Skip to sign up

Job matched to your search

Junior Penetration Tester - Immediate Joiner

iConnect IT Business Solutions DMCC · Dubai

Dubai · On-siteInternshipPosted Sep 9, 2026

Free · Join 5,000+ job seekers using Qarera

How well do you match this role?

Tap the skills you already have — then see your real match score, what’s missing, and your resume fixed for this job.

↑ tap the skills you have
Loading sign-in…
Free · no credit card · 30 seconds

Job description

Immediate joiner required.

We’re looking for a Junior Penetration Tester to join our security testing practice. You’ll support manual-first penetration testing engagements on web, mobile, infrastructure and cloud — both internally and for clients across the UAE — working alongside senior testers within formal testing governance.

Responsibilities

  • Support manual and tool-assisted penetration tests across web applications, web services, mobile apps (iOS/Android) and infrastructure, under the guidance of a senior tester.
  • Operate within approved rules-of-engagement / exploit-authorisation processes before any exploitation activity.
  • Escalate critical findings (RCE, SQLi, and similar) immediately, outside the standard reporting cycle.
  • Draft per-finding detail for reports: severity, affected assets, root cause, evidence, business impact, recommendations and mitigations.
  • Maintain vulnerability registers and log findings into vulnerability management platforms.
  • Retest remediated vulnerabilities and support closure reporting.
  • Reproduce and explain reported vulnerabilities on request.
  • QA your own work to eliminate false positives before it reaches a senior reviewer.

Requirements

  • 1+ year of hands-on penetration testing experience — professional, internship, or substantial lab and CTF work.
  • Practical skills in at least one of: web/API testing, mobile (iOS/Android), or network/infrastructure testing.
  • Comfortable with manual testing plus tooling such as Burp Suite, Acunetix and Nmap.
  • Good spoken and written English; able to explain a finding clearly to a technical audience.
  • Willing to work under formal engagement governance — signed-off scopes, exploit authorisation, escalation protocols.
  • Based in the UAE and available to join immediately.
  • Able to travel to client sites across the UAE as required.

Qualifications

  • CEH, Security+, OSCP or an equivalent recognised security certification is an advantage, not a requirement.
  • Bachelor’s degree in Computer Science, Information Security, or a related field — or equivalent practical experience.
  • Clean background suitable for formal verification (identity, right to work, education, employment history).

Don’t just read the job — see if you’ll get it.

Get your match score, a resume tailored to this exact role, and jobs like it — free.

Check my fit for this job
Loading sign-in…
Apply →

Hiring for a role like this? Join the employer waitlist.