Penetration Testing Engineering Job at Diverse Lynx, Washington DC

RFVZNy9GSm4rQ2hLUWo4bGVQdWFqaGJTOUE9PQ==
  • Diverse Lynx
  • Washington DC

Job Description

Job Summary: Job Description/ Responsibilities Experience must include:

  1. Security testing of custom solutions, integrations with ERP solutions and other commercial of the shelf solutions, application middleware (API, application servers, etc.), etc. that are on-premise and/or in the cloud in web, fat client or mobile form.
  2. Practical working knowledge and use of
o Penetration testing tools and frameworks such as BurpSuite, Metasploit, Nmap, AppScan, etc. o Cloud and container technologies like Azure Kubernetes, Azure Container Registry, etc. o Java, C++, C#, Python, HTML, Java script, PHP. o Windows and UNIX operating systems and operation/configuration of common web servers as Apache, etc. o OWASP, WASC, SANS, CVE, and CVSS (Threat & Vulnerability classification). 3. Practical working knowledge with identifying and mitigating security weaknesses, and incorporating security into enterprise software development lifecycle, both agile and traditional waterfall. 4. Demonstrated knowledge of running a broad range of web application testing tools, identifying vulnerabilities as per SANS 25 or OWASP Top 10 specifications and helping develop platform specific remediation plan. 5. Proven level of understanding of web application technologies (Java, .NET) and database management systems (Oracle, MS SQL) and related security concepts. 6. In-depth and hands-on working knowledge of common website vulnerabilities such as SQL injection, cross-site scripting, remote/local file inclusion, etc.; in-depth knowledge of common website exploit techniques such as character encoding, privilege escalation, directory traversal, etc. 7. Knowledge of security solutions, latest threats, and countermeasures. Required Soft Skills
  1. Analytical skills that enable synthesis of inputs from many sources and allow for strategic thinking and tactical implementation.
  2. Spoken and written communications that are compelling, convincing, and reassuring, and skills to articulate complex technical ideas to non-technical stakeholders.
  3. Ability to think laterally and to have input to / propose detailed, complex solutions to technical issues.
  4. Interpersonal skills that create openness and trust among colleagues.
  5. Ability to work well under pressure and to meet tight deadlines. Demonstrates a high level of motivation, confidence, integrity, and responsibility.
  6. Ability to be organized, responsive and to be able to effectively multi-task with a focus on driving results.
  7. Demonstrate excellent interpersonal and relationship management skills. This includes the ability to work independently, effectively in a team/task force as a team member or leader, and with senior staff and managers.
  8. Ability to work well under pressure and to meet tight deadlines, whilst demonstrating a high level of motivation, confidence, integrity, and responsibility.
  9. Excellent relationship management skills. Facilitation and conflict management skills that enable effective working relationships.
Education
  1. Bachelor's degree in information security, computer science, engineering, mathematics, business, or related field of study plus a minimum of 10 years of relevant experience in regulated industries; OR
  2. Advanced degree in Information Security, computer science, engineering, mathematics, business, or related field of study plus a minimum of 5 years of relevant experience in regulated industries.
Certifications: (Minimum plus at least 1 preferred)
  1. CEH or CompTIA PenTest+ or CSSLP (minimum required)
  2. GIAC application security and/or pen testing related certifications (preferred)
  3. Offensive security related certifications (preferred)
o 1. Penetration testing tools and frameworks such as BurpSuite, Metasploit, Nmap, AppScan, etc. o Cloud and container technologies like Azure Kubernetes, Azure Container Registry, etc. o Java, C++, C#, Python, HTML, Java script, PHP. o Windows and UNIX operating systems and operation/configuration of common web servers as Apache, etc. o OWASP, WASC, SANS, CVE, and CVSS (Threat & Vulnerability classification). 8. Practical working knowledge with identifying and mitigating security weaknesses, and incorporating security into enterprise software development lifecycle, both agile and traditional waterfall. 9. Demonstrated knowledge of running a broad range of web application testing tools, identifying vulnerabilities as per SANS 25 or OWASP Top 10 specifications and helping develop platform specific remediation plan. Diverse Lynx LLC is an Equal Employment Opportunity employer. All qualified applicants will receive due consideration for employment without any discrimination. All applicants will be evaluated solely on the basis of their ability, competence and their proven capability to perform the functions outlined in the corresponding role. We promote and support a diverse workforce across all levels in the company. Diverse Lynx

Job Tags

Local area, Remote job,

Similar Jobs

CHRISTUS Health

Registered Nurse, ECC Emergency Care - PRN Job at CHRISTUS Health

Description Summary: The competent Nurse, in the same or similar clinical setting, practices independently and demonstrates an awareness...  .... C. Licenses, Registrations, or Certifications BLS required RN License in state of employment or compact Current PALS certification... 

Idaho State Job Bank

Social Media Content Moderator - Onsite Job at Idaho State Job Bank

 ...Social Media Content Moderator - Onsite at Teleperformance USA in Boise, Idaho, United States Job Description Overview Are you a digital detective...  ...inquiries and finding innovative ways to respond, you will work in a collaborative and engaging environment. You will have... 

Domino's Franchise

Delivery Driver-- Company Car Cross Link Rd Job at Domino's Franchise

 ...valid driver's license and a clean driving record for minimum of one year Reliable personal vehicle with insurance Excellent sense of...  ...tips avg. = $9.00hr ~ Hourly tips of $9.00 + $9hr pay = $18.00hr ~$18.00hr x 40hr a week = $720 a week ~50 weeks a year... 

Gecko Hospitality

Chef Job at Gecko Hospitality

 ...Job Description Job Description Executive Chef Casual Dining - Full Service Are you an Executive Chef who loves to keep...  ...through creativity. Since 1994, we have been cooking authentic Italian food and have a strong commitment to supporting local producers... 

CWS Health

Travel Nurse RN - Neuro ICU - $2,590 per week Job at CWS Health

CWS Health is seeking a travel nurse RN Neuro ICU for a travel nursing job in Oklahoma, Oklahoma. Job Description & Requirements ~ Specialty: Neuro ICU ~ Discipline: RN ~ Duration: 13 weeks ~36 hours per week ~ Shift: 12 hours, nights ~ Employment Type...