Назад
Company hidden
22 часа назад

Penetration Testing Engineer, Embedded Devices

80 000 - 132 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
junior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Penetration Testing Engineer, Embedded Devices (Embedded Security): Performing penetration testing, threat modeling, incident response, and security assessments for embedded products with an accent on vulnerability discovery, certification support, and secure SDLC integration. Focus on developing automated testing tools, optimizing fuzzing strategies, analyzing SAST results, and conducting basic reverse engineering.

Location: On-site in Irvine, California, United States

Salary: $80,000–$132,000 per year

Company

hirify.global Systems provides networking devices and smart home products to customers in more than 170 countries.

What you will do

  • Perform penetration testing on embedded products, identify vulnerabilities, recommend remediation, and prepare detailed reports.
  • Conduct threat modeling and security assessments for specific product modules.
  • Investigate, contain, remediate, and analyze security incidents while coordinating with cross-functional teams.
  • Support product cybersecurity certification by analyzing requirements and implementing security controls.
  • Develop penetration-testing tools, automated testing platforms, and scripts.
  • Contribute to secure SDLC improvements and the implementation of global cybersecurity standards and regulatory requirements.

Requirements

  • Bachelor’s degree in Computer Science, Information Security, or a related field, or equivalent experience.
  • 1–3 years of experience as an embedded-device Security Engineer or in a similar role.
  • Knowledge of protocol security design, cryptography, security frameworks, and common vulnerabilities.
  • Experience with Burp Suite, Nmap, Kali, Nessus, Metasploit, IDA, Ghidra, or similar tools.
  • Ability to optimize penetration-testing tools and fuzzing strategies, analyze SAST results, and perform basic reverse engineering.
  • Proficiency in at least one programming language, such as C/C++, Python, Bash, or PowerShell.

Nice to have

  • Advanced security certifications such as OSWP.
  • Published CVEs.

Culture & Benefits

  • Fully paid medical, dental, and vision insurance, with partial dependent coverage.
  • Employer quarterly contributions to 401(k) funds.
  • 15 accrued vacation days and 11 paid holidays.
  • Biannual performance reviews and annual pay increases.
  • Health and wellness benefits, including a free gym membership, plus quarterly team-building events.
  • Visa sponsorship is not available.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →