As a Pentester, Ethical Hacker, or Security Analyst, you will play a crucial role in safeguarding our organization’s digital assets by identifying and mitigating security vulnerabilities. Your expertise in ethical hacking and security analysis will help protect our systems and data from cyber threats.
Responsibilities
• Conduct thorough security assessments, vulnerability assessments, and penetration tests on systems, networks, and applications.
• Identify and exploit security vulnerabilities in a controlled and ethical manner to assess potential risks.
• Collaborate with cross-functional teams to prioritize and remediate identified security weaknesses.
• Provide recommendations and guidance to improve the security posture of systems and applications.
• Develop and execute test plans and methodologies to evaluate security controls.
• Stay up to date with the latest security threats, vulnerabilities, and attack techniques.
• Research and evaluate new security tools and technologies to enhance testing capabilities.
• Prepare detailed reports of findings, risks, and recommended steps for mitigation.
• Collaborate in the development and maintenance of security policies and procedures.
• Participate in incident response and assist in the investigation of security incidents as needed.
• Actively contribute to the organization's security awareness and training initiatives.
Requirements
• Bachelor’s degree in computer science, Software Engineering, or a related field (or equivalent work experience).
• Proven experience in penetration testing, vulnerability assessment, or ethical hacking roles.
• Deep understanding of security principles, vulnerabilities, and attack vector
• Familiarity with security assessment tools like Metasploit, Nessus, Wireshark, and Burp Suite.
• Proficiency in programming and scripting languages (e.g., Python, Bash) for security testing and automation.
• Knowledge of various operating systems (Windows, Linux, Unix) and network protocols.
• Strong comprehension of web application security, mobile security, and cloud security.
• Experience with common security frameworks and standards (e.g., OWASP, NIST, ISO 27001).
• Relevant security certifications (e.g., Certified Ethical Hacker (CEH), Certified Information Systems Security Professional (CISSP), Offensive Security Certified Professional (OSCP)) are a plus.
• Strong analytical and problem-solving skills with attention to detail.
Excellent communication and documentation skills to convey complex technical information.
• Ability to work independently and collaboratively with security and IT teams.