See more Collapse

Senior Penetration Tester

2 months ago


New York City, United States Olo Full time

As a Senior Security/Penetration Tester, you will help us build security into our services, fortify our defenses, and protect the systems that allow people to order their food quickly and securely.


If you are someone who enjoys the challenge of penetrating several technology platforms and protocols and partnering with software engineers to ensure it never happens again, then we encourage you to apply


You can work remotely from anywhere in the U.S. or at Olo’s headquarters in NYC.


What You'll Be Doing

  • Penetration testing of web applications, native apps, and other systems.
  • Design and code reviews of new systems and features.
  • Coach and work with engineers to build security and privacy by design.
  • Provide team members with concise, well-written penetration reports.
  • Coordinate and track penetration testing and vulnerability assessment remediations.
  • Conduct Red Team exercises to evaluate and improve processes and technologies.
  • Perform application design, threat detection, incident response, patching, vulnerability remediation, secure development training, and user training.
  • Partner with Blue Team daily to manage risk as threats evolve.
  • Work with PCI and SOC auditors to ensure security policies are understood and complied with.

What We'll Expect From You

  • 5+ years of experience in Penetration Testing, Red Team or Application Security experience.
  • Experience with scripting and development languages (ie. Python, PowerShell, JavaScript, C#, or F#).
  • Proficient in common attack tools, vulnerability assessment and static inspection tools.
  • Knowledge of information technology, evolving threats, attack patterns, incident response and cyber security standards.
  • Experience using secure development frameworks (ie. OWASP Top 10, SANS Top 25 and Microsoft SDL).
  • Proficient in bypassing and tuning security technologies (ie. Anti-Malware, IDS, DLP, FIM, Firewalls, SIEM, MFA, Web Proxies and WAF).
  • Familiarity with AWS security best practices and Infrastructure-as-Code.

About Olo


Olo is the engine of hospitality powering the restaurant industry's digital transformation. As a leading open SaaS platform, we enable over 700 restaurant brands to jointly reach 85 million connected guests across approximately 80,000 locations. More than two million orders per day run on Olo's platform, allowing brands to maximize the convergence of digital and brick-and-mortar operations while raising the bar on hospitality. The result: brands do more with less and make every guest feel like a regular. With integrations to over 300 technology partners, our customers can build digital experiences with the largest and most flexible restaurant commerce ecosystem on the market. You have likely used Olo and not even known it Learn more at olo.com.


We’re remote-friendly. Since 2015, we have been evolving our culture to continue to support a more distributed workforce and now over 75% of our team works remotely across the U.S. If you're in the New York City area, you can choose to work remotely or from Olo's headquarters, on the 82nd floor of One World Trade Center.


We offer great benefits, such as 20 days of paid time off, 10 separate sick days, 11 holidays plus year-end closure, health, dental and vision coverage for yourself and your family, a 401k match, remote-office stipend, company equity, a generous parental leave plan, volunteer time off, gift matching policy, and more


Our best estimate of the compensation range for this opportunity is $114k-160k annually for a Senior I and $148k-210k annually for a Senior II, depending on the experience you bring and your location. We look forward to discussing your salary expectations and our full total rewards offerings throughout the interview process.


We encourage you to apply


We value diversity. At Olo, we know a diverse and inclusive team makes our workplace better. Don't meet every single qualification in the job description? Market data shows that women and people of color are less likely to apply to jobs unless they meet every single qualification. We are dedicated to building a diverse, inclusive, and authentic workplace, that is free from discrimination and harassment; this allows us to make better decisions and better serve the communities we’re a part of. So if you're excited about this role but your previous experience doesn't align perfectly with every qualification in the job description, we encourage you to apply anyway. You may be just the right candidate for this or other roles. All applicants receive consideration for employment. We do not discriminate on the basis of race, religion, color, national origin, gender identity, sexual orientation, pregnancy, age, marital status, veteran status, or disability status. 


