Product Penetration Tester

Posted:
1/12/2026, 1:21:04 AM

Location(s):
Baja California, Mexico ⋅ Tijuana, Baja California, Mexico

Experience Level(s):
Junior ⋅ Mid Level ⋅ Senior

Field(s):
IT & Security ⋅ Software Engineering

Work Schedule

Standard (Mon-Fri)

Environmental Conditions

Office

Job Description

When you join us at Thermo Fisher Scientific, you’ll be part of an inquisitive team that shares your passion for exploration and discovery. With revenues of more than $40 billion and the largest investment in R&D in the industry, we give our people the resources and chances to create significant contributions to the world.

Discover Impactful Work:

As a Product Security Researcher, you’ll be part of a collaborative team focused on identifying and reducing product risk across Thermo Fisher Scientific’s diverse portfolio. You’ll work hands-on with software, hardware, and cloud environments to uncover security issues and support secure product development. This role offers the opportunity to grow deep technical expertise while contributing to high-impact testing and research that improves the security of the technologies shaping science and healthcare.

A day in the Life:

  • Independently conduct remediation validation, ensuring reported vulnerabilities have been effectively resolved and identifying any residual risks.
  • Perform limited scope penetration tests across a range of technologies including APIs, cloud workloads, web apps, and software components.
  • Collaborate with senior researchers on large-scale, open-box security assessments targeting complex systems and emerging technologies.

Keys to Success:

The Product Security Researcher will be successful by combining curiosity, technical rigor, and a drive for continuous learning. You'll grow your skills by testing real-world systems, collaborating with experienced researchers, and exploring domains like AI/ML, embedded, or cloud security. Strong communication, initiative, and a passion for solving complex security problems will enable you to deliver clear, actionable insights that help product teams reduce risk.

Education

  • Bachelor's Degree in cybersecurity, computer science, engineering or other relevant field. Equivalent work experience also accepted.

Experience

  • Experience performing hands-on security testing or vulnerability validation in real or lab environments.
  • Exposure to testing techniques for web, API, cloud, or software systems through coursework, internships, or professional roles.
  • Demonstrated ability to document technical findings clearly and effectively for both internal and external audiences.
  • Solid foundational understanding of core security principles, common vulnerability classes, and how security fits into the broader technology and product development lifecycle.

Knowledge, Skills, Abilities

  • Understanding of common vulnerabilities (e.g., OWASP Top 10) and familiarity with tools like Burp Suite, Nmap, or custom scripts.
  • Eagerness to learn new technologies, analyze attack surfaces, and contribute to a collaborative research team.
  • Ability to communicate technical risks in a way that empowers engineering teams to act.
  • Interest in growing into a specialized area such as AI/ML security, cloud, embedded systems, or native software.

Benefits

We offer competitive remuneration, annual incentive plan bonus, healthcare, and a range of employee benefits. Thermo Fisher Scientific offers employment with an innovative, forward-thinking organization, and outstanding career and development prospects. We offer an exciting company culture that stands for integrity, intensity, involvement, and innovation!

Thermo Fisher Scientific

Website: https://www.thermofisher.com/

Headquarter Location: Waltham, Massachusetts, United States

Employee Count: 10001+

Year Founded: 2006

IPO Status: Public

Last Funding Type: Post-IPO Debt

Industries: Bioinformatics ⋅ Biotechnology ⋅ Cloud Data Services ⋅ Consulting ⋅ Health Care ⋅ Life Science ⋅ Management Information Systems ⋅ Office Supplies ⋅ Precision Medicine