Job Summary:
As an Associate Offensive Cybersecurity Engineer, you'll perform penetration testing on web applications, APIs, and mobile applications, create detailed cybersecurity reports, and stay updated with the latest testing techniques and tools. You'll also present findings to customers, train team members, and develop scripts to automate testing processes. We are looking for a passionate Cybersecurity professional to join our best in class global team.
Responsibilities (including but not limited to):
- Perform penetration testing of entry level to intermediate web applications, APIs, and Mobile Applications utilizing black box and white box techniques aligned to OWASP Web Security Top 10 and PTES.
- Either currently or in the future, perform penetration testing of Generative Artificial Intelligence & Large Language Models
- Creating and conducting technical reviews of various highly detailed cybersecurity testing reports.
- Researching and staying up to date with the latest penetration testing techniques, tools and methodologies.
- Assisting with the development of scripts, tools, and processes to help automate various pentesting processes.
- Presenting various penetration testing reports to customers and discuss nuanced technical recommendations, with the expectation of leading customer presentations within 3 months.
- Discuss with, collaborate with, and train teammates from the Cybersecurity Red Team around various tools and techniques associated with application penetration testing.
Skills:
- Critical and creative thinking to strategize how to add value to customer engagements.
- Ability to self-manage time and commitments.
- Strong attention to detail and well-organized.
- Highly motivated to continuously learn and innovate.
- Excellent verbal communication and written communication skills, especially when communicating complex concepts to non-technical audiences.
- Exceptional spelling and grammar skills for writing and proofreading documents.
- Familiarity and comfortability operating within the Linux operating system.
- Extremely comfortable leveraging BurpSuite and an API testing tools such as Postman.
You'll love this job if you:
- Value, integrity, and honesty above all else in a non-negotiable way.
- Have a passion for the information security industry and helping people.
- Are capable of managing time efficiently and meeting deadlines with multiple concurrent projects.
- Are able to work within constraints and to challenge the status quo.
- Are able to self-direct work, orient to action, and truly own the position.
- Have a collaborative attitude and mindset with colleagues and team members
Qualifications:
- 1+ Years of professional technology experience (I.e., Sysadmin, Networking, Cloud infrastructure, Software Development, etc.) (nice to have)
- 1+ Years of Capture the Flag (CTF), and or independent projects experience. (nice to have)
- 1+ Years experience scripting for automation, data science, or cybersecurity purposes (nice to have)
- 1+ Years of Penetration Testing Experience (nice to have)
- Bachelor’s Degree in one of the following areas of concentration: Computer Science, Software Development, Information Technology, Cybersecurity
- One or more of the following certifications (nice to have)
- Practical Mobile Pentest Associate (PMPA)
- Practical Web Pentest Associate (PWPA)
- Practical Web Pentest Professional (PWPP)
- Offensive Security Web Assessor (OSWA)
- Offensive Security Web Expert (OSWE)
- BurpSuite Certified Practitioner (BSCP)
- API Security Certified Professional (ASCP)
- Certified Web Exploitation Expert (CWEE)
- Certified Bug Bounty Hunter (CBBH)
The Benefits of Working for Abacus
- Exposure to diverse array of technologies
- Part of a team of experienced engineers who aim to deliver exceptional service
- Competitive compensation
- Robust benefits package: medical, dental, vision, disability, life insurance, 401k, and PTO
- Opportunities to further technical education through online courses and certification reimbursement program
- Positive, friendly, supportive office environment
- Workplace perks such as healthy snacks, wellness program, and fun events
Top Skills
What We Do
Abacus Group, LLC is a leading provider of hosted IT solutions and service focused on helping alternative investment firms by providing an enterprise technology platform specifically designed for the unique needs of the financial services industry. The innovative and award-winning Abacus Cloud platform allows investment managers to source all technology needs as a service, offering the capacity to scale on demand to meet current and future cybersecurity, storage and compliance requirements. The company has offices in New York, NY; San Francisco, CA; Boston, MA; Dallas, TX; Greenwich, CT; Los Angeles, CA; Charlotte, NC; and London, England. For more information, visit www.abacusgroupllc.com