Visaposted 9 days ago
$118,200 - $214,150/Yr
Full-time - Senior
Ashburn, VA

About the position

Visa's Red Team pro-actively identifies weaknesses in Visa's security posture and recommends necessary controls and procedures to cost-effectively protect Visa services from intentional or inadvertent modification, disclosure or destruction. With this mission in mind, Visa's internal Red Team experts are engaged in covert operations that simulate adversarial threats and attacks in a timely manner. This is accomplished by performing internal and external ethical hacks of Visa applications and systems. Red members also help with design, development, and recommendation of security solutions to protect Visa proprietary/confidential data and systems. Assist with compliance objective. Provide guidance and direction for the logical protection of information systems assets to other functional units. Prepare reports regarding effectiveness of information security adherence and make recommendations for the adoption of new policies and procedures for Visa services.

Responsibilities

  • Conduct high risk and sensitive ethical hacks of internally and externally hosted applications globally according to scope defined by Red Team.
  • Co-ordinate and execute system/network level advanced Red Team and ethical hacking exercises.
  • Design and develop scripts, frameworks, and tools required for facilitating and executing complex undetectable attacks.
  • Review results of network and application ethical hacks to determine severity of findings and to ensure proper remedies are applied.
  • Perform penetration and remediation testing and reporting through the application of expert ethical hacking and penetration techniques in a fast-paced, highly technical environment.
  • Identify network and system vulnerabilities and provide recommended counter measures or mitigating controls to reduce risk to an acceptable and manageable level.
  • Provide accurate and timely reporting of findings and proposed remediation and mitigations.
  • Coordinate Red team operational briefings and presentations to non-technical audience and executive management, as required.
  • Provide technical support to Business Leader in identifying and streamlining new/existing protocols and tools used by the Red Team.
  • Define and develop agenda for training and educating security professionals on advanced exploits, tools, and frameworks.
  • Perform research of emerging technologies and design frameworks and capabilities required to perform Red Team exercises of new technologies adopted by Visa.

Requirements

  • 8+ years of relevant work experience with a Bachelor’s Degree or at least 5 years of experience with an Advanced Degree (e.g. Masters, MBA, JD, MD) or 2 years of work experience with a PhD, OR 11+ years of relevant work experience.

Nice-to-haves

  • 9 or more years of relevant work experience with a Bachelor Degree or 7 or more relevant years of experience with an Advanced Degree (e.g. Masters, MBA, JD, MD) or 3 or more years of experience with a PhD.
  • Expertise performing advanced exploitation and post-exploitation attacks as part of ethical hacking exercises.
  • Prior experience or expertise performing Red Team exercises.
  • Experience in writing proof-of-concept exploits and creating custom payloads and modules for common ethical hacking frameworks and tools.
  • Well versed in system exploits (e.g. Buffer Overflows, PTH attacks, windows authentication framework etc.), custom payload development, or web application exploitation.
  • Well versed with security tools & frameworks like Metasploit, Cobalt Strike, Mythic, etc.
  • Extensive understanding of cryptographic concepts and applied cryptography.
  • Proficiency in one or more scripting language. E.g. Perl, Python, Shell Scripting etc.
  • Prior experience with exploit development or writing system modules in C & C++, a major advantage.
  • Prior experience with reverse engineering, malware analysis, and forensic tools will be an added advantage.
  • Experience leveraging AI to improve Red Team capabilities during exercises.
  • Good interpersonal, facilitation, and demonstrated emerging leadership skills.
  • Able to operate at an advanced level of written and spoken communication.
  • Good understanding of Ethernet, switched LAN and WAN environment and detailed understanding of layer 3 and layer 4 specifications, including IP, TCP, TCP/IP routing protocols and management of ACLs.
  • Knowledge of logical / physical access control methods, connections alternatives using private, public and wireless solutions, Network/Host Intrusion Detection Engines, Vulnerability Management Tools, Patch Management Tools, Penetration Testing Tools, Anti-Virus/Anti-Spyware solutions.

Benefits

  • Medical
  • Dental
  • Vision
  • 401 (k)
  • FSA/HSA
  • Life Insurance
  • Paid Time Off
  • Wellness Program
Hard Skills
Make
1
Metasploit
1
Mobile Security
1
Perl
1
Spyware
1
05XsNxh94 KBCIhkOJzxgHbZ9Y
0
3XG1TW0S52 ilhBg5wpXCJKVY
0
4qTLf7RXHP NTb7WlYA
0
76ZEUTWVHfnRp Z5lgJm6Iqd4
0
AUpr7Xd TcUL5B8Pmx1
0
B7pQoOx
0
BbQrFOkMzD crREwSsx
0
H0qdM ImWyrF
0
JjNDxpvL XeWg1CHs
0
KEu s6oSQI9V
0
MEy46g t8geDiZTYSa
0
NM3Tz1t sTUYwNaZG
0
PJdHRYF1Eczn 0ZDOTvHgw4
0
PwVz bOuQ4jsL
0
QLCxFH9Z aYQg7juOmAsU
0
QdCovsA ZMe2tb4Ed
0
TnxWd93G 75BkXELa
0
by7KxaXr98ck 6wI75UX2
0
cTXyPFiv RP05xNsW3bEV
0
cyKbudGk Yzs6fLj9p3TK
0
dqM7EjaSB XeCpiTMWfr
0
gXRTV aIynZKARvJl
0
iSke3hvWydL nVCJQDPlS
0
izRdGT pUgQ17A
0
jmIx qzNh1nw2
0
kxCtvcM 69Sufos7Tw
0
qBcWIha3 GW5zBpOK
0
qlERAI1 CmAeyiIR59Y
0
raGhIg8LqB5 IUPgfKAw
0
v4eW KjouQMN29w
0
v5HI4uKd0B AhSQnNlygTic
0
vIFm 4eDwac6NntQ1
0
Build your resume with AI

A Smarter and Faster Way to Build Your Resume

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service