications (Preferred):
- Offensive Security Certified Professional (OSCP), Offensive Security Certified Expert (OSCE), GIAC Penetration Tester (GPEN), or other relevant certifications.
- Tools: Hands-on experience with Cobalt Strike, Metasploit, BloodHound, Impacket, Burp Suite, and other offensive security tools.
Soft Skills
- Strong analytical and problem-solving skills.
- Ability to work independently and within a team.
- Excellent communication skills, both verbal and written.
- Critical thinking and creativity in approach to security challenges.
Privacy Notice CCPA:
- Insight Assurance shares your personal data/information with Greenhouse recruiting because this is the tool we use for the recruitment process.
- Insight Assurance does not sell personal data/information under any circumstances.
- You may exercise your rights under personal data protection legislation by reaching out to us via: HR@insightassurance.com or submit a request via mail at 400 N Tampa St. 15th Floor Suite 122, Tampa, FL 33602
Privacy Notice GDPR:
This notice informs you about the categories of Personal Data/ Information and the Purpose and Scope of Processing Activities to be undertaken by Insight Assurance (we, us, our), under its job application and recruitment process.
We resort to Greenhouse.com as the platform that supports our recruitment process, and therefore your Personal Data/ Information will be Processed on this tool (hosted, shared with, cross-referenced, accessed by our team); we have in place contractual terms and the commitment of Greenhouse.com that ensures the Security and Confidentiality plus Purpose limitation with regards to the Processing of your Personal Data.
When you reply to one of your job postings, you voluntarily and freely submit your Personal Data to us; this, allied with the fact that the Processing by us (and over Greenhouse.com) of that Personal Data has the sole Purpose of validating your application and proceeding with the inherent scrutiny and decision, allows us to argue having Legitimate Interest as the applicable Legal Basis to undertake the Processing of your Personal Data under this scope.
We are a U.S. based company, hence some or all Personal Data pertaining to you will be hosted in the U.S.
The categories of Personal Data under Processing consist of:
- Identification
- Contact
- Education and Professional
- Interview performance
- Evaluation
You may exercise several Rights as determined under applicable Personal Data Protection legislation, in short:
- Right of Access – meaning getting information about the Personal Data under Processing by us, except for the information you already know;
- Right of Erasure – you may ask for us to erase all Personal Data pertaining to you under Processing; this may imply you being excluded from the recruitment process, for without information we cannot proceed with it;
- Right of Opposition or Restriction of Processing – you may ask us to stop some Processing or restrict the Processing of some Personal Data, this may imply you being excluded from the recruitment process, at our sole discretion also for without information we cannot proceed with it;
- Rectification – you can rectify your Personal Data at anytime
Match this job to your CV
ApplySarthi scores your CV against this role, shows the skills you are missing, and writes a tailored version for the application.
Check my match →Similar open roles
- GLOBAL PCI QSA Sr. Consultant - Japanese speakerInsight Assurance
- Senior SOC2 Auditor - Japanese SpeakerInsight Assurance
- PCI Compliance Analyst - RemoteInsight Assurance
- Strategic Account Executive - US RemoteInsight Assurance
- Director of Partnerships - US Remote Insight Assurance
Need answers during your interview? Try Live Sarthi.
Live Sarthi, an Interview Sarthi app, shows answer suggestions during the call.
- Hidden from supported screen sharingThe overlay stays out of supported Windows screen captures.
- Answers start in about 1.5 secondsResponse time varies with your connection and model.
- From your own CVYour projects and your experience, not a generic script.
- 30 minutes freeThen ₹99 for a 2-day pass with unlimited calls — you pay for the days you are interviewing, not a subscription.
A Windows app, from the same team as ApplySarthi.
Listed on greenhouse · posted 2026-08-11. ApplySarthi collects openings and links to application pages; the role is advertised by Insight Assurance, not by us.