California Residents: CCPA notice


We have other current jobs related to this field that you can find below


  • New Orleans, United States ExecRecruitment Full time

    Job DescriptionJob DescriptionExecRecruitment is a global professional services provider and contingency staffing company. Our main objective is to source top talent and support professional growth.One of our direct clients is actively seeking a Senior Penetration Tester to join their team.Job Title: Senior Penetration TesterLocation: RemoteDuration: 6...


  • New Orleans, United States ExecRecruitment Full time

    Job DescriptionJob DescriptionExecRecruitment is a global professional services provider and contingency staffing company. Our main objective is to source top talent and support professional growth.One of our direct clients is actively seeking a Senior Penetration Tester to join their team.Job Title: Senior Penetration TesterLocation: RemoteDuration: 6...


  • Oklahoma City, United States Quadrant Inc Full time

    Job ID: 24-02102 Senior Penetration Tester Oklahoma City, OK/Hybrid MUST: Experienced Senior Penetration Tester 10+ years of professional experience 3+ years of penetration testing experience 2 of the following certifications required: Offensive Security Certified Professional (OSCP) Offensive Security Certified Expert (OSCE) Offensive Security...


  • Oklahoma City, United States Quadrant Full time

    Senior Penetration Tester Oklahoma City, OK/Hybrid MUST: Experienced Senior Penetration Tester 10+ years of professional experience 3+ years of penetration testing experience 2 of the following certifications required: Offensive Security Certified Professional (OSCP) Offensive Security Certified Expert (OSCE) Offensive Security Wireless Professional (OSWP)...


  • New York, United States Capital One Full time

    Center 3 (19075), United States of America, McLean, VirginiaLead Penetration Tester (Remote-Eligible)Capital One Offensive Security reduces cyber risk by uncovering vulnerabilities and weaknesses in the enterprise cyber environment through coordinated ethical hacking and penetration testing scenarios. This position works closely with team members to plan,...


  • New York, United States Iceberg Cyber Security Full time

    I’m currently representing an upcoming leader in cybersecurity, providing cutting-edge solutions and testing services. Their current mission is to venture into the world of hardware and embedded testing and they are looking for a leader to join as a principal Embedded Security Tester and develop new offensive security offerings.As an Embedded Security...

  • UAT Tester

    3 weeks ago


    New York, United States Bucher & Christian Consulting, Inc. dba BCforward Full time

    UAT Tester BCforward is currently seeking a highly motivated UAT Tester for an opportunity in New York, NY! Position Title: UAT Tester Location: New York, NY Anticipated Start Date: [8/8/2024] Please note this is the target date and is subject to change. BCforward will send official notice ahead of a confirmed start date. Expected Duration: 5 Months...

  • UAT Tester

    2 weeks ago


    New York, United States BCforward Full time

    UAT TesterBCforward is currently seeking a highly motivated UAT Tester for an opportunity in New York, NY!Position Title: UAT TesterLocation: New York, NYAnticipated Start Date: [8/8/2024]Please note this is the target date and is subject to change. BCforward will send official notice ahead of a confirmed start date.Expected Duration: 5 Months ContractJob...

  • UAT Tester

    4 weeks ago


    New York, United States Veterans Sourcing Group Full time

    Job DescriptionJob DescriptionA global financial services company is seeking a UAT Tester for their office in Manhattan on a long-term temporary basis.  Job Overview·       Perform User Acceptance Testing and communicate test results in support of Liquidity Management Product Owners Responsibilities:·       Review JIRAs for User Acceptance...

  • UAT Tester

    3 weeks ago


    New York, United States Veterans Sourcing Group Full time

    Job DescriptionJob DescriptionA global financial services company is seeking a UAT Tester for their office in Manhattan on a long-term temporary basis.  Job Overview·       Perform User Acceptance Testing and communicate test results in support of Liquidity Management Product Owners Responsibilities:·       Review JIRAs for User Acceptance...

