Sr Manager, Penetration Testing

1 week ago


Morrisville, United States Thermo Fisher Scientific Full time

Work Schedule Standard (Mon-Fri) Environmental Conditions Office Job Description At Thermo Fisher Scientific, you'll join a curious team that shares your passion for exploration and discovery. We invest heavily in R&D and offer ample resources for you to make meaningful contributions to the world Location/Division Specific Information: This position reports into the Senior Director, Product Security within Corporate Infrastructure & Security (CIS) and is based in Frederick, Maryland or Raleigh, North Carolina. How will you make an impact? Lead a distributed team focused on identifying and improving the security of our various products and internal systems. Make a meaningful difference for our customers, patients, and partners who rely on Thermo Fisher products. Join our team and make an impact Position Summary: The Sr. Manager, Penetration Testing, is responsible for helping to secure the organization's products and assets globally. They will conduct research, testing, and validation of the products and platforms, as well as our internal environments throughout their development lifecycles. This role involves using robust solutions within the CIS program, focusing on testing, security awareness, education, vulnerability assessments, and risk evaluation. Continuous improvement is driven through our practical process improvement (PPI) methodology and will be instrumental in helping find a better way, every day. Key Responsibilities: Perform penetration testing activities and on products and/or infrastructure to resolve vulnerabilities, validate remediation, and reduce overall risk profiles. Develop comprehensive mentorship for frequently encountered vulnerabilities and corresponding remediation strategies. Build and improve existing methodologies for penetration testing, drawing from industry standards and mentorship provided by established agencies like CISA and the FDA. Coordinate on security risk assessments for new and existing products through the pre- and post-market teams. Build working partnerships with product development leaders and peers to drive secure development and integration of security features into all phases of product, firmware, software design processes and product development lifecycle. Collaborate with architecture and development teams to develop shared security frameworks to enable consistent application of secure coding standard methodologies across the enterprise. Educate key partners on program, risks, and importance of security in our products and environment. Work with cross-functional teams to find and fix security issues in Thermo Fisher products and infrastructure. Use tools to send vulnerability information to the development team for fixing. Mentor others in what constitutes secure product activities. Coordinate/participate in and perform design reviews, peer reviews, and code reviews. Ensure excellent consistency, documentation, and process across all programs. Collaborate with other departments (e.g., Risk Management, Internal Audit, HR, Legal, etc.) to direct compliance issues to appropriate existing channels for investigation and resolution. Creation of security bulletins to address new or evolving threats to the company's assets and products. Travel up to 25% and on-call/after hours duties may be required. Minimum Requirements/Qualifications: Deep knowledge of IoT and digital device research methods, variables and parameters including analysis, testing and documentation. Deep understanding of cryptography, authentication, authorization, network security protocols, and application security. Strong exposure to application security standards including OWASP TOP 10, CSC 20, etc. Familiarity with regulations and requirements surrounding medical devices and IoT such as FDA pre-market and post-market cybersecurity requirements. Bachelor’s Degree or equivalent experience in Information Assurance, Information Security, Management Information Systems, Risk Management, or Computer Science (Master’s Degree or equivalent experience a plus) or a related field. Relevant technical certificates a plus (OSCP, SANS, GIAC, etc). 5+ years of related work experience with security consulting, product security, secure software development, risk assessment, and/or vulnerability management. Strong interpersonal and documentation skills are a must. Ability to explain and promote technical concepts. Strong attention to detail and organization skills. Excellent verbal and written communication skills and the ability to partner with a diverse group of executives, managers, and subject matter authorities. The ideal candidate will have hands on experience in one or more of the following areas: Hardware System Integration, Signal and Power Integrity, RF Systems, Wi-Fi, Bluetooth, Wireless Communications, TCP/IP, Network and Application Penetration Testing. Thermo Fisher Scientific is an EEO/Affirmative Action Employer and does not discriminate on the basis of race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability or any other legally protected status.



  • Morrisville, North Carolina, United States Thermo Fisher Scientific Full time

    About the Role:This is a challenging and rewarding opportunity to lead a distributed team focused on identifying and improving the security of various products and internal systems at Thermo Fisher Scientific. As Sr. Manager, Penetration Testing, you will play a critical role in securing our organization's products and assets globally.Key...

  • Sr BOA

    1 month ago


    Morrisville, United States Edward Jones Full time

    Would you call yourself a relationship builder, a problem solver or a critical thinker? If you answered yes, we need you on our team.At Edward Jones, we are very intentional in calling our field associates branch teams. Most of our teams are two or three people, and in a Branch Office Support Professional role, you are a critical member of that team along...

  • Sr BOA

    1 month ago


    Morrisville, United States Edward Jones Full time

    Would you call yourself a relationship builder, a problem solver or a critical thinker? If you answered yes, we need you on our team.At Edward Jones, we are very intentional in calling our field associates branch teams. Most of our teams are two or three people, and in a Branch Office Support Professional role, you are a critical member of that team along...

  • Sr BOA

    1 month ago


    Morrisville, United States Edward Jones Full time

    Would you call yourself a relationship builder, a problem solver or a critical thinker? If you answered yes, we need you on our team.At Edward Jones, we are very intentional in calling our field associates branch teams. Most of our teams are two or three people, and in a Branch Office Support Professional role, you are a critical member of that team along...

  • Sr BOA

    1 month ago


    Morrisville, United States Edward Jones Full time

    Would you call yourself a relationship builder, a problem solver or a critical thinker? If you answered yes, we need you on our team.At Edward Jones, we are very intentional in calling our field associates branch teams. Most of our teams are two or three people, and in a Branch Office Support Professional role, you are a critical member of that team along...


