Search jobs > Phoenix, AZ > Penetration tester

Penetration Tester-Ethical Hacker - RedLens InfoSec

Nelnet
Phoenix, AZ, United States
$75K-$115K a year
Full-time

CampusGuard, a Nelnet Company, provides information security services for campus-based organizations including higher education institutions, healthcare providers, city, county and state government agencies and hospitality markets.

As a full-service information security firm, we leverage our knowledge combined with the industry standards for compliance and information security issues to provide our customers with world class information security & compliance services.

CampusGuard, a Nelnet Company, provides information security services for campus-based organizations including higher education institutions, healthcare providers, city, county and state government agencies and hospitality markets.

As a full-service information security firm, we leverage our knowledge combined with the industry standards for compliance and information security issues to provide our customers with world class information security & compliance services.

SUMMARY : CampusGuard provides information security services for our customers. We serve campus-based markets including education, healthcare, hospitality, and state and local government.

RedLens InfoSec, a division of CampusGuard, assists customers with protecting personally identifiable information as described by various industries and regulatory agencies through a detailed analysis of systems, infrastructure, personnel procedures and physical security.

As a full-service information security firm, we leverage our knowledge combined with the industry standards to provide our customers with world class information security & compliance services.

The Penetration Tester / Ethical Hacker is responsible for assessing a customer’s business and operating environment risk and infrastructure vulnerability posture.

This position requires a wide range of knowledge of network infrastructures, operating systems hardware platforms, networking systems and the security vulnerabilities within each category.

The qualified individual in this position will scan customer networks to discover and exploit security flaws and vulnerabilities with attack simulations on multiple platforms working against a specific customer-focused scope of work.

This position requires a highly technical skill level to assess the risks and vulnerabilities of a customer’s network while being able to articulate the issues to a non-IT professional audience.

Excellent communication skills, both oral and written are required to provide the reporting information to the customer after the tests are completed.

When not performing the specific Scanning and Penetration Testing / Ethical Hacking functions, the individual in this position will provide support to the Security Advisors with other security assessments and gap analysis functions.

JOB RESPONSIBILITIES : Responsible for scanning and performing in depth penetration testing and reporting customer business and operating environments and network infrastructure related to compliance and other relevant industry standards.

Activities include, but are not limited to the following : Understand the Scope of Work for each customer agreement and perform the duties and tasks required by those agreements in an organized, professional manner.

Perform vulnerability assessments and penetration testing, utilizing commercial and open source tools.Conduct web application penetration testing in line with Open Web Application Security Project.

Exploit security flaws and vulnerabilities with attack simulations on multiple projects working against specific customer systems and networks in accordance with an agreed scope of work.

Effectively provide technical risk assessment of technologies in networks, applications, systems, wireless, and perform social engineering.

Review and analyze security vulnerability data to identify applicability and false positives.Ability to solve complex technical problems and articulate to non-IT personnel.

Document all processes and procedures in accordance with CampusGuard standards.Report on findings and advise customers in remediation activities as required.

Research and develop testing tools, techniques, and process improvements.When time allows, perform security assessments and gap analysis of system infrastructures in alignment with the PCI DSS, HIPAA and other well-known information security requirements.

Assist with sales and marketing activities : Participate in sales calls as an industry expertAttend conferences as appropriatePrepare and perform industry-related presentations and / or webcastsOther sales / marketing support duties as requestedSalary Range : $75,000 - $115,000, varies based on experience and credentialsEDUCATION AND EXPERIENCE : The Penetration Tester / Ethical Hacker must have sufficient information security knowledge and experience to conduct technically complex security assessments.

  • Minimum acceptable education requirements : Bachelor’s degree in Computer Science, Cyber Security or the equivalent, and / or 3 years’ experience in the information security industry
  • Minimum acceptable certification requirements : Possess industry-recognized security certification(s) including but not limited to one or more of the following : Offensive Security Certified Professional (OSCP), GIAC Penetration Tester (GPEN), Offensive Security Web Expert (OSWE), Offensive Security Wireless Professional (OSWP), CompTIA PenTest+, CompTIA Advanced Security Practitioner (CASP+), Certified Red Team Operator (CRTO), TCM Security Practical Network Penetration Tester (PNPT)
  • Note : Candidate must agree to prepare for and pass certifications as directed by his or her supervisor (e.g., the PCI Professional (PCIP) certification).
  • Minimum acceptable work experience requirements : If a candidate does not satisfy any of the above education criteria or certificates, he or she must have a minimum of five years of relevant information security experience or proof of other recognized security certifications.

COMPETENCIES SKILLS / KNOWLEDGE / ABILITIES :

  • Offensive Security Web Expert (OSWE), Offensive Security Certified Expert (OSCE), or Offensive Security Certified Professional (OSCP) highly preferred.
  • Strong understanding of various web technologies and testing methodologies
  • Experience with penetration testing of cloud hosted environments is a plus.
  • Demonstrates an ability to methodically analyze problems, identify solutions, and communicate to a non-technical audience.
  • Exhibits good writing and communications skills, to include the ability to render concise reports, summaries, and formal oral presentations.
  • Adequately explains, presents, demonstrates when applicable and documents the operational impact of a particular vulnerability / exploit.

