Cybersecurity Penetration Tester

2 weeks ago


Houston, United States Resource Informatics Group Inc Full time
Job DescriptionJob Description

 

Very large oil and gas company in The Woodlands / Spring, TX is seeking to hire a consultant as a Cybersecurity Penetration Tester with strong experience in application security. Excellent environment with a global footprint and top tier Cybersecurity technologies.  The supervisor of this team is very people/team oriented and will encourage consultants to pursue additional training and certifications (paid for by consulting company, not the individual consultant).

JOB DESCRIPTION

As the Cybersecurity Penetration Tester on this team, you will demonstrate the ability to perform manual web application vulnerability assessments without the use of automated tools such as web application scanners. Additionally:

  • Will capture and analyze network traffic at all seven layers of the OSI model, including ability to discern whether said network traffic contains vulnerabilities and/or sensitive data. 
  • Will perform in the role that shows a solid grasp of core security fundamentals and concepts, including knowing one’s system, defense in depth, the principle of least privilege, access control, encryption and cryptography, security architecture and design, business continuity and disaster recovery, etc. 
  • Will create extremely high quality written reports containing the findings from web and thick-client vulnerability assessments, as well as the ability to articulate those findings to peer technical staff as well as various levels of management.

REQUIRED SKILLS

  • 6+ years of experience penetration/vulnerability testing for web and thick-client applications in an enterprise environment.
  • Strong understanding of web technologies, e.g. HTTP, HTML, CSS, Forms, Database Connectivity, etc.
  • Understanding of compliance and regulatory requirements such as PCI DSS, SOX, HIPAA, etc.
  • Full grasp and ability to articulate and/or train others on the “OWASP Top 10” and related concepts.
  • 6+ years' experience with programming and/or scripting in one or more of the following languages: .NET, Java, PHP, Ruby, Perl, Bash, or similar language.
  • 6+ years of experience with SQL, including a strong understanding of SQL syntax and the ability to perform basic management of MS SQL databases.
  • 6+ years of experience with enterprise-level security control implementations, including Network Intrusion Detection/Prevention (NIDS/NIPS), Corporate Antivirus, Enterprise Web Filtering, Data Loss Prevention, Insider-threat Mitigation, Botnet Detection, etc., as well as demonstrable knowledge of the principles and techniques used to bypass said controls.

PREFERRED CERTIFICATIONS

Preference will be given to candidates who have 2 or more of the following certifications:  GSEC, GWAPT, CISSP, GPEN, GXPEN, CISA, CISM, OSCP, OSCE

 

 Required Skills: Application Security, Penetration Tester, Security Preferred Skills:
  • Penetration Tester

    2 weeks ago


    Houston, United States alliantgroup, LP Full time

    alliantgroup, LP is currently experiencing explosive growth! As a national consulting firm focused on being the voice to the middle market, our mission is simple: Strengthening American businesses. How do we do this? We hire the brightest talent with the most diverse backgrounds who are passionate about making a difference. It's fun to work in a company...

  • Penetration Tester

    3 weeks ago


    Houston, United States AMSYS Innovative Solutions, LLC Full time

    Overview of the Job Duties:• Conducting Penetration Tests• Vulnerability Assessment• Exploit Development• Social Engineering Testing• Reporting and Documentation• Incident Response Support• Client Engagement Qualifications:• Relevant industry certifications such as OSCP (Offensive Security Certified Professional), OSCE (Offensive Security...

  • Penetration Tester

    2 weeks ago


    Houston, United States AMSYS Innovative Solutions Full time

    Overview of the Job Duties: Conducting Penetration Tests Vulnerability Assessment Exploit Development Social Engineering Testing Reporting and Documentation Incident Response Support Client Engagement Qualifications: Relevant industry certifications such as OSCP (Offensive Security Certified Professional), OSCE (Offensive Security Certified Expert),...

  • Penetration Tester

    3 weeks ago


    Houston, United States AMSYS Innovative Solutions, LLC Full time

    Overview of the Job Duties:• Conducting Penetration Tests• Vulnerability Assessment• Exploit Development• Social Engineering Testing• Reporting and Documentation• Incident Response Support• Client Engagement Qualifications:• Relevant industry certifications such as OSCP (Offensive Security Certified Professional), OSCE (Offensive Security...

  • Penetration Tester

    3 weeks ago


    Houston, United States AMSYS Innovative Solutions, LLC Full time

    Overview of the Job Duties:• Conducting Penetration Tests• Vulnerability Assessment• Exploit Development• Social Engineering Testing• Reporting and Documentation• Incident Response Support• Client Engagement Qualifications:• Relevant industry certifications such as OSCP (Offensive Security Certified Professional), OSCE (Offensive Security...