  • Morrisville, United States Teleflex Full time

    Position Summary The Sr. Credit to Cash Analyst will be responsible to manage the day-to-day collections of receivables within their global portfolio. The Sr. Analyst portfolio will include accounts in various regions such as AMERICAS, EMEA, and/or APAC. The successful candidate will demonstrate the ability to independently manage the complex accounts...


  • Morrisville, United States UNC Health Care Full time

    Description Become part of an inclusive organization with over 40,000 teammates, whose mission is to improve the health and well-being of the unique communities we serve.Summary:As an Epic Inpatient Sr. Application Analyst, you will serve as the primary support contact for specific Epic Inpatient applications, playing a crucial role in the organization's...


  • MORRISVILLE, United States UNC Health Care Full time

    Description Become part of an inclusive organization with over 40,000 teammates, whose mission is to improve the health and well-being of the unique communities we serve.Summary:As an Epic Inpatient Sr. Application Analyst, you will serve as the primary support contact for specific Epic Inpatient applications, playing a crucial role in the organization's...


  • Morrisville, United States UNC Health Full time

    Description Become part of an inclusive organization with over 40,000 teammates, whose mission is to improve the health and well-being of the unique communities we serve.Summary:As an Epic Inpatient Sr. Application Analyst, you will serve as the primary support contact for specific Epic Inpatient applications, playing a crucial role in the organization's...


  • Morrisville, United States UNC Health Care Full time

    Description Become part of an inclusive organization with over 40,000 teammates, whose mission is to improve the health and well-being of the unique communities we serve.Summary:As an Epic Inpatient Sr. Application Analyst, you will serve as the primary support contact for specific Epic Inpatient applications, playing a crucial role in the organization's...

  • Sr BOA

    3 weeks ago


    Morrisville, United States Edward Jones Full time

    Would you call yourself a relationship builder, a problem solver or a critical thinker? If you answered yes, we need you on our team.At Edward Jones, we are very intentional in calling our field associates branch teams. Most of our teams are two or three people, and in a Branch Office Support Professional role, you are a critical member of that team along...


  • Morrisville, United States Diverse Lynx Full time

    Sr. C++ Embedded Engineer Location: 7001 Development Dr, Morrisville, NC - 27560 - Onsite Role Duration: 6-12 Months Contract, to be renewed depending on performance Who are we looking for? 3 to 5 years' experienced software engineers to write, debug and test embedded Firmware. Manage and maintain firmware build tools, manage builds, and release...


  • Morrisville, United States Lenovo Full time

    General Information Req # WD00064645 Career area: Human Resources Country/Region: United States of America State: North Carolina City: Morrisville Date: Thursday, May 30, 2024 Working time: Full-time Additional Locations: * United States of America - North Carolina - Morrisville Why Work at Lenovo We are Lenovo. We do what we say. We own what...

  • Sr Process Engineer

    2 weeks ago


    Morrisville, United States Alcami Corporation Full time

    Free Healthcare Option | Bonus Program | 401(k) with Match | College Loan Forgiveness Core Values: Trustworthy, Relentless, Accountable, Collaborative, Customer-Focused, and Skilled At Alcami, we deliver reliable solutions that unlock the potential of transformative medicines from discovery to commercialization, through trusted partnership with our clients,...


  • Morrisville, United States Align Technology Full time

    About this opportunity An exciting opportunity has come available for a creative and results-driven marketing professional with extensive experience in brand building, campaign planning and marketing activations to maintain and strengthen our position as the most recognized brand in the dental industry. The Sr. Marketing Manager GP Channel, Americas & EMEA...


  • Morrisville, North Carolina, United States The Computer Merchant, LTD. Full time

    Job Description:The Computer Merchant, LTD. is seeking a highly skilled Cybersecurity Solutions Architect to join our team. This role involves implementing dynamic detections, integrating alerting platforms with various security tools, and developing use cases with CISO end users.Key Responsibilities:Develop and implement actionable alerts and workflows for...


  • Morrisville, United States Sensus Full time

    Xylem (XYL) is a leading global water technology company committed to developing innovative technology solutions to the world’s water challenges. The Company’s products and services move, treat, analyze, monitor and return water to the environment in public utility, industrial, residential and commercial building services settings. Xylem also provides...


  • Morrisville, United States Lenovo Full time

    General InformationReq # WD00073734Career area: EngineeringCountry/Region: United States of AmericaState: North CarolinaCity: MorrisvilleDate: Monday, October 28, 2024Working time: Full-timeAdditional Locations: * United States of America - North Carolina - MorrisvilleWhy Work at LenovoWe are Lenovo. We do what we say. We own what we do. We WOW our...


  • Morrisville, NC, United States UNC Health Care Full time

    Description Become part of an inclusive organization with over 40,000 teammates, whose mission is to improve the health and well-being of the unique communities we serve. Summary: As an Epic Inpatient Sr. Application Analyst, you will serve as the primary support contact for specific Epic Inpatient applications, playing a crucial role in the organization's...


  • Morrisville, United States Lenovo Full time

    Description and Requirements About Our Team Lenovo’s Cloud Service Provider (CSP) Segment is seeking a qualified Customer Program Manager (CPM) whose primary mission is to lead Account Core team to manage the new business opportunity, RFP bidding, contract, customer score card, QBR/QTR and account-based initiatives, starting from Early...