Job Description
Key Skills Required
Master these to land this role
Want to know if you're a match for this job?
Synack’s Penetration Testing as a Service platform manages customers’ attack surfaces by discovering new assets, pentesting for critical vulnerabilities and gaining visibility into the root causes of security risks. We are committed to making the world more secure by harnessing a talented, vetted community of security researchers to deliver continuous penetration testing and vulnerability management, with actionable results. Synack's PTaaS platform has uncovered more than 71,000 exploitable vulnerabilities to date, protecting a growing list of Global 2000 customers and U.S. agencies in a FedRAMP Moderate Authorized environment.
Here’s what you'll do
- Develop the scope of penetration tests and guide researchers to effective testing
- Use your consultative communication skills to gather requirements, understand customer needs, and influence internal stakeholders
- Partner with internal stakeholders to determine, develop, and analyze the client’s assets, such as:
- Work independently with little guidance and provide technical product expertise to build the appropriate solution for the client’s needs
- Provide technical SME support to internal stakeholders and the client on their strategic goals and testing requirements.
Here’s what you'll need
- Experience with vulnerability discovery management, risk management frameworks and associated business workflows, and remediation
- Experience with scripting languages (language independent) and developing scripted solutions to problems
- A knack for explaining technical concepts to a non-technical audience
- Relevant industry certifications in cybersecurity and/or security management such as, Security+, CISSP, CISA
- Compliance and audit familiarity with PCI, ISO 27001, SOC 1, SOC 2
- Excellent time management, multi-tasking, and prioritization skills as well as the ability to manage multiple concurrent projects
- Candidates must be US citizens
- Current Top Secret clearance with SCI Eligibility
Synack is committed to embracing diversity. Our people are our strength. Each addition to our team is an opportunity to grow and diversify our ideas, experiences, and viewpoints. Synack strives to be inclusive of all people.
This position has responsibility to ensure Synack’s security and privacy posture is maintained.
How would you rate this job post?
See what other professionals think about this role.
Similar Opportunities
More Openings at Synack
Explore Top Companies in this Space
Abnormal Security
Cybersecurity
Fable Security
Cybersecurity / Human Risk Management / AI SaaS
First Help Financial
Financial Services
Censys
Cybersecurity / Attack Surface Management / Threat Intelligence / SaaS
Synack
View Company ProfileSynack (operating under synack.com) is the premier, enterprise-grade crowdsourced security testing platform, Penetration Testing as a Service (PTaaS) pioneer, and offensive security infrastructure powerhouse engineered to function as the definitive, high-velocity vulnerability discovery, continuous threat assessment, and adversarial simulation layer for global enterprises, financial institutions, and national defense agencies worldwide. Founded by former NSA cybersecurity operators Jay Kaplan and Dr. Mark Kuhr, the company completely eliminates the severe systemic friction of modern corporate digital asset protection—where organizations lose vital security momentum to static, point-in-time compliance audits, resource-constrained internal security teams, and untrusted, unvetted external bug bounty networks—by deploying a sophisticated, full-stack security testing matrix. Moving far beyond traditional, passive legacy scanning appliances or basic automated vulnerability scripts, Synack natively unifies the speed and scale of intelligent agentic AI scanning technology (SmartScan), real-time application and network surface mapping, continuous vulnerability analytics, and the elite human intelligence of the Synack Red Team (SRT)—a highly selective global community comprising over 1,500 heavily vetted ethical security researchers spanning more than 80 countries—into a single high-availability defense architecture. Protecting hundreds of billions in corporate assets across the Global 2000 alongside mission-critical infrastructure for the U.S. Department of Defense (including the historic \"Hack the Pentagon\" program), the platform monitors multi-tenant IT environments with production-hardened engineering precision. Backed by over $112M in elite institutional venture financing across multiple funding rounds from powerhouses including B Capital Group, C5 Capital, Kleiner Perkins, GV (formerly Google Ventures), Microsoft's M12, Intel Capital, and Hewlett Packard Enterprise, the organization coordinates rigorous data boundaries and strict security controls. Under the hood, its technology core integrates secure traffic routing tunnels, automated multi-vector exploitation telemetry, and intelligent reporting mechanics built to provide granular proof of exploitability and real-time patch verification without interrupting operational business velocity. What sets Synack apart is its uncompromising dedication to replacing fragile, compliance-driven checklist habits with absolute adversarial visibility, continuous human-plus-AI diagnostic assurance, and defense velocity; by bridging the gap between performance-intensive low-level technical exploitation pipelines and strategic executive risk orchestration, the enterprise remains the definitive cornerstone of modern algorithmic offensive security and global infrastructure hardened scaling.
Safety First
- Never pay for a job application.
- Do not share sensitive bank info.
- Verify the client before starting work.

