Expert Security Engineer (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Expert Security Engineer (Cybersecurity): Leading proactive security efforts through ethical hacking and penetration testing across applications, infrastructure, and cloud environments with an accent on vulnerability identification and exploitation. Focus on conducting in-depth security reviews of Java-based applications and articulating complex risks to technical and non-technical stakeholders.
Location: Remote (Must be based in the US or Canada)
Salary: $100,000 - $120,000 USD
Company
delivers health IT solutions that support caregivers globally, focusing on innovation to elevate care delivery.
What you will do
- Lead and execute advanced penetration tests and ethical hacking engagements across critical systems, applications, and networks.
- Conduct in-depth security reviews of Java-based applications to uncover design flaws and coding vulnerabilities.
- Independently identify, analyze, and validate security vulnerabilities with high fidelity.
- Articulate technical findings and remediation strategies through comprehensive reports and presentations for stakeholders and customers.
- Consult with development and operational teams on secure design principles and security best practices.
- Maintain threat intelligence on current attack vectors and communicate mitigation techniques.
Requirements
- Must be based in the US or Canada
- At least 5 years of experience in cybersecurity, with 3+ years specifically in ethical hacking and penetration testing.
- Proven expertise in network, web application, API, and cloud penetration testing.
- Deep understanding of OWASP Top 10, SANS Top 25, and secure coding practices.
- Expert-level proficiency with industry-standard penetration testing tools and cloud security (e.g., Microsoft Azure).
- Exceptional verbal and written communication skills for articulating complex technical risks
Nice to have
- Offensive security certifications such as OSCP, OSWE, GPEN, or GWAPT.
- Industry certifications like CISSP, CompTIA Security+, or CySA+.
- Proficiency in scripting languages like Python or PowerShell for automation.
- Expert knowledge of Linux and Windows operating systems.
- Bachelor's degree in Computer Science, Cybersecurity, or a related field.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →