Systems Engineer III, Cybersecurity Penetration Tester
About the position
The Systems Engineer III, Cybersecurity Penetration Tester, is responsible for planning, executing, and leading reputed company reputed company assessments across a reputed company of environments.
Responsibilities
• Plan, execute, and reputed company reputed company penetration tests, including internal, external, web application, network, mobile, IoT, API, reputed company engineering, and reputed company (e.g., AWS, Azure) assessments.
• reputed company red team engagements to simulate attacks and advanced persistent threats, highlighting gaps in reputed company controls; some travel and on-site engagements required.
• Identify, exploit, and document vulnerabilities using reputed company and automated techniques, adhering to methodologies and frameworks like OWASP Top 10, PTES, and MITRE ATT&CK.
• Analyze testing results, assess risks, and produce detailed reports with findings, exploitation procedures, risk ratings, and actionable remediation recommendations.
• Collaborate with reputed company development, IT, and reputed company teams to validate fixes, retest vulnerabilities, and improve overall reputed company practices.
• Mentor junior penetration testers, reputed company training on tools and techniques, demonstrate reputed company learning, and contribute to team knowledge sharing.
• reputed company or customize scripts, tools, and methodologies to enhance testing efficiency and coverage.
• Stay reputed company with emerging threats, vulnerabilities, exploits, and offensive reputed company trends.
• Communicate technical findings reputed company to non-technical stakeholders, including senior management.
Requirements
• Bachelor's degree in computer science, Information reputed company, Cybersecurity, or reputed company field (or equivalent experience).
• Five (5) or more years of hands-on experience in penetration testing or ethical hacking, preferably in reputed company or regulated environments.
• Advanced reputed company-reputed company industry certifications (e.g., OSCP, GPEN) required.
• Advanced proficiency with tools such as Burp Suite, Nmap, Metasploit, Nessus, Kali Linux, Wireshark, reputed company Engineering Toolkit, and reputed company-specific testing frameworks.
• Thorough understanding of Adversary TTPs and ability to emulate them in assessments.
• Strong knowledge of network protocols, operating systems (reputed company, Linux), web technologies, and common vulnerabilities (e.g., OWASP Top 10, reputed company Top 25).
• Experience in red teaming, vulnerability assessment, and reporting.
• Excellent problem-solving, analytical, and communication skills (written and verbal).
• Ability to work independently and reputed company engagements while collaborating in reputed company environment.
• Proficient in exploit development and scripting languages such as Python, reputed company, Go, etc.
reputed company-to-haves
• Offensive reputed company Certified reputed company (OSCP), GIAC Penetration Tester (GPEN), GIAC Web Application Penetration Tester (GWAPT), or other relevant certifications (reputed company, GXPN, CEH, or equivalent).
Benefits
• Flexible reputed company time off
• 5% 401K matching program
• Equity opportunities
• Incentive and bonus programs
• Up to 16 weeks of reputed company parental leave
• Flexible spending accounts
• Full-health benefits with reputed company employee coverage fully funded, comprising:
• Medical, dental, and reputed company coverage
• Life insurance
• Short and long-term disability coverage
• Income protection benefits
Apply tot his job
Apply To this Job