Sr. Offensive Security Engineer

4 weeks ago


Scottsdale, United States Early Warning Services, LLC Full time

At Early Warning, we've powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle®, Paze℠, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small businesses.

Positions located in Scottsdale, San Francisco, Chicago, or New York follow a hybrid work model to allow for a more collaborative working environment.

Candidates responding to this posting must independently possess the eligibility to work in the United States, for any employer, at the date of hire. This position is ineligible for employment Visa sponsorship.

Overall Purpose

This position within the Offensive Security team is responsible for identifying and documenting security vulnerabilities through approved penetration testing activities for the purpose of securing Early Warning's systems, infrastructure, and applications. Additional responsibilities include mentoring junior offensive security engineers, triaging bug bounty submissions, control validation, threat model consultation, emerging threat PoC exploitation, and password cracking and phishing campaigns.

Essential Functions

  • Performs internal and external penetration tests focused on web applications, web services, wireless, cloud platforms, and network technologies.
  • Conduct cloud penetration testing engagements to assess specific services and implementations (i.e. AWS, GCP, Azure, containers, or other PaaS and SaaS instances) for vulnerabilities and subsequently attempt to exploit identified weakness.
  • Mentor other team members in offensive security testing techniques and approaches.
  • Work with Security and Technology partners to scope engagements by clearly articulating penetration testing approach and methodology to technical and non-technical audiences.
  • Report generation that clearly communicates testing and assessment details, results, and remediation recommendations to internal teams.
  • Occasionally supports 3rd party PTaaS vendor penetration tests by provisioning Kali Linux VMs and AMIs within the environment.
  • Facilitates ticket creation for tracking remediation of vulnerabilities and issues found during penetration tests.
  • Work with external third parties and researchers through Bug Bounty and Responsible Disclosure programs to reproduce submissions, assess organizational risk impact (CVSS, CWE, Enterprise Risk Ranking Impact/Likelihood), and further investigate reported issues.
  • Develop scripts, tools, and methodologies to automate and streamline internal processes and engagements.
  • Performs ad hoc security control testing as needed, including remediation testing of previous penetration test findings.
  • Performs monthly security campaign audits for phishing, password reuse, and password complexity.
  • Support the company's commitment to risk management and protecting the integrity and confidentiality of systems and data.
  • The above job description is not intended to be an all-inclusive list of duties and standards of the position. Qualified candidates will follow instructions and perform other related duties as assigned by their supervisor.
Minimum Qualifications
  • Bachelor's degree in Computer Science, Computer Information Systems, Information Security, Engineering, Math, or related field or equivalent years of professional experience to meet job requirements and expectations.
  • 4-6 years of professional experience with risk assessment tools, technologies, and methods focused on Information Assurance, Information Systems/Network Security, Infrastructure Design, or Vulnerability Assessments.
  • Effective knowledge of tools and techniques used to conduct network, wireless, or web application penetration testing.
  • Effective web application penetration testing and source code review experience.
  • Knowledge of open security testing standards and projects, including OWASP, PCI, & MITRE ATT&CK.
  • Experience with scripting, editing existing code, and programming (e.g. Python, Bash, Powershell, Golang, .NET, Java, etc.)
  • Proven ability to use, configure, troubleshoot, and administer *nix, Mac OSX, and Windows operating systems.
  • Experience with vulnerability scanners and Kali Linux associated toolsets included but not limited to InsightVM, Burp Suite Pro/Enterprise, hashcat, nmap, and/or Bloodhound.
  • Knowledge of application, database, and web server secure design and implementation.
  • Knowledge of network, web, and cloud application security testing. Red teaming or security operations experience is a plus.
  • Strong and professional communication skills (written and verbal).
  • Ability to present findings and recommendations to technical and non-technical audiences.
  • Background and drug screen
Preferred Qualifications
  • Hands-on practical Offensive Cybersecurity certifications (Sec+, OSCP, OSWE, eJPT, Pentest+, eCPPT, eWPT, GIAC, etc.) or equivalent.
  • Cloud certifications (CCP, SAA, SAP, AWS Security Specialty, etc.) or equivalent.
Physical Requirements

Working conditions consist of a normal office environment. Work is primarily sedentary and requires extensive use of a computer and involves sitting for periods of approximately four hours. Work may require occasional standing, walking, kneeling, and reaching. Must be able to lift 10 pounds occasionally and/or negligible amount of force frequently. Requires visual acuity and dexterity to view, prepare, and manipulate documents and office equipment including personal computers. Requires the ability to communicate with internal and/or external customers.

Employee must be able to perform essential functions and physical requirements of position with or without reasonable accommodation.

Candidates responding to this posting must independently possess the eligibility to work in the United States at the date of hire.

