This job is no longer available
This job expired on 06/09/2026. It no longer accepts applications.
Penetration Tester (Mid‑Level)
Capitec · Stellenbosch
Job description
About the role
We are building one of South Africa's most advanced cyber security teams and need a mid‑level Penetration Tester who thinks like an attacker and acts like an engineer. You will protect real people’s money and data by finding vulnerabilities before they are exploited.
Key responsibilities
- Conduct manual and automated penetration tests on web applications, APIs, internal services and cloud environments.
- Use tools such as Burp Suite Professional, Postman and Kali Linux to perform end‑to‑end assessments.
- Produce clear risk reports and collaborate with product teams and risk officers to remediate findings.
- Retest after fixes and ensure sign‑off.
- Apply OWASP, NIST and other frameworks to guide methodology.
- Support the Blue Team during incidents and participate in purple‑team exercises.
Required profile
- 3–5 years of hands‑on penetration testing experience.
- Strong knowledge of OWASP Top 10 for web and API security.
- Ability to explain technical risks to non‑technical stakeholders.
- Grade 12 education with relevant IT certifications; formal degree not required.
Required skills
- Burp Suite Professional
- Postman
- Kali Linux
- Python, Bash or PowerShell scripting
- OWASP and NIST frameworks
- Cloud platforms (AWS, Azure, GCP) – optional but beneficial
- MITRE ATT&CK knowledge – optional
Questions fréquentes
Why are you reporting this job?
Explore further
Salaries, guides and searches in South Africa.
Salaries by job title
Boost your chances
Upload your CV — we will match you with relevant openings.
Analyzing your CV...
Capitec
Stellenbosch