Source description
About the role
- Penetration Tester / Security Engineer – High Important Location: Austin, TX Duration: Long term Role/s Requested: Must understand all aspects of security engineering. Should be able to: · Identify vulnerabilities through test, system design review or code analysis; · Explain how a vulnerability exploitation works and root cause; · Recommend secure solutions and mitigations, tailored to each environment. · Have strong communication skills (Written/Verbal) · Must be able to work through a project from Mobilization to Testing/Validation phases · Understanding of QE/QA process · Strong Documentation capabilites Vendor needs to procure Security Tools required for testing: · ie. Burp Suite Pro. Vendor needs to provide security requirements to allow resource to work securely: · ie. Screen protector for their device. Skill Sets - Niche Skill - Experience - Preference Penetration Testing - Yes - 2-5 years - Is Required Web Application Security - Yes - 2-5 years - Is Required Application Secuirty Testing - No - 2-5 years - Is Required Threat Modeling - No - At least 1 year - Nice To Have Amazon Web Services (AWS) - No - At least 1 year - Nice To Have Google Cloud Platform (GCP) - No - At least 1 year - Nice To Have Content Management Systems - No - At least 1 year - Nice To Have ----------------------------------------------------------------------------------- 2 . Penetration Tester / Security Engineer – High Important Location: Austin, TX Duration: Long term Role/s Requested: Must understand all aspects of security engineering. Should be able to: Analytical thinking, and motivated to learn new things. Experience manually testing complex web applications. Experience with a scripting language (e.g. perl, python, PHP, ruby) and a programming language (e.g. JAVA, JavaScript, Go). Proficiency in either Mac OS X and/or other flavors of UNIX. Background in web application development and/or code auditing preferred. Strong verbal & written communication skills. Passion for discovering and researching new vulnerabilities and exploitation techniques. Experience in performing Threat Models and/or security architecture reviews. Experience in securing Cloud environments (such as AWS). Preferred: Experience participating in CTFs, or security research/bug bounties. Day to Day Responsibilities This security engineer role will involve working closing with engineering teams to implement a secure development lifecycle. Day to day responsibilities include: Conduct security architecture reviews of the full stack including applications built on cloud and emerging technologies. Conduct manual application security testing and source code auditing for a variety of technologies. Work closely with engineering teams to provide security guidance to engineers. Create proof of concepts to demonstrate impact to engineering teams. Create automations and/or security tooling to scale security testing. Education Preferred: BS in Computer Science or Computer Security Preferred: OSCP certification Skill Sets - Niche Skill – Experience - Preference Security Testing – Yes - At least 1 year - Is Required Web Application Security – Yes - At least 1 year - Is Required Penetration Testing – Yes - At least 1 year - Is Required
More at Advanced Knowledge Tech