Some of the Ways We Prioritize Your Health and Happiness
  • Healthcare Coverage - Competitive medical (PPO/HDHP), dental, and vision plans as well as company contributions to your Health Savings Account (HSA) or pre-tax savings through flexible spending accounts (FSA) for commuting, health & dependent care expenses.
  • 401(k) Retirement Plan - Featuring a 100% Company Safe Harbor Match on your first 6% deferral immediately upon eligibility.
  • Paid Time Off - Unlimited Time Off for Exempt (salaried) employees, as well as generous PTO for Non-Exempt (hourly) employees, plus 11 paid company holidays and a paid volunteer day.
  • 12 weeks of Paid Parental Leave
  • Maven Family Planning - provides support through your Parenting journey including egg freezing, fertility, adoption, surrogacy, pregnancy, postpartum, early pediatrics, and returning to work.


And SO much more We continue to enhance our program, so be sure to check our Benefits page here for the latest. Our team can share more during the interview process

Early Warning Services, LLC ("Early Warning") considers for employment, hires, retains and promotes qualified candidates on the basis of ability, potential, and valid qualifications without regard to race, religious creed, religion, color, sex, sexual orientation, genetic information, gender, gender identity, gender expression, age, national origin, ancestry, citizenship, protected veteran or disability status or any factor prohibited by law, and as such affirms in policy and practice to support and promote equal employment opportunity and affirmative action, in accordance with all applicable federal, state, and municipal laws. The company also prohibits discrimination on other bases such as medical condition, marital status or any other factor that is irrelevant to the performance of our employees.

  • Scottsdale, United States Early Warning Services, LLC Full time

    At Early Warning, we've powered and protected the U.S. financial system for over thirty years with cutting-edge solutions like Zelle®, Paze℠, and so much more. As a trusted name in payments, we partner with thousands of institutions to increase access to financial services and protect transactions for hundreds of millions of consumers and small...


  • Scottsdale, Arizona, United States Early Warning Services, LLC Full time

    Early Warning Services, LLC seeks a highly skilled Offensive Cybersecurity Specialist to join our team. In this role, you will be responsible for identifying and documenting security vulnerabilities through approved penetration testing activities. You will work closely with our team to ensure the security of our systems, infrastructure, and applications.Job...


  • Scottsdale, United States APR Consulting Full time

    Sr Advanced Systems Engineer Location: Scottsdale, Arizona Type: Contract Job #79235 Our DOD/Aerospace client is looking to fill an Sr. Advanced Systems Engineer position that just opened in Scottsdale AZ. As a Systems Engineer you'll be a member of a cross-functional team responsible for developing and deploying the state-of-the-art ground...


  • Scottsdale, United States GeoLogics Consulting Full time

    Position: Sr. Advanced Systems Engineer (Contract)Location: ONSITE in Scottsdale, AZPay: Up to $87.20 per hourClearance Requirement: The ability to obtain a DoD issued Secret clearance is required. An Active Secret clearance is preferred. Applicants selected will be subject to a U.S. Government security investigation and must meet eligibility...


  • Scottsdale, United States APR Consulting Full time

    Sr Principal Systems Engineer (RF Comms) Location: Scottsdale, Arizona Type: Contract Job #79234 Our DOD/Aerospace client is looking to fill an Sr Principal Systems Engineer (RF Comms) position that just opened in Scottsdale AZ. As a Sr Principal Systems Engineer (RF Comms) you'll have the opportunity to rise to the challenge each day to ensure the...

  • Sr Data Engineer

    4 weeks ago


    Scottsdale, United States VDart Full time

    Role: Sr Data Engineer Location: Scottsdale, AZ Duration: 9 Months Contract Type: Onsite Must Have Skills: Strong Proficiency in Python (Programming Language), Apache Airflow and Google Cloud Data Services. Must Have Skills: 7+ years' experience in python programming experience in complex data structures as well as data pipeline development. Must Have...

  • Sr Systems Engineer

    3 weeks ago


    Scottsdale, United States Softworld Inc Full time

    Job Title: 81067 - Sr Systems EngineerCheck you match the skill requirements for this role, as well as associated experience, then apply with your CV below.Job Location: Scottsdale AZ Onsite Requirements:SpatchcockSystems requirements managementSystem integratioJob Description: As a systems engineer for the SDA GMI program, you'll be a member of a cross...

  • Sr Systems Engineer

    3 weeks ago


    Scottsdale, United States Softworld Inc Full time

    Job Title: 81067 - Sr Systems EngineerCheck you match the skill requirements for this role, as well as associated experience, then apply with your CV below.Job Location: Scottsdale AZ Onsite Requirements:SpatchcockSystems requirements managementSystem integratioJob Description: As a systems engineer for the SDA GMI program, you'll be a member of a cross...

