Demonstrate understanding of red, blue, purple team testing methodologies and concepts. Establish Threat Models and Risk Assessment both internal infrastructure, networking, and applications. Assist and build out internal testing scenarios to identify potential improvements for our overall security. Perform internal testing to demonstrate how identified risk can be taken advantage of and advise on how best to prevent against the identified attack vector. Validate and test applied mitigations to determine level of effectiveness. Perform assessments along with Security Architecture across our various applications and technical solutions. Work with Infrastructure, Application and Network Engineering teams to remediate security findings. Assist with drafting and maintaining various security related documents. Have a good understanding of networking concepts and application connectivity across public cloud(s) using mTLS and REST API. Demonstrate understanding of OSI Layer 7 security controls and Web Application Firewalls Periodically assist with researching and investigating RCA of security investigations. Lead other security architecture team members on weekly tasks related to functional area.
Minimum of 3-4 years of experience in technology engineering or security tool engineering roles. Minimum of 3-4 years of experience in Information Security Infrastructure and/or Application Security Testing. Bachelor's degree in a related field from an accredited college or university Strong skills in English - written and verbal communication. Strong research and project management skills. Ability to plan and complete tasks with minimal oversight. Ability to multi-task and prioritize tasks across a range of projects, adjusting to shifting priorities. Excellent time management and organizational skills. Demonstrate commitment to obtaining outstanding results. Strong personal integrity, ability to manage confidential, sensitive information