Current jobs related to Cybersecurity Pen Tester - New Brighton - TÜV SÜD America


  • New Brighton, United States TÜV SÜD America Full time

    Job DescriptionJob DescriptionPosition Summary:This position is responsible for focusing domain areas of expertise as well as a good breadth of experience across Application Penetration Testing, Thick Client Penetration Testing, Web Application Penetration Testing, Mobile Application Penetration Testing (iOS and Android), Medical IoT devices Penetration...


  • New York, United States Iceberg Cyber Security Full time

    I’m currently representing an upcoming leader in cybersecurity, providing cutting-edge solutions and testing services. Their current mission is to venture into the world of hardware and embedded testing and they are looking for a leader to join as a principal Embedded Security Tester and develop new offensive security offerings.As an Embedded Security...


  • New York, United States The Rockridge Group Full time

    Job DescriptionJob DescriptionJob Title: Senior Cybersecurity EngineerLocation: 405 Lexington Avenue, New York, NY 10174 Duration: FTESalary: $ up to 140kSchedule: hybrid (in-office 2-3 days per week)Based on the NYC vaccine mandate effective 12/27/2021, all employees will be required to show proof of vaccination in accordance with the mandate.Job...


  • New York, United States The Rockridge Group Full time

    Job DescriptionJob DescriptionJob Title: Senior Cybersecurity EngineerLocation: 405 Lexington Avenue, New York, NY 10174 Duration: FTESalary: $ up to 140kSchedule: hybrid (in-office 2-3 days per week)Based on the NYC vaccine mandate effective 12/27/2021, all employees will be required to show proof of vaccination in accordance with the mandate.Job...


  • New York, New York, United States OTC Markets Group Inc Full time

    Position OverviewOTC Markets Group Inc., a leader in the U.S. financial marketplace, is on the lookout for a Vice President of Cybersecurity Operations to spearhead our Cybersecurity division within the IT Infrastructure department.We operate in a hybrid work model (three days in the office, two days remote).Our Core Values are integral to our organization....


  • New York, United States Iceberg Cyber Security Full time

    I’m currently representing an upcoming leader in cybersecurity, providing cutting-edge solutions and testing services. Their current mission is to venture into the world of hardware and embedded testing and they are looking for a leader to join as a principal Embedded Security Tester and develop new offensive security offerings.As an Embedded Security...


  • New York, United States Capital One Full time

    Center 3 (19075), United States of America, McLean, VirginiaPrincipal Associate, Penetration TesterCapital One Offensive Security reduces cyber risk by uncovering vulnerabilities and weaknesses in the enterprise cyber environment through coordinated ethical hacking and penetration testing scenarios. This position works closely with team members to plan,...


  • New York, United States Capital One Full time

    Center 3 (19075), United States of America, McLean, VirginiaLead Penetration Tester (Remote-Eligible)Capital One Offensive Security reduces cyber risk by uncovering vulnerabilities and weaknesses in the enterprise cyber environment through coordinated ethical hacking and penetration testing scenarios. This position works closely with team members to plan,...


  • New York, New York, United States WithSecure Full time

    About the RoleWe are seeking a highly skilled and experienced Senior Cybersecurity Consultant to join our team at WithSecure. As a key member of our team, you will be responsible for leading penetration tests and security assessments, as well as representing the company in key client relationships.Key ResponsibilitiesLead penetration tests and security...


  • New London, Connecticut, United States RenaissanceRe Full time

    About the PositionThe Cyber Security Analyst will be part of the Security Operations team, reporting directly to the VP - Security Operations. This role is expected to be 50% technical, 50% operational.Key Responsibilities:Support RenaissanceRe's cyber security strategy and security initiatives as directed by the CISO, including the reporting and improvement...


  • New York, United States City of New York Full time

    Job Description The Office of Technology and Innovation (OTI/DoITT) oversees all Citywide technology, privacy, cybersecurity, infrastructure, and telecommunications to ensure the security of, and enhance, City operations and service delivery to New York City's residents, businesses, employees, and visitors. As the City's technology and innovation leader, OTI...