  • Security Risk Manager

    2 weeks ago


    Scottsdale, Arizona, United States Paradox Full time

    Paradox Security Analyst Role OverviewThis position involves working with the team and clients to communicate information and uphold the integrity of our data systems.We are looking for a top performer with a track record of success to join our team as a Sr. Security Analyst in Scottsdale, AZ.About the JobLeverage your expertise in information security, data...


  • Scottsdale, United States SMI IMAGING LLC Full time

    Description Join the fastest growing outpatient radiology practice in the Nation - SimonMed Imaging! Our commitment to excellence and improving patient care paired with the best-in-class technology allows us to be an industry leader in the constantly evolving health care environment. Secure your spot now and take advantage of a unique career opportunity to...


  • Scottsdale, Arizona, United States Top Secret Clearance Jobs Full time

    About the OpportunityThis Senior Security Engineer position requires a highly skilled professional with Top Secret Clearance to work in Scottsdale, AZ. The ideal candidate will have a strong background in information assurance and excellent communication skills.ResponsibilitiesDevelop and implement security policies and procedures to protect sensitive...


  • Scottsdale, United States Irvine Technology Full time

    Position: Sr. IT Project Manager Location: Scottsdale, AZ (Hybrid Model, 3 Onsite / 2 Remote) Work Model: Onsite Tuesday, Wednesday and Thursday - flexible / Remote Monday and Friday Duration: 6+ month contract, will go longer Hourly Rate: 50/hr to 59/hr (W2 or Corp to Corp) Industry: Hospitality Experience Overview: Software Development side of the...


  • Scottsdale, United States Irvine Technology Full time

    Position: Sr. IT Project Manager Location: Scottsdale, AZ (Hybrid Model, 3 Onsite / 2 Remote) Work Model: Onsite Tuesday, Wednesday and Thursday - flexible / Remote Monday and Friday Duration: 6+ month contract, will go longer Hourly Rate: 50/hr to 59/hr (W2 or Corp to Corp) Industry: Hospitality Experience Overview: Software Development side of the...


  • Scottsdale, United States Irvine Technology Corporation Full time

    Position: Sr. IT Project ManagerLocation: Scottsdale, AZ (Hybrid Model, 3 Onsite / 2 Remote)Work Model: Onsite Tuesday, Wednesday and Thursday - flexible / Remote Monday and FridayDuration: 6+ month contract, will go longerHourly Rate: 45/hr to 52/hr (W2 or Corp to Corp)Industry: HospitalityExperience Overview: Software Development side of the business...


  • Scottsdale, United States Irvine Technology Full time

    Position: Sr. IT Project ManagerLocation: Scottsdale, AZ (Hybrid Model, 3 Onsite / 2 Remote)Work Model: Onsite Tuesday, Wednesday and Thursday - flexible / Remote Monday and FridayDuration: 6+ month contract, will go longerHourly Rate: 45/hr to 52/hr (W2 or Corp to Corp)Industry: HospitalityExperience Overview: Software Development side of the business...


  • Scottsdale, Arizona, United States Early Warning Services, LLC Full time

    Are you a skilled security expert looking for a new challenge? Early Warning Services, LLC is seeking a Senior Security Testing Engineer to join our team. In this role, you will be responsible for performing advanced security testing and penetration exercises to identify vulnerabilities in our systems and applications.Key ResponsibilitiesPerform internal and...


  • Scottsdale, Arizona, United States Vaco Full time

    Job SummaryWe are seeking a seasoned Cybersecurity Engineer to join our team in Arizona. As a key member of our engineering department, you will play a crucial role in designing and implementing robust security measures to protect our applications.Key ResponsibilitiesSecurity Automation: Develop and maintain security automation tools that integrate with...


  • Scottsdale, United States Vaco Full time

    Are you someone who thrives in a fast-paced environment to build, deploy, and maintain cutting-edge security tooling? If so, Vaco is working with an Arizona based client to fill this important Security Engineer position that will support the application side of the business. In this role, you will play a crucial role in integrating scanning and monitoring...


  • Scottsdale, United States Axway Software SA Full time

    Overview Overview: The Axway Cloud Security team is seeking a new Senior Cloud Security Engineer ithat will be critical to delivering secure cloud services to customers in government, banking, financial services, healthcare, life sciences, manufacturing, and other security-conscious industries. Responsibilities Responsibilties: The Cloud Security...


  • Scottsdale, United States Axway Full time

    Senior Cloud Security EngineerJob ID2024-7806CategoryTechnical/EngineeringJob LocationUS-AZ-ScottsdaleOverviewIn 2024, we are pursuing our ambitions to continue to enable organizations' digital transformation. We are looking for our new Cloud Security Engineer to join Axway's family. Are you ready? Join us now!! Together, we can. Together, we will. Axway is...