Offensive Security Analyst II
Job Description: Perform penetration testing of company owned application, networks, and systemsPerform web application and cloud discovery, enumeration, and exploitationAssist in red team operations and adversary emulation exercisesAssess and communicate the operational risks of exploitationCreate testing plans and methods to find and confirm vulnerabilitiesScope and assess the time needed to complete operational testing tasksModify and adapt public exploit code and tools to meet operational requirementsUtilize and develop automation where possible to save time and gain efficiencyServe as a subject matter expert to the organization for offensive security topicsProvide expertise to security operations, threat intelligence, and forensics, as neededWork independently and troubleshoot technical and business process-related issuesExperience supporting a variety of different offensive engagements for a large enterpriseAbility to present complex topics, simply, to varying levels of the organization.Requirements: Bachelor's degree in Computer Science, Information Security or other related field preferred or 3+ years' required experience in related field3+ years of combined IT and security work experience with exposure to systems analysis, application development, database design and computer/network administrationMinimum 2+ years experience in Information Security requiredOSCP, CRTO, GPEN or other penetration testing or red team certification(s) preferredBasic experience using penetration testing security tooling, such as Kali LinuxBasic experience using Burp suite or similar web application hacking toolsBasic experience using command and control frameworks such as Cobalt StrikeBasic experience with programming/scripting languages: e.g. Python, PowerShellBasic experience bypassing controls such as antivirus or web application firewallsBasic knowledge of networking concepts protocols and encryptionBasic knowledge of Active Directory discovery, enumeration, and exploit methodsBasic knowledge of application security best practices and toolsBasic knowledge of operating system best practices and toolsExcellent time management and ability to track and deliver on commitmentsExcellent adaptability and ability to learn complex technical skills quicklyExcellent written and verbal skills.Benefits: group health insurance benefits (medical, vision, dental)FSA and HSA healthcare accountslife and accident insuranceadoption and fertility assistancepaid parental leave of up to 6 weeksshort/long term disabilitypaid time off for vacation, personal needs, and sick timeup to 11 paid holidays per calendar yearopportunity to contribute to 401(k) savings and investment plan or deferred compensation plan (if eligible) with an employer match of 100% on the first 3% of contributions for eligible employees