HimalayasHimalayas logo
Bishop FoxBF

Cloud Penetration Tester

Bishop Fox is a leading authority in offensive security, providing solutions like continuous penetration testing, red teaming, and attack surface management to protect organizations from cyber threats.

Bishop Fox

Employee count: 201-500

Mexico only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

At Bishop Fox, security isn't just a job - it's our passion. As leaders in continuous offensive security and penetration testing, we deliver world-class customer experiences. Trusted by over a quarter of the Fortune 100, half of the Fortune 10, and top global media companies, we help safeguard digital landscapes. Our Cosmos platform, honored as Best Emerging Technology by SC Media, exemplifies our commitment to innovation.

Joining Bishop Fox means collaborating with a curious and dedicated team. You'll tackle complex challenges for some of the world's most recognized organizations, securing their networks against real-world threats. With nearly 20 years of industry contributions - including 16 open-source tools and 50 security advisories published in the past five years - we're committed to making the digital world safer.

Given our exceptional growth, we are expanding and hiring a Pen Tester to join us on this exciting journey. We’re looking for a talented, experienced professional hacker to help us secure some of the world’s most complex software and sophisticated technologies. You’ll be working alongside our US and internationally-based teams supporting clients across multiple industries.                         

                        

Who Are You and What You’ll Do

You’re a cybersecurity consultant with a strong offensive security mindset and a passion for understanding how modern applications, cloud platforms, APIs, and emerging technologies operate at a deep technical level. You enjoy uncovering security weaknesses, thinking creatively about attack paths, and helping organizations solve complex security challenges through practical, risk-focused assessments.

At Bishop Fox, you’ll work on a wide variety of security engagements including Cloud Security Assessments, Mobile Application Security Testing, Hybrid Application Assessments (HAA), and AI/LLM Security Assessments. You’ll evaluate modern applications and distributed systems across cloud-native, mobile, backend, and AI-enabled environments.

Your responsibilities will include performing hands-on security testing, analyzing application behavior, reviewing source code, identifying realistic exploitation scenarios, and validating security controls across modern architectures. You’ll work closely with clients and internal teams to deliver high-quality technical assessments and actionable remediation guidance.

As a consultant, you’ll contribute throughout the full engagement lifecycle from scoping and test planning to execution, reporting, and client presentations. Success in this role requires strong technical depth, structured testing methodologies, effective communication skills, and the ability to adapt quickly to new technologies and environments.

Your Experience

  • 4+ years of experience in application security assessments, penetration testing, or offensive security engagements
  • Strong understanding of application security fundamentals, modern attack techniques, and common vulnerabilities affecting web applications, APIs, mobile applications, and cloud-native environments
  • Hands-on experience testing REST APIs, including authentication/authorization flaws, IDORs, injection vulnerabilities, session management issues, and business logic flaws
  • Strength with AWS services and cloud security concepts, including IAM, STS, S3, Lambda, API Gateway, CloudTrail, CloudWatch, and secure communication patterns such as SigV4
  • Solid understanding of networking and web fundamentals, including HTTP/HTTPS, TCP/IP, DNS, API communication flows, cookies, headers, and related concepts
  • Experience reviewing source code for security issues in Java, C#, and Python applications
  • Knowledge of secure coding principles and common risks such as SSRF, insecure deserialization, injection vulnerabilities, sensitive data exposure, and insecure cloud integrations
  • Understanding of SDLC, CI/CD pipelines, and secure development practices
  • Experience using security assessment and code review tools such as Burp Suite, Semgrep, Git, AWS CLI, and API testing/debugging tools
  • Comfortable working across Linux, Windows, and macOS environments
  • Experience or strong interest in AI/LLM security, including prompt injection, RAG risks, insecure integrations, excessive permissions, and the OWASP Top 10 for LLM Applications
  • Strong written and verbal communication skills, with the ability to deliver clear, actionable findings and communicate technical risks to both technical and executive stakeholders
  • Experience following structured testing methodologies, documentation standards, and validation/retesting workflows
  • Strong collaboration and interpersonal skills when working with security, engineering, and client teams
  • Ability to manage multiple concurrent engagements while maintaining high-quality deliverables and attention to detail
  • Curious, adaptable, and professional mindset with a passion for continuous learning and emerging security trends

