Security Engineer (Offensive Security)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security Engineer (Offensive Security): Delivering advanced vulnerability management and Penetration Testing as a Service to provide strategic security insights for clients with an accent on manual and autonomous pentesting. Focus on executing vulnerability scans, analyzing attack vectors, and guiding clients through remediation steps to enhance their security posture.
Company
is an innovative technology solutions provider specializing in cybersecurity, hybrid cloud, global network management, and managed services.
What you will do
- Execute and analyze vulnerability scans and determine necessary remediation steps.
- Perform manual and autonomous penetration tests and produce detailed reports for client stakeholders.
- Lead client meetings to provide expert security advice and guide remediation efforts.
- Collaborate with clients to align security findings and remediation requirements with business outcomes.
- Maintain documentation for security processes and generate automated reports for stakeholders.
- Stay updated on latest security events and attack techniques to keep clients informed of new threats.
Requirements
- 3-5 years of experience executing penetration tests, writing reports, and delivering client debriefs.
- Strong understanding of network protocols (TCP/IP, HTTP, SMTP, DNS) and operating system internals.
- Experience with cybersecurity threats, incident response standards, and risk assessment methodologies.
- Ability to effectively communicate complex security information to non-technical audiences.
- Proficiency with penetration testing frameworks, methodologies, and industry-standard tools.
Nice to have
- Knowledge of common Windows and Linux/Unix system calls and APIs.
- Working knowledge of tools such as Burp Suite, Metasploit framework, or Caido.
- Proficiency in programming or scripting languages, particularly Python.
- Relevant certifications such as OSCP, PenTest+, eJPT, PJPT, GPEN, PNPT, CEH, or Security+.
Culture & Benefits
- Work-hard, play-hard environment focused on professional growth.
- Emphasis on developing valuable skills to build a long-term career.
- Engineering-driven culture with a customer-centric approach.
- Access to guidance, training, and high-level experience in the cybersecurity domain.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →