Senior Offensive Cybersecurity Engineer

Posted 8 Days Ago
Be an Early Applicant
Ciudad de México, Cuauhtémoc, Ciudad de México
Senior level
Automotive
The Role
As a Senior Offensive Cybersecurity Engineer, you'll manage vulnerabilities, conduct assessments, communicate results, and develop tools to support security operations and vulnerability management across the organization.
Summary Generated by Built In

We’re currently looking for a Senior Cyber Security Analyst (Remote) to join our InfoSec Offensive Vulnerability Management, Threat Intelligence, Application Code Scanning, Penetration Testing team in Mexico City or Aguascalientes. Additionally, serves across all areas of threat intelligence to help inform and defend the business, and protect brand reputation. Given that vulnerability management and risk exposure extend across all technical systems enterprise-wide, responsibilities of this position include identifying assets and vulnerabilities, reporting, remediation, and continuous assessment.

Job Duties:

  • Manage vulnerabilities across applications, endpoints, databases, networking devices, and mobile, cloud, and third-party assets.

  • Conduct continuous discovery and vulnerability assessment of enterprise-wide assets.

  • Document, prioritize, and formally report asset and vulnerability state, along with remediation recommendations and validation.

  • Communicate vulnerability results in a manner understood by technical and non-technical business units based on risk tolerance and threat to the business, and gain support through influential messaging.

  • Procure and maintain tools and scripts used in asset discovery and vulnerability status.

  • Leverage vulnerability database sources to understand each weakness, its probability, and remediation options, including vendor-supplied fixes and workarounds.

  • Conduct tactical assessments that require expertise in social engineering, application security (web and mobile), physical methods, lateral movement, threat analysis, internal and external network architecture, and a wide array of commercial and bring-your-own (BYO) products.

  • Develop and maintain tools and scripts used in penetration-testing and red team processes.

  • Support purple team exercises designed to build strength across disparate teams.

  • Work closely with the security operations center (SOC) to leverage intelligence sources, identify new threats in the wild, and verify the organization’s security posture against them.

  • Work closely with infrastructure teams to advise and support remediation efforts to close vulnerability exposure to new threats in the wild and verify the organization’s security posture against them.

  • Regularly research and learn new TTPs in public and closed forums, and work with colleagues to assess risk and implement/validate controls as necessary.

  • Maintain an active database comprising third-party assets, their vulnerability state, remediation recommendations, overall security posture, and potential threat to the business.

Skills and Experience:

  • -5+ years' experience in information security administration, offensive tactics, monitoring, and IR.

  • Proficient in scripting languages such as Python, PowerShell, Bash, and Ruby.

  • Competent with testing frameworks and tools such as Burp Suite, Cobalt Strike, Kali Linux, Nessus, and PowerShell Empire.

  • Experience conducting penetration-testing/red team engagements as a consultant or within a previous role in a professional organization.

  • Strong operating system knowledge across *nix, Windows, and Mac; proficient with networking protocols.

  • Proficient with vulnerability management solutions such as Qualys, Nessus, Kenna Security, Tanium, and open source. NTH

  • Experience stabilizing systems to run minimal application requirements, least privilege, and additional host hardening.

  • Understanding of Windows and *nix operating systems, endpoint applications, networking protocols, and devices.

  • Preferably some experience with vulnerability management across Amazon Web Services (AWS), Microsoft Azure, or Google Cloud Platform (GCP).

  • Experience conducting organization-wide vulnerability scanning and remediation processes.

  • Ability to obtain and maintain persistence within corporate systems, while avoiding detection.

  • Familiarity with defensive and monitoring technologies such as intrusion prevention/detection systems (IPS/IDS), security information and event management systems (SIEMs), firewalls, endpoint protection (EPP), and endpoint detection/response (EDR) tools, as well as user and entity behavior analytics (UEBA).

  • Understanding of OWASP, the MITRE ATT&CK framework, and the software development lifecycle (SDLC).

Education:

  • Bachelor's degree in a related discipline or equivalent work experience.

Mexico City Mexico

Top Skills

AWS
Azure
Bash
Burp Suite
Cobalt Strike
GCP
Ips/Ids
Kali Linux
Nessus
Powershell
Python
Qualys
Ruby
Siems
Tanium
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Yokohama, Kanagawa
160,000 Employees
On-site Workplace
Year Founded: 1933

What We Do

At Nissan Motor Corporation, we are transforming how people live and drive — and we need passionate innovators to help us create a more sustainable future. As a global automotive leader, we take pride in enriching the lives of our employees and believe your passion, talent, and dedication are essential to our success. That’s why we provide career growth opportunities to help you move ahead, internal mobility so you can explore other career paths, and a healthy work-life balance so you always feel your best. In the spirit of “doing what others don’t dare to do,” we value your knowledge and life experience. We work to ensure all employees have a voice and always feel comfortable using it.

Join us on our journey into a future of possibility, and experience a career as exhilarating as the open road.

Why Work With Us

Nissan is a global company driven by the accomplishments of our employees. We find pride in our continued commitment to diversity and an exciting lineup of vehicles. Simply put, we are at the intersection of people, transportation, and the environment which keeps us at the forefront of innovation.

Gallery

Gallery

Similar Jobs

SharkNinja Logo SharkNinja

Reverse Logistics and Refurbishment Coordinator

Beauty • Robotics • Design • Appliances • Manufacturing
Easy Apply
Mexico, Cuauhtémoc, Ciudad de México, MEX
3600 Employees

SharkNinja Logo SharkNinja

Order Management Coordinator

Beauty • Robotics • Design • Appliances • Manufacturing
Easy Apply
Mexico, Cuauhtémoc, Ciudad de México, MEX
3600 Employees

Takeda Logo Takeda

Digital Product Owner - Plasma Derived Therapies

Healthtech • Software • Analytics • Biotech • Pharmaceutical • Manufacturing
Hybrid
Delegación Cuajimalpa de Morelos, Cuajimalpa de Morelos, Ciudad de México, MEX
50000 Employees

Takeda Logo Takeda

Patient Experience Enablement Lead

Healthtech • Software • Analytics • Biotech • Pharmaceutical • Manufacturing
Hybrid
Delegación Cuajimalpa de Morelos, Cuajimalpa de Morelos, Ciudad de México, MEX
50000 Employees

Similar Companies Hiring

Cox Enterprises Thumbnail
Software • Other • Information Technology • Greentech • Cybersecurity • Cloud • Automotive
Atlanta, GA
50000 Employees
UL Solutions Thumbnail
Software • Renewable Energy • Professional Services • Energy • Consulting • Chemical • Automotive
Chicago, IL
15000 Employees
HERE Technologies Thumbnail
Software • Logistics • Internet of Things • Information Technology • Computer Vision • Automotive • Artificial Intelligence
Amsterdam, NL
6000 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account