Mandiant
Job Description
A successful Application Penetration Tester working as a Red Team consultant at Mandiantshould possess a deep understanding of both information security and computer science.
They should understand basic concepts such as networking, applications, and operating system functionality and be able to learn advanced concepts such as application manipulation, vulnerability discovery and analysis, as well as exploit development.
This job requires strong critical thinking skills and an analytical mindset; this career is technical and challenging with opportunities to work in some of the most exciting areas of security consulting on extremely technical and challenging work.
A typical job could involve penetration testing of both software and hardware to breach the security of a target system or reverse engineering an application and encryption method in order to gain access to sensitive data.
If you have experience performing penetration test against web applications, mobile applications, thick/thin clients, or embedded devices and can present your findings in a digestible manner while demonstrating strong analytical skills, then youre the type of consultant were looking for.
At Mandiant, youll be faced with complex problem-solving opportunities and hands-on testing opportunities on a daily basis.
We help our clients protect their most sensitive and valuable data through using real-word application penetration testing methodologies and by ensuring our consultants are up-to-date with the latest trends and techniques.
Your ability to bring and utilize these skill sets is only the beginning, as it will be expected of you to continue to digest new information from both your peers and the greater security community to further enhance your skillsets and knowledge.
You are expected to quickly assimilate new information with respect to the latest technologies, as you will assess new applications on a weekly or monthly basis.
You will be expected to understand all the threat vectors and the attack surface of each application to properly assess them.
You will get to work with some of the best red teamers in the industry, causing you to develop new skills as you progress through your career.
Are you up to the challenge?
Responsibilities:
* Perform web and mobile application testing, source code reviews, thick/thin application testing, and embedded device testing
* Develop comprehensive and accurate reports and presentations for both technical and executive audiences
* Effectively communicate findings and strategy to client stakeholders including technical staff, executive leadership, and legal counsel
* Recognize and safely utilize attacker tools, tactics, and procedures used to perform analysis and identify vulnerabilities
* Develop scripts, tools, or methodologies to enhance Mandiants application penetration testing processes
* Assist with scoping prospective engagements, leading engagements from kickoff through remediation, and mentoring less experienced staff