  • Houston, United States JPMorgan Chase & Co. Full time

    Join one of the world's most influential companies and leverage your skills in cybersecurity to have a real impact on the financial industry. As a Lead Cybersecurity Architect at JPMorgan Chase within the cyber and tech controls line of business, you are an integral part of a team that works to develop high-quality cybersecurity solutions for various...


  • Houston, United States Sempra Services Corporation Full time

    Cybersecurity Specialist - Governance, Risk, and Compliance (GRC) #24-69380 Houston , TX 24-69380 Job Description Primary Purpose The Cybersecurity Specialist – Governance, Risk, and Compliance (GRC) designs and implement controls and processes of Sempra's GRC function, ensuring compliance and protection of Sempra's assets and data against the dynamically...


  • Houston, United States Sempra Services Corporation Full time

    Job DescriptionPrimary Purpose The Cybersecurity Specialist – Governance, Risk, and Compliance (GRC) designs and implement controls and processes of Sempra's GRC function, ensuring compliance and protection of Sempra's assets and data against the dynamically changing threat landscape. The GRC Specialist develops and improves policies, standards,...


  • Houston, United States CareerBuilder Full time

    Lawrence Harvey has partnered with a renewable energy company, currently operating in multiple states and providing clean wind and solar alternatives, to expand their cybersecurity team. We are searching for a Cybersecurity Leader with a passion for renewable energy and a background in OT security. This position will oversee the security strategy and overall...


  • Houston, United States JPMorgan Chase Full time

    Job Description Take on a crucial role where you'll be a key part of a high-performing team delivering secure software solutions. Make a real impact as you help shape the future of software security at one of the world's largest and most influential companies.As a Lead Security Engineer at JPMorgan Chase within the Cybersecurity Organization, you...


  • Houston, United States CareerBuilder Full time

    Collaborates on strategy creation of hardened and secure cloud environments; establishs role access based controls for cloud applications, ensuring compliance with applicable regulations such as HIPAA; reviews and correlates security issues identified by tools and/or external sources to ensure that any vulnerabilities or security weaknesses are addressed and...


  • Houston, United States SLB Full time

    Full-time or part-time: Full-time Job title: Lead CyberSOC Engineer Job Location: 1430 Enclave Parkway, Houston, TX 77077 Job Description : Serve as a champion and technical expert for a cyber domain, e.g. Threat intelligence. Understand threat actor TTPs and analyze or reverse engineer malware. Perform memory analysis. Use both internal and external...


  • Houston, United States Schlumberger Full time

    Full-time or part-time: Full-time Job title: Lead CyberSOC Engineer Job Location: 1430 Enclave Parkway, Houston, TX 77077 Job Description : Serve as a champion and technical expert for a cyber domain, e.g. Threat intelligence. Understand threat actor TTPs and analyze or reverse engineer malware. Perform memory analysis. Use both internal and external...


  • Houston, Texas, United States SLB Full time

    Full-time or part-time: Full-timeJob title: Lead CyberSOC EngineerJob Location: 1430 Enclave Parkway, Houston, TX 77077Job Description :Serve as a champion and technical expert for a cyber domain, e.g. Threat intelligence. Understand threat actor TTPs and analyze or reverse engineer malware. Perform memory analysis. Use both internal and external threat...


  • Houston, United States JPMorgan Chase Bank, N.A. Full time

    Take on a crucial role where you'll be a key part of a high-performing team delivering secure software solutions. Make a real impact as you help shape the future of software security at one of the world's largest and most influential companies. As a Lead Security Engineer at JPMorgan Chase within the Cybersecurity Organization, you are an integral part of...


  • Houston, United States CareerBuilder Full time

    What You Will Do Collaborate with cross-functional teams to design, develop, and implement secure software solutions aligned with security standards. Conduct detailed threat modeling and risk assessments to identify potential vulnerabilities and recommend appropriate security controls. Perform code reviews to identify and address potential security issues,...

  • HCM Project Manager

    3 days ago


    Houston, United States DemandGen Internationa Full time

    Job Summary: To support our double-digit growth goals, BDO Digital seeks a Solutions Project Manager who will be part of the Client Experience team supporting projects in the areas of strategy and implementation, in addition to business transformation and operational excellence efforts. The individual in this role will conduct discovery, requirements...


  • Houston, United States N.F. Smith & Associates, L.P. Full time

    Position Summary: We are seeking a highly skilled and experienced Director of Global Infrastructure to oversee the planning, implementation, and management of our company's infrastructure systems. This leader will provide strategic leadership and direction to ensure the smooth operation and continuous improvement of Smith's global infrastructure, including...