Cyber Vulnerability Analyst & Penetration Tester II (Remote)

United States - Remote

Applications have closed

Rackspace

As a cloud computing services pioneer, we deliver proven multicloud solutions across your apps, data, and security. Maximize the benefits of modern cloud.

View company page

Rackers:  Valued members of a winning team Our employees, affectionately called “Rackers,” are our true strength and differentiator. As valued members of a winning team on an inspiring mission, Rackers make a real difference for our customers. It’s why we’re frequently recognized as an employer of choice by global industry-leading programs, including Great Place to Work, Forbes and Fortune.  They embody our Core Values, demonstrating that Fanatical Experience is: ·          Excellence. We are an accountable, disciplined, high-performing company with proven results.·          Customer-driven. We are proactive, collaborative and committed to success for our customers.·          Expertise. Rackers are passionate learners who are embedded in our customers’ businesses to provide unbiased solutions.·          Agility. We adopt new technologies and evolve services to meet customers where they are in their journey.·          Compassion. We’re one team doing the right thing for our customers, communities, and each other. Position Overview: As our Cyber Vulnerability Analyst & Penetration Tester II you will be part of a fanatical cyber security team where you’ll contribute to building and delivering services, solutions and processes that enable security defects to found, fixed or avoided before applications are released to production.   Work Location:  Work may be performed remotely from any of the 48 continental United States. Key Duties and Responsibilities:·       Tracks public and privately released vulnerabilities and assists in the corporate triage process including identification, criticality evaluation, remediation planning, communications, and resolution. ·       Conducts vulnerability assessment scans, assisting with penetration testing, exposing security vulnerabilities and risks, and recommending solutions to mitigate such vulnerabilities.·       Provides significant contributions to black box testing, source code analysis, manual pen testing, and training. ·       Schedules and executes vulnerability/ penetration testing. ·       Leads limited (in scope or complexity) engagements and provides end-to-end planning and execution for those engagements. ·       Reports out on vulnerability and penetration testing and works with business units to develop remediation plans. ·       Works closely with the Risk Management, ISOC and Intel teams. ·       Keeps up with the changing nature of security threats. ·       Assesses the risk from not only a tactical perspective but also a strategic/global scale and apply these findings to aid in prioritizing remediation efforts. ·       Interacts with business units to discover, triage and resolve security vulnerabilities with manual and automated tools to enforce security criteria as part of a Secure Development Life Cycle on a continuous basis. ·       Researches and investigates new and emerging vulnerabilities and participate in external security communities. Required Knowledge, Skills, and Abilities:   ·       Experience executing, ethical hacking and penetration testing. ·       Significant knowledge regarding security vulnerabilities, application analysis, and protocol analysis. ·       Knowledge of and practiced experience with penetration testing and ethical hacking products. ·       Knowledge of and ability to manage vulnerability scans against a range of assets.·       Experience devising methods to automate testing activities and streamline testing processes.·       Practical experience with Linux and Windows operating systems. ·       Familiarity with common programming or scripting languages. ·       Ability to interpret and prioritize vulnerability scan results into remediation actions and tracking those actions through to completion. ·       Practiced knowledge performing vulnerability assessments against servers, workstations, web applications and other components. ·       Knowledge regarding security vulnerabilities, application analysis and protocol analysis.·       Knowledge of methods for on-going evaluation of the effectiveness and applicability of information security controls (e.g., vulnerability testing, and assessment tools). ·       Ability to understand information security risks associated with vulnerability and penetration testing. ·       Knowledge of patching programs of major hardware/software manufacturers. ·       Knowledge of secure configuration and hardening of systems. ·       Ability to analyze vulnerabilities to appropriately characterize threats and provide remediation advice. ·       Familiarity with classes of vulnerabilities, appropriate remediation, and industry-standard classification schemes (CVE, CVSS, CPE).·       Experience applying ethical hacker techniques, phishing schemes, emerging logical security threats, and compromised server techniques Experience/Education/Certifications:·       Requires 4 years of similar job related experience  ·       Bachelor’s degree in Computer Science or related field required. At the manager’s discretion, additional relevant experience may substitute for the degree requirement. High school diploma or equivalent required·       Current CEH, GPEN, CISSP, and GCIA certifications preferred 
Pay and Benefits: The following information is required by the Colorado Equal Pay Transparency Act and applies only to individuals working in the state of Colorado. The anticipated starting pay range of Colorado applicants for this role is $88,600- $114,800.  Actual compensation is influenced by a wide array of factors including but not limited to skill set, level of experience, licenses and certifications, and specific work location. Information on benefits offered is here.
#LI-MF1 #LI-Remote

About Rackspace TechnologyWe are the multicloud solutions experts. We combine our expertise with the world’s leading technologies — across applications, data and security — to deliver end-to-end solutions. We have a proven record of advising customers based on their business challenges, designing solutions that scale, building and managing those solutions, and optimizing returns into the future. Named a best place to work, year after year according to Fortune, Forbes and Glassdoor, we attract and develop world-class talent. Join us on our mission to embrace technology, empower customers and deliver the future.  More on Rackspace TechnologyThough we’re all different, Rackers thrive through our connection to a central goal: to be a valued member of a winning team on an inspiring mission. We bring our whole selves to work every day. And we embrace the notion that unique perspectives fuel innovation and enable us to best serve our customers and communities around the globe. We welcome you to apply today and want you to know that we are committed to offering equal employment opportunity without regard to age, color, disability, gender reassignment or identity or expression, genetic information, marital or civil partner status, pregnancy or maternity status, military or veteran status, nationality, ethnic or national origin, race, religion or belief, sexual orientation, or any legally protected characteristic. If you have a disability or special need that requires accommodation, please let us know.  

Tags: Black box CEH CISSP Code analysis Computer Science CVSS Ethical hacking GCIA GPEN Linux Pentesting Risk management Scripting Vulnerabilities Vulnerability scans Windows

Perks/benefits: Team events

Regions: Remote/Anywhere North America
Country: United States
Job stats:  33  7  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.