Penetration Tester, Retail Engineering, Early Career

Austin, Texas, United States

Summary

Posted: May 14, 2024

Role Number:200551440

Are you meticulously organized and highly observant? Join our Information Systems and Technology group and play a vital function on one of two Apple teams: Software and Services and Corporate Functions. From Apple ID to the Apple website to our data centers around the globe, our diverse collection of engineers, designers and creators manage the massive systems and services that so many people rely on every single day. We also build the custom tools that empower other Apple employees to solve problems on their own. Joining this group means you’ll be part of the Apple nerve center. You could play a meaningful role in helping Apple connect with over a billion customer devices around the world. Or you could help over 130,000 employees stay connected with each other and our suppliers. Together, you and your team will help everyone at Apple do what they do best: explore every possibility. Do you have a passion for security? As a penetration tester in Retail Engineering Security, you'll be responsible for securing the Apple online store and flagship retail stores! You'll also be responsible for securing associated business-critical backend customer and payment systems. If this sounds like the position for you, we would love to meet you!

Key Qualifications


  • Passion for information security, particularly in penetration testing
  • Knowledge of web application security
  • Ability to read and understand source code (Java, JavaScript, Go etc), and find vulnerabilities in sophisticated code bases
  • Ability to learn new skills, concepts and technologies
  • Strong written and verbal communication skills, ability to communicate vulnerabilities to a variety of stakeholders
  • Strong understanding of fundamental computing, database, networking and security concepts


Description


As a penetration tester, you can expect to do the following: - To conduct manual penetration testing against web applications, APIs, cloud environments, infrastructure and mobile applications - Communicate these findings in high-quality reports and presentations - Provide mentorship to engineering teams and non-technical partners - Develop scripts and tooling to augment penetration testing activities or demonstrate proof of concepts - Source code review of large complex applications - Perform other security tasks and responsibilities

Education & Experience


Bachelor's in Computer Science or equivalent

Additional Requirements


  • OSCP or OSWE certification (nice to have)
  • Experience with CTFs or hacking labs
  • Proficiency in MacOS and other Unix based systems
  • Ability to grasp large sophisticated systems and context-switch when needed
  • Programming/scripting skills (Python, JavaScript, Go, etc)
  • Knowledge of cloud architecture and security (nice to have)
  • Publications, security research, bug bounties or CVEs are highly regarded



* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  46  21  0

Tags: APIs Application security Cloud Computer Science Java JavaScript MacOS OSCP OSWE Pentesting Python Scripting UNIX Vulnerabilities

Region: North America
Country: United States

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.