  • UAT Tester

    4 weeks ago


    New York, United States Veterans Sourcing Group Full time

    Job DescriptionJob DescriptionA global financial services company is seeking a UAT Tester for their office in Manhattan on a long-term temporary basis.  Job Overview·       Perform User Acceptance Testing and communicate test results in support of Liquidity Management Product Owners Responsibilities:·       Review JIRAs for User Acceptance...

  • UAT Tester

    3 weeks ago


    New York, United States Veterans Sourcing Group Full time

    Job DescriptionJob DescriptionA global financial services company is seeking a UAT Tester for their office in Manhattan on a long-term temporary basis.  Job Overview·       Perform User Acceptance Testing and communicate test results in support of Liquidity Management Product Owners Responsibilities:·       Review JIRAs for User Acceptance...

  • Automation Tester

    2 weeks ago


    New York, United States CapB InfoteK Full time

    We are looking for an Automation Tester for our long-term multiyear project in NY (Remote till pandemic). 1. QA resources with Captital Market/Trading domian experience 2. Hands on knowledge on Agile Process and Work Flows 3. Techno-Functional with experience in UI automation (Selenium/JAVA), Database quering, Mainframe and UNIX 4. Intermidate/Senior Level...


  • Jersey City, United States Dexian - DISYS Full time

    Job Title: Application Security TesterLocation: Jersey City, NJ (Hybrid: 3 days Onsite / 2 days REMOTE)Duration: 6 Months (CONTRACT TO HIRE)Cybersecurity Red-Team background:What exactly does this Red Team Test for?Any known cyber vulnerabilities around the world are researched and documented. This Red Team and this consultant will try and penetrate the...


  • Jersey City, United States Dexian Full time

    Job Title: Application Security Tester Location: Jersey City, NJ (Hybrid: 3 days Onsite / 2 days REMOTE) Duration: 6 Months (CONTRACT TO HIRE)Cybersecurity Red-Team background:What exactly does this Red Team Test for?Any known cyber vulnerabilities around the world are researched and documented. This Red Team and this consultant will try and penetrate the...


  • Jersey City, United States Dexian Full time

    Job Title: Application Security TesterLocation: Jersey City, NJ (Hybrid: 3 days Onsite / 2 days REMOTE)Duration: 6 Months (CONTRACT TO HIRE) Skills & Experience Needed: Experience in application security testingPreferred knowledge and/or experience of red teamingExperience in conducting red teaming engagementsExperience in manually testing applications...


  • Jersey City, United States Dexian Full time

    Job Title: Application Security TesterLocation: Jersey City, NJ (Hybrid: 3 days Onsite / 2 days REMOTE)Duration: 6 Months (CONTRACT TO HIRE) Skills & Experience Needed: Experience in application security testingPreferred knowledge and/or experience of red teamingExperience in conducting red teaming engagementsExperience in manually testing applications...


  • New York, United States Iceberg Cyber Security Full time

    I’m currently representing an upcoming leader in cybersecurity, providing cutting-edge solutions and testing services. Their current mission is to venture into the world of hardware and embedded testing and they are looking for a leader to join as a principal Embedded Security Tester and develop new offensive security offerings.As an Embedded Security...


  • New York, United States ION GROUP Full time

    We are seeking a Senior Quality Engineering Tester to join our newly created sub-practice, dedicated to serving a mature and impactful long-term client in the financial services industry. This role requires a balance of independent work and teamwork, focusing on advancing the client's agenda. The ideal candidate will possess some understanding of the...


  • New Brighton, United States TÜV SÜD America Full time

    Job DescriptionJob DescriptionPosition Summary:This position is responsible for focusing domain areas of expertise as well as a good breadth of experience across Application Penetration Testing, Thick Client Penetration Testing, Web Application Penetration Testing, Mobile Application Penetration Testing (iOS and Android), Medical IoT devices Penetration...