Talent.com
Senior Cybersecurity Penetration Tester
Senior Cybersecurity Penetration TesterFidelity Investments • Merrimack, NH, US
Senior Cybersecurity Penetration Tester

Senior Cybersecurity Penetration Tester

Fidelity Investments • Merrimack, NH, US
[job_card.30_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

Job Description

The mission of the penetration testing team is to protect Fidelity's assets and our customers’ livelihoods from the threat of exploitation by malicious adversaries.

The penetration testing team does this by proactively identifying vulnerabilities in our systems and serving as subject matter experts to enable the business units to mitigate them in a positive, collaborative, innovative manner.

Our Vision

We aspire to be a best-in-class pen test team, with fully engaged, passionate members.

Producing high-quality work in a consistent, effective, efficient, customer-oriented manner.

Providing competitive advantage to the firm and serving as a differentiator in the marketplace.

Serving as a role model for others across the Enterprise and wider industry.

And driving advancement and research in the cybersecurity space.

Fidelity has a large and diverse portfolio of products. This provides a varied and interesting role giving the team the opportunity to work on a multitude of different areas of the business.

The Expertise We’re Looking For

Bachelors degree or equivalent experience

5+ years of IT experience

Preferred 3+ years of hands-on web application penetration testing / ethical hacking experience

Preferred : OSCP, GWAPT, GXPN, GPEN, LPT, CEH, CISSP or other industry securitycertifications.

The Purpose of Your Role

Lead testing efforts on Fidelity's web and mobile applications and supporting systems.

Replicate the actual techniques and tools used by malicious attackers in an effort to model potential external threats.

Upon completion of the assessment, you will prepare reports and present the results to application owners, developers, and business unit information security teams.

Analyse test results, draw conclusions from results, and develop targeted exploit examples.

Consult with operations and software development teams to ensure potential weaknesses are addressed.

Contribute to the research or development of tools to assist in the vulnerability discovery process.

Collaborate with other teams within Enterprise Cybersecurity to improve the overall security of Fidelity's applications and infrastructure.

Stay current on security best practices and vulnerabilities.

The Skills You Bring

Ability to demonstrate manual testing experience including all of OWASP Top 10

Intermediate knowledge of application security mechanisms such as authentication and authorization techniques, data validation, and the proper use of encryption

Technical knowledge of, and the ability to recognize, various types of application security vulnerabilities

Demonstrated experience with common penetration testing and vulnerability assessment tools such as nmap, Wireshark, Nessus, NeXpose, BackTrack, Metasploit, AppScan, WebInspect, Burp Suite Professional, Acunetix, Arachni, w3af, NTOSpider

Intermediate knowledge of a programming or scripting language such a C, C#, Python, Objective C, Java, Javascript, SQL,

Intermediate knowledge of Web Services technologies such as XML, JSON, SOAP, REST, and AJAX

Intermediate knowledge of web frameworks, including XML, SOAP, J2EE, JSON and Ajax

Experience with Enterprise Java or .NET web application frameworks, including Struts and Spring

Proven analytical and problem solving skills, as well as the desire to assist others in solving issues

Excellent interpersonal skills with a strong interest in the application security domain

Excellent communication and presentation skills and a proven ability to communicate threats and facilitate progress towards long-term remediation

Highly motivated with the willingness to take ownership / responsibility for their work and the ability to work alone or as part of a team.

The Value You Deliver

Fidelity provides key financial services to a wide variety of demographics. In many instances we are managing our customers financial future and savings. This is something we take very seriously. Protecting our customers and their data is of paramount importance to us. This role plays a key part in helping to protect the livelihoods of our customers around the world and plays a significant part in preventing real-world cyber attacks.

How Your Work Impacts the Organization

The Penetration Testing team forms part of Security Assessment group within Enterprise Cybersecurity (ECS). The goal of the Security Assessment group is to proactively identify and remediate vulnerabilities in Fidelity’s applications and infrastructure. We work very closely with all of the key Business Units to ensure that they remain secure while they deliver key projects to advance the firm.

Certifications :

[job_alerts.create_a_job]

Penetration Tester • Merrimack, NH, US

[internal_linking.related_jobs]
Compliance Specialist (STL)

Compliance Specialist (STL)

InsideHigherEd • Lowell, Massachusetts, United States
[job_card.full_time]
Salary commensurate with experience within the grade / range and grant / See salary ranges below in posting text.The UMass Lowell (UML) Submillimeter Wave Technology Laboratory (STL) is seeking a Compl...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Product Complaints Engineer - Team Lead

Product Complaints Engineer - Team Lead

DEKA Research and Development • Manchester, NH, United States
[job_card.full_time]
DEKA R&D has an immediate opening for a Product Complaints Engineer - Team Lead to work in a dynamic Medical Device Research and Development environment. The position reports to the Product Complain...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior Principal, IT Governance, Risk and Compliance (GRC)

Senior Principal, IT Governance, Risk and Compliance (GRC)

American Red Cross • Manchester, NH, United States
[job_card.full_time]
Please use Google Chrome or Mozilla Firefox when accessing Candidate Home.By joining the American Red Cross you will touch millions of lives every year and experience the greatness of the human spi...[show_more]
[last_updated.last_updated_variable_hours] • [promoted] • [new]
Sr. Risk Manager

