Penetration Tester

UBSRaleigh, NC
75d

About The Position

We're looking for a penetration tester to perform penetration testing against critical infrastructure (e.g. Active Directory, LDAP, DNS), assess operating system hardening (Windows/Linux/Unix), identifying misconfigurations, privilege escalation paths, and missing baseline controls. The role involves performing penetration testing against web, thick-client and mobile applications, identifying and reporting vulnerabilities using common methodologies, and communicating with application teams on how to remediate certain vulnerabilities. Additionally, the position includes participating in process improvements and automation, and performing technical QAs, including false-positive analysis and risk rating reviews.

Requirements

  • Ideally, 3+ years of hands-on experience in penetration testing web, thick-client and mobile applications
  • Strong hands-on experience with Active Directory exploitation and post-exploitation techniques
  • Solid knowledge of network protocols, Windows and Linux internals, DNS, SMB, LDAP, and Kerberos
  • Experience with OS hardening assessment tools and frameworks (e.g., CIS Benchmarks, Lynis, Microsoft Security Baselines)
  • Track record of explaining technical issues to application teams and assisting them in resolving issues
  • Confident communicator that can explain technology to non-technical audiences
  • Ability to properly document vulnerabilities and to produce penetration test report

Nice To Haves

  • Certifications in cyber security area, such as OSWE, OSCP, CompTIA Security+, Burp Suite Certified Practitioner

Responsibilities

  • Perform penetration testing against critical infrastructure (e.g. Active Directory, LDAP, DNS)
  • Assess operating system hardening (Windows/Linux/Unix), identifying misconfigurations, privilege escalation paths, and missing baseline controls
  • Perform penetration testing against web, thick-client and mobile applications
  • Identify and report vulnerabilities using common methodologies & communicate with application teams on how to remediate certain vulnerabilities
  • Participate in process improvements and automation
  • Perform technical QAs, including false-positive analysis and risk rating reviews

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Industry

Securities, Commodity Contracts, and Other Financial Investments and Related Activities

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service