Strengthen FRS security posture through offensive security assessments where you will perform complex security assessments including the identification and exploitation of vulnerabilities across the system
Leverage offensive security foundational knowledge to support in the execution of cybersecurity solutions to benefit security engagements and mitigate cyber threats
Improve operational efficiency by building and evaluating workflow processes, procedures, checklists, automation, and tooling
Enable success of security initiatives by performing tasks to development surrounding security or technology capabilities and creating operations-based documentation
Address cybersecurity needs by advising clients on best practices and how to implement changes to securely address complex business needs
Execute on cross-team initiatives to implement cybersecurity improvements for recognized gaps
Grow security capabilities to defend the FRS by working with internal and external stakeholders to execute on strategies and plans to enforce security requirements
Identify and prioritize key risk areas balancing business risk and cyber threats via research of industry trends and business partner missions
Assist and execute technical security assessments to identify risk, likelihood and impact an attacker may have on the System due to weak or missing controls
Perform cybersecurity and Associate Operator duties as assigned
Requirements
1-3 years of relevant information security related work experience in areas such as: computer network defense, computer network exploitation and post-exploitation
Bachelor’s degree or equivalent work experience
Understanding of adversary emulation operations including web application testing, network penetration testing, reconnaissance, social engineering, exploitation and post-exploitation, covert techniques, lateral movement, and data exfiltration
Knowledgeable in offensive cybersecurity roles, such as malware development, red teaming, penetration testing (e.g., web, infrastructure, cloud), purple team exercises in cloud and on-prem environments
Team player with interpersonal, collaborative and consultative skills
Adept attention to detail, oral and written communications skills tailored to audiences ranging from technical subject matter expert partners to senior executive stakeholders
Understanding client relationships, including determining needs, learning expectations, and demonstrating commitment to delivering quality results
Familiar with scripting/programming of Python, PowerShell, or C# with the ability to create and customize tools
The following certifications are highly preferred: GWAPT, GPEN, OSCP, CRTO