Advise customers in remediation tasks for identified vulnerabilities.

  • Self-motivated and able to work both independently and with a team.
  • Willing to travel up to 15% of the time.(C Core Competencies; F Functional)
  • C- Understanding of information processing networks and related security issues.
  • C- Understanding of Industry standard information security standards and their applicability.
  • C- Understanding of system infrastructures, vulnerabilities, exploits and remediation tasks.
  • C- Ability to flow from black box to gray box to white box testing methodologies dependent on customer needs
  • F- Understanding of Higher Education, Healthcare, and Government institutions and their structure.
  • F- Understanding of well-known security standards e.g., PCI DSS, NIST 800-53, ISO / IEC 27000-series, etc.
  • F- Understanding of Health Information security standards e.g., HIPAA, HITECH.
  • F- Understanding of differences between security breach, data compromise, and fraud
  • F- Understanding of campus type environments, structures, operations, and security needsOur benefits package includes medical, dental, vision, HSA and FSA, generous earned time off, 401K / student loan repayment, life insurance & AD&D insurance, employee assistance program, employee stock purchase program, tuition reimbursement, performance-based incentive pay, short- and long-term disability, and a robust wellness program.

Click here to learn more about our benefits : LINK () .Nelnet is an Equal Opportunity Employer, complies with Executive Order 11246, and takes affirmative action to ensure that qualified applicants are employed, and that employees are treated during employment, without regard to race, color, religion / creed, national origin, gender, or sex, marital status, age, disability, use of a guide dog or service animal, sexual orientation, military / veteran status, or any other status protected by Federal or State law or local ordinance.

Qualified individuals with disabilities who require reasonable accommodations in order to apply or compete for positions at Nelnet may request such accommodations by contacting Corporate Recruiting at 402-486-5725 or corporaterecruiting@nelnet.

net .Nelnet is a Drug Free and Tobacco Free Workplace.You may know Nelnet as the nation’s largest student loan servicer but we do more than that.

A lot more. We’re also a professional services company, consumer loan originator and servicer, payment processor, renewable energy innovator, and K-12 and higher education expert (and that’s just a shortlist).

For over 40 years, we’ve been serving our customers, associates, and communities to make dreams possible.EEO Info () EEO Letter () EPPA Info () FMLA Info ()

3 days ago
Related jobs
Promoted
Nelnet
Phoenix, Arizona

The Penetration Tester/Ethical Hacker is responsible for assessing a customer’s business and operating environment risk and infrastructure vulnerability posture. Minimum acceptable education requirements: Bachelor’s degree in Computer Science, Cyber Security or the equivalent, and/or 3 years’ experi...

Promoted
CornerStone Staffing
Tempe, Arizona
Remote

Maintain company performance and productivity standards. ...

Promoted
Ivy Exec
Phoenix, Arizona

Small Business Owners to participate in a one-on-one virtual discussion to better understand the types of products and services your business has with various financial institutions. Owner, Co-Owner,  Sole Proprietor. Legal, Information Technologies, Financial Services, Pharmaceutical, Healthcare, I...

Promoted
Maverick FX
Tempe, Arizona

Join our community of seasoned traders, and benefit from ongoing coaching, educational courses, and regular meetings. ...

Promoted
Online Consumer Panels America
Phoenix, Arizona

Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies. Online Consumer Panels America is a consulting firm that specializes in product testing and product development work. We design and conduct In-Home Usage Testing...

Promoted
CALERO
Phoenix, Arizona

As a Senior UI/UX Product Designer at Calero, you will be instrumental in making our product designs simple, clean, and engaging. We thrive on innovation and are looking for a Senior UI/UX Product Designer to join our team and help shape the future of technology expense management. Leading and mento...

Promoted
IMPACT Technology Recruiting
Scottsdale, Arizona

We are seeking a highly skilled and motivated Technical Product Owner to join our dynamic team. The ideal candidate will possess a unique blend of technical expertise, product management experience, and a passion for driving product development in an Agile environment. Proven experience as a Product...

Promoted
orangepeople
Phoenix, Arizona
Remote

Product Owner Experience, demonstrating the ability to prioritize and communicate product requirements effectively. We are seeking an experienced and dedicated Product Owner for Vehicle Remote Services, offering an exciting opportunity to lead the development of the latest generation of Remote Servi...

Promoted
Joyin Inc
Tempe, Arizona

We are looking for a passionate toy designer who wants to work in a fast-paced team, take leadership in product development, and convert creative design concepts to actual products. Senior Toy Designer Job Description. Our branded toy products open the lens of a child's perspective and play, enh...

Promoted
Vaco
Phoenix, Arizona
Remote

Associate Product Designer (Content). We are seeking an Associate Product Designer who's excited to design a world-class streaming experience for our client, with a specific focus on content discovery and user-driven personalization. Our Product Designers design across over 20 different supported ex...