Nice to Have

  • Exposure to hardware or embedded device security testing
  • Familiarity with cloud-native and serverless architectures
  • Consulting or client-facing experience
  • Relevant security certifications or hands-on research contributions

Why Bishop Fox

At Bishop Fox, we're driven by a simple mission: deliver exceptional quality to our clients, foster a vibrant and fulfilling environment for our team, and champion excellence within our industry. Our core values, which we live by every day, are:

  • Be Excellent to Each Other
  • Do the Right Thing
  • Do What You’ll Say You’ll Do
  • Get Better Together
  • Give a Sh*t

At Bishop Fox, we're committed to providing benefits that support your well-being and professional growth. Here's a glimpse of what we offer:

  • Generous Time Off and Company-Wide Holidays
  • Team Events and International Travel Opportunities
  • Work From Home Support
  • Training Budget
  • Saving Fund
  • Food Coupons
  • Health and Wellbeing programs

This position is not eligible for visa sponsorship. Applicants must be authorized to work in Mexico for the duration of employment without sponsorship.

Bishop Fox is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, including sexual orientation and gender identity, national origin, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law. All new hires must pass a background check as a condition of employment.

Interested? Apply today! 

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Experience

4 years minimum

Location requirements

Hiring timezones

Mexico +/- 0 hours

About Bishop Fox

Learn more about Bishop Fox and their company culture.

View company profile

At Bishop Fox, our core mission is to create a safer digital world. We are recognized as the leading authority in offensive security, a reputation built over nearly two decades of partnering with some of the world's most influential organizations. Our culture is one of relentless curiosity and a commitment to staying ahead of the ever-evolving threat landscape. We believe that the best defense is a proactive offense. This philosophy drives our approach to security, focusing on identifying and neutralizing vulnerabilities before they can be exploited by malicious actors. Our team, comprised of some of the brightest minds in cybersecurity, is passionate about what they do. It's not just a job for us; it's a dedication to the common good. This commitment is reflected in our extensive contributions to the security community, including the development of numerous open-source tools and the publication of groundbreaking research and security advisories.

Our values are an integral part of our identity and guide our interactions with clients and each other. We believe in being 'Excellent to Each Other,' fostering a respectful and supportive environment. 'Do What You Say You Will' underscores our commitment to quality and accountability. 'Do the Right Thing' is paramount, as clients entrust us with their most sensitive information, and we never compromise their interests. 'Get Better Together' reflects our belief in continuous improvement and challenging the status quo. Finally, 'Give a Shit' encapsulates our genuine care for our work, our clients, and our community. We've cultivated an environment where passionate hackers can direct their skills toward making a positive impact. This has allowed us to work with over 25% of the Fortune 100, eight of the top ten global technology companies, and many other organizations to significantly enhance their security posture. Our innovative Cosmos platform and comprehensive suite of services, ranging from continuous penetration testing and red teaming to attack surface management and security assessments, are consistently recognized for their excellence.

Employee benefits

Learn about the employee benefits and perks provided at Bishop Fox.

View benefits

Work From Home Policy

Supports remote work.

401(k) plans

Retirement savings plan.

Maternity and paternity leave

Paid leave for new parents.

Company Social Outings

Organizes company social events.

View Bishop Fox's employee benefits
Claim this profileBishop Fox logoBF

Bishop Fox

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

5 remote jobs at Bishop Fox

Explore the variety of open remote roles at Bishop Fox, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Bishop Fox

Remote companies like Bishop Fox

Find your next opportunity by exploring profiles of companies that are similar to Bishop Fox. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan