Lead Penetration Tester

$120,335 - $151,665/Yr

Jda Software - Dallas, TX

posted 6 days ago

Full-time - Senior
Dallas, TX
Professional, Scientific, and Technical Services

About the position

Blue Yonder is seeking a Lead Penetration Tester responsible for leading and conducting penetration test activities against both private and public networks. This senior role involves creating a robust internal penetration testing program, engaging with leading Pen Test vendors, and providing meaningful feedback to stakeholders regarding the security posture of the organization. The candidate will also play a key role in evolving the Red Team and will be responsible for identifying vulnerabilities and providing remediation guidance.

Responsibilities

  • Create and maintain a solid penetration testing program for the organization.
  • Conduct all penetration activities for the Blue Yonder infrastructure.
  • Coordinate customer requests for penetration testing.
  • Focus on all phases of penetration testing including information gathering, scanning, execution, post-exploitation, and reporting.
  • Identify assets that need prioritization for assessment.
  • Potential to expand to a Red Team to validate security controls and tools.
  • Create awareness about the extent of compromise possible with the current security posture.
  • Create processes for the penetration testing program.
  • Leverage vulnerability scan results and threat intelligence information.
  • Evaluate threats, vulnerabilities, and risks in cloud platforms like Azure and AWS.
  • Provide solid feedback to stakeholders to reduce risk exposure.
  • Validate security controls such as intrusion prevention and detection systems.
  • Document and track all hacking activities for management and auditors.
  • Represent the team for internal and external audits as needed.
  • Review reports for each assessment before distribution.
  • Assist with the incident response team as appropriate.
  • Generate metrics for management as needed.
  • Prepare system security reports by collecting, analyzing, and summarizing data and trends.

Requirements

  • 10+ years of Penetration Testing, Ethical Hacking, and/or Red Teaming experience.
  • Experience with tools such as Qualys, Tenable, Nexpose, Metasploit, Core Impact, Burp Suite, Cobalt Strike.
  • Certifications such as OSCP, OSCE, CRTP, and/or GPEN.
  • Deep understanding of Tactics, Techniques, and Procedures (TTP) such as the Mitre Framework.

Nice-to-haves

  • Bachelor's degree in information security, MIS, or Computer Science.
  • Experience in architecting and implementing network security designs.
  • Expertise in network security, system security, and endpoint security.
  • Education and experience in public cloud infrastructure such as Microsoft, Google, AWS, or IBM.

Benefits

  • Comprehensive Medical, Dental, and Vision insurance.
  • 401K with Matching contributions.
  • Flexible Time Off.
  • Corporate Fitness Program.
  • Voluntary benefits such as Legal Plans, Accident and Hospital Indemnity, and Pet Insurance.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service