Key Skills: Cyber Security, Web Application Security, Vulnerability, Cyber Threat.
Roles & Responsibilities:
- Execute and support annual risk assessments of market-deployed products; document and quantify findings, and relay results to development teams.
- Facilitate annual penetration tests as assigned, and develop or assess final reports.
- Master SBOM generation using various tools and scripts; become an authority in utilizing and analyzing results.
- Assess security updates for potential impacts on market-deployed products and track emerging vulnerabilities.
- Compose and/or evaluate patching and update communications for customers and coordinate distribution.
- Ready software for SAST, DAST, and fuzzing evaluations; analyze and document results, and formulate remediation strategies.
- Deploy image hardening protocols including implementation of DISA STIGs.
- Compile product risk summaries for semi-annual stakeholder reporting.
Experience Requirement:
- 4 years of equivalent professional experience in proficiency of Microsoft development environment scripting, particularly PowerShell.
- Knowledge of Windows OS services, processes, driver configurations, registry settings, and analysis methodologies.
- Understanding of Windows and Linux cybersecurity configurations.
- Experience with security tools including SAST, DAST, SBOM, network forensics tools, fuzzing, and standard penetration testing applications.
- Networking expertise.
- Familiarity with Microsoft Visual Studio, ADO, or comparable integrated development environments (IDEs).
- Capacity to follow instructions, identify challenges, recommend solutions, and deliver high-quality results on schedule.
- Understanding of Software Development Lifecycle Management (SDLC) methodologies (Agile/Scrum, iterative).
- Strong interpersonal and communication abilities to cultivate positive relationships across departments in virtual, remote, and asynchronous work environments.
Education: Any Post Graduation, Any Graduation