Sr. Risk Manager

Fidelity • Merrimack, NH, US
[job_card.full_time]
Risk Manager will provide risk management support to the Fidelity Health Domain and Operations teams with an emphasis on emerging, debit card, and spending account products and initiatives.Your par...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior Oracle ERP Architect / Technical Lead (Wilmington)

Senior Oracle ERP Architect / Technical Lead (Wilmington)

JMD Technologies Inc. • Wilmington, MA, US
[job_card.full_time] +1
Senior ERP Architect / Technical Lead (1 Opening).On-site in Wilmington MA (3x / week onsite at least).Architect and lead Oracle Cloud Fusion ERP solutions, ensuring alignment with business requirement...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Cyber Operations Specialist (ARMY)

Cyber Operations Specialist (ARMY)

U.S. Army • Manchester, New Hampshire, United States
[job_card.full_time] +1
[filters_job_card.quick_apply]
Cyber Operations Specialists conduct integrated and synchronized offensive cyberspace operations by targeting enemy and hostile adversary activities and capabilities. These specialists also conduct ...[show_more]
[last_updated.last_updated_30]
Sr. Fraud Technology Risk Analyst

Sr. Fraud Technology Risk Analyst

Fidelity Investments • Merrimack, NH, United States
[job_card.full_time]
Are you passionate about protecting customers and the enterprise from fraud risk?.The Enterprise Technology Risk & Analytics (ETRA) group is seeking a seasoned professional to join the Fraud Risk T...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Manager, Crypto Fraud Response and Recovery

Manager, Crypto Fraud Response and Recovery

Fidelity Investments • Merrimack, NH, United States
[job_card.full_time]
Are you passionate about investigating fraud, identifying root causes, and presenting findings and recommendations? If so, you might be the right candidate for the Manager, Fraud Response and Recov...[show_more]
[last_updated.last_updated_1_day] • [promoted]
Cyber Operations Specialist (Army)

Cyber Operations Specialist (Army)

U.S. Army • Lowell, Massachusetts, United States
[job_card.full_time] +1
[filters_job_card.quick_apply]
Cyber Operations Specialists conduct integrated and synchronized offensive cyberspace operations by targeting enemy and hostile adversary activities and capabilities. These specialists also conduct ...[show_more]
[last_updated.last_updated_30]
Compliance Specialist (STL)

Compliance Specialist (STL)

UMass Lowell • Lowell, MA, United States
[job_card.full_time]
The UMass Lowell (UML) Submillimeter Wave Technology Laboratory (STL) is seeking a Compliance Specialist.This position plays a key role in ensuring compliance with cybersecurity standards as well a...[show_more]
[last_updated.last_updated_30] • [promoted]
This website uses cookies to allow for its correct operation and the services offered. For further information, please consult ourCookiePolicy.

This website uses cookies to allow for its correct operation and the services offered. For further information, please consult ourCookiePolicy.

Santander • North Billerica, MA, US
[job_card.full_time]
Santander is a global leader and innovator in the financial services industry.We believe that our employees are our greatest asset. Our focus is on fostering an enriching journey that empowers you t...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior Oracle ERP Architect / Technical Lead

Senior Oracle ERP Architect / Technical Lead

JMD Technologies Inc. • Wilmington, MA, United States
[job_card.full_time]
Senior ERP Architect / Technical Lead (1 Opening).On-site in Wilmington MA (3x / week onsite at least).Architect and lead Oracle Cloud Fusion ERP solutions, ensuring alignment with business requirement...[show_more]
[last_updated.last_updated_variable_days] • [promoted]
Surveillance Associate

Surveillance Associate

DraftKings • Nashua, NH, US
[job_card.full_time]
At DraftKings, AI is becoming an integral part of both our present and future, powering how work gets done today, guiding smarter decisions, and sparking bold ideas. It's transforming how we enhance...[show_more]
[last_updated.last_updated_30] • [promoted]
Lead Security Engineer - Cyber Security

Lead Security Engineer - Cyber Security

Relativity • Manchester, NH, United States
[job_card.full_time]
As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...[show_more]
[last_updated.last_updated_30] • [promoted]
Online Product Tester

Online Product Tester

Online Consumer Panels America • Manchester, New Hampshire, US
[job_card.part_time] +1
Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies. We guarantee 15-25 hours per week with an hourly pay of bet...[show_more]
[last_updated.last_updated_30] • [promoted]
Remote Product Tester - $25-45 per hour

Remote Product Tester - $25-45 per hour

Online Consumer Panels America • Nashua, New Hampshire, US
[filters.remote]
[job_card.part_time] +1
Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies. We guarantee 15-25 hours per week with an hourly pay of bet...[show_more]
[last_updated.last_updated_30] • [promoted]
Testing Proctor

Testing Proctor

InsideHigherEd • Lowell, Massachusetts, United States
[job_card.part_time]
Student Affairs - Student Support Services.About Middlesex Community College : .Middlesex Community College (MCC), established in 1970, provides access to affordable education to prepare individuals ...[show_more]
[last_updated.last_updated_30] • [promoted]
Senior Test Development Engineer - Onsite Tewksbury, MA

Senior Test Development Engineer - Onsite Tewksbury, MA

Raytheon • Tewksbury, MA, US
[job_card.temporary]
MA132 : Tewksbury, Ma Bldg 2 Sudbury 50 Apple Hill Drive Sudbury - Building 2, Tewksbury, MA, 01876 USA.Person, or Immigration Status Requirements : . At Raytheon, the foundation of everything we do is...[show_more]
[last_updated.last_updated_30] • [promoted]