Information Security Analyst at Hitss conducting penetration tests and security assessments across IT infrastructures. Collaborating with teams to report and mitigate vulnerabilities.
Responsibilities
Perform penetration tests on IT infrastructure, including networks, operating systems, servers and network devices, as well as web and mobile applications;
Execute penetration testing phases in accordance with established best practices, processes and methodologies;
Identify and exploit security vulnerabilities in systems, networks and applications using manual techniques and automated tools;
Prepare and present detailed penetration testing reports.
Requirements
Bachelor's degree in Cyber Defense, Computer Science, Information Systems or a related field;
Basic English proficiency;
Strong experience in offensive security projects (penetration testing);
Experience using methodologies such as OWASP, OSSTMM, NIST, PTES, among others;
Experience creating testing methods to identify and exploit vulnerabilities;
Experience finding security flaws in software (web applications and proprietary and open-source systems);
Experience documenting test results and discussing findings with internal and external teams;
Experience providing recommendations for vulnerability remediation;
Experience preparing and presenting detailed penetration testing reports;
Familiarity with tools such as proxies, port scanners, vulnerability scanners, exploit frameworks, Burp Suite, Nessus, Nmap, Metasploit;
Knowledge of computer networks (protocols);
Knowledge of operating system architecture (Windows and Linux);
Certifications such as CompTIA Security+, CompTIA PenTest+, EC-Council CEH, Desec.
Benefits
Gender and race/ethnicity equity
Positions eligible for professionals with disabilities
Security Specialist providing comprehensive security support to USAFE - AFAFRICA operations. Drafting policies, conducting assessments, and collaborating with military leadership for force protection.
Senior Asset Security Analyst responsible for governance and security of assets at Afya. Ensuring protection of people and information while mitigating risks and complying with regulations.
Security Analyst (IAM) focusing on IAM design and governance for Whirr Crew's infrastructure. Enhancing security protocols and collaborating with various technical teams.
Cyber Security Analyst providing technical information security support at IntelePeer. Focus on Microsoft Defender administration and security compliance operations.
Security Analyst L2 at Var Group managing and analyzing security incidents for digital evolution. Focused on proactive threat hunting and continuous improvement of security processes.
Security Analyst L3 responsible for security event management at Var Group. Analyzing security incidents and collaborating with teams to enhance security measures.
Cyber Security Analyst developing and implementing cyber security procedures for federal business objectives in a dynamic environment. Requires substantial expertise in cybersecurity and vulnerability management.
Cyber Security Analyst leading a team in providing security services at Blackwatch. Ensuring quality deliverables and compliance in a dynamic working environment.
Cyber security analyst in the Cyber Security team at Sanofi, supporting legal operations and enhancing information protection. Requires digital environment experience and strong technical skills.
Compliance & Information Security Analyst at beqom managing GRC and vendor risk management processes. Focused on ensuring compliance and data protection in a hybrid work setting.