FIS - Cincinnati, OH

posted 7 days ago

Full-time - Mid Level
Cincinnati, OH
Professional, Scientific, and Technical Services

About the position

The Cyber Security Engineer - Product Security Incident Response role at Worldpay involves safeguarding products from security vulnerabilities by collaborating with security researchers and development teams. The engineer will be responsible for analyzing reported vulnerabilities, implementing remediation strategies, and contributing to the continuous improvement of the Product Security Incident Response Team (PSIRT) processes.

Responsibilities

  • Collaborate with security researchers and external parties to receive, triage, and validate reported vulnerabilities in our products.
  • Analyze vulnerabilities to assess their severity, exploitability, and potential impact on our products and users.
  • Work with development teams to develop and implement remediation strategies for identified vulnerabilities, including patches, hotfixes, or workarounds.
  • Maintain and update PSIRT documentation, including policies, procedures, and playbooks.
  • Contribute to the continuous improvement of the PSIRT process by identifying opportunities for automation and efficiency.
  • Stay up-to-date on the latest vulnerability trends, exploit techniques, and industry best practices for product security.

Requirements

  • Bachelor's degree in computer science or equivalent combination of education, training, or work experience.
  • Minimum 3+ years of experience in security or a related field.
  • Strong understanding of software development lifecycle (SDLC) security practices.
  • Experience with vulnerability analysis and mitigation techniques.
  • Excellent analytical and problem-solving skills.
  • Ability to work effectively in a fast-paced environment and manage multiple priorities.
  • Experience with scripting languages (Python, Bash) for automation preferred.
  • Excellent communication, collaboration, and interpersonal skills.

Nice-to-haves

  • Experience in reverse engineering and exploit development.
  • Experience with secure coding principles and practices.
  • Familiarity with industry standards for vulnerability disclosure (e.g., CVE, CVSS).
  • Experience with vulnerability management tools.
  • Certifications in security (e.g., Certified Ethical Hacker (CEH), Security+).

Benefits

  • A competitive salary and benefits.
  • Time to support charities and give back to your community.
  • Parental leave policy.
  • Global recognition platform.
  • Virgin Pulse access.
  • Global employee assistance program.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service