  • New York, United States OTC Markets Group Inc Full time

    Job DescriptionJob DescriptionOTC Markets Group Inc., operator of premier US financial marketplaces, is seeking a VP, Information Security Manager to lead our Cybersecurity team as part of the IT Infrastructure department. OTC Markets is currently operating in a hybrid work environment (three days in office, two days remotely).Our Core Values are...


  • New London, United States RenaissanceRe Full time

    RenaissanceRe is a leading writer of Property & Casualty Reinsurance. For over 25 years, we have helped customers and communities recover and build resilience through our industry-leading ability to understand risk, source efficient capital and rapidly pay claims. Our global team shares a passion for solving our customers' biggest problems through a...

Cybersecurity Pen Tester

2 months ago


New Brighton, United States TÜV SÜD America Full time
Job DescriptionJob Description

Position Summary:

This position is responsible for focusing domain areas of expertise as well as a good breadth of experience across Application Penetration Testing, Thick Client Penetration Testing, Web Application Penetration Testing, Mobile Application Penetration Testing (iOS and Android), Medical IoT devices Penetration Testing, fuzz testing and Open-Source Intelligence and Physical Security Testing.

Responsibilities:

  • Perform medical device vulnerability scans, fuzz testing, penetration testing, security code reviews, and reverse engineering. Carrying out IOT penetration tests, application (mobile, MIoT and PC platform), network, systems, and infrastructure penetration tests and performing various aspects of vulnerability assessments / penetration tests across a wide variety of platforms and technologies in medical industry. Perform targeted testing activities to identify weaknesses and methods in which to exploit them. 
  • Review threat models and perform security risk assessments of medical products 
  • Helping evolve the knowledge of adversarial TTPs for medical devices and medical applications and apply that knowledge when evaluating and testing corporate resources. Adherence to the highest standards of safety, ethics, and professional conduct are critical requirements of this position. 
  • Supporting project initiatives to assess vulnerabilities in medical devices and medical/health software assets (via penetration tests, testing policies and procedures, etc.). 
  • Applying existing IT technical expertise to address cybersecurity related issues and challenges.  
  • Keeping up to date with tools, countermeasures, threats and technologies. 
  • Developing and refining tools, templates and methodologies. 
  • Interpreting vulnerabilities, identifying weaknesses, exploiting them and escalate access. 
Qualification
  • Higher degree in Information Security, Computer Science, Computer/Software Engineering, Electrical Engineering, or relevant work experience
  • Several years of professional experience in conducting IOT penetration testing, fuzz testing preferably in the medical sector (or other relevant sector).
  • Security knowledge in the areas: Operation system security, mobile OS Security, embedded operation system security, communication protocols (Bluetooth/BLE/WIFI etc.), medical protocols (DICOM etc.), threat modeling, common security testing tools.
  • Programming skills in Python, C/C++, C#, or similar for the purpose of code review and test automation
  • Excellent technical expertise (in both breadth and depth), written communication skills, time management skills, and the ability to communicate effectively with numerous lines of business representatives.
  • Experience with open source and commercial penetration testing security tools in an enterprise environment.
  • Proficiency with Windows, Unix/Linux, and mobile platform operating systems.
  • Comprehension of OWASP Top 10 (both web and (M)IoT), OSSTMM, PTES, NIST and able to understand and communicate findings to customers  
  • Must be willing to work flexible hours; they must also be able to travel, as required. Comfortable working in a fast-paced environment
Additional information

Equal Opportunity Employer – Disability and Veteran

TÜV SÜD America, Inc. is an equal opportunity, affirmative action employer and considers qualified applicants for employment without regard to race, color, creed, religion, ancestry, marital status, genetics, national origin, sex, sexual orientation, gender identity and expression, age, physical or mental disability, veteran status and those laws, directives, and regulations of Federal, State, and Local governing bodies or agencies. We participate in the E-Verify Employment Verification Program.

For more information on applicable equal employment regulations, please refer to the following: Labor Law 2024

Powered by JazzHR

gO6ERZlzXR