Penetration Testing Analyst
Core
Conduct internal and external security testing on networks and applications, assess physical security, and carry out security audits to identify and exploit vulnerabilities.
Role type
Penetration Testing Analyst
Builds
Security assessment reports and improved security policies
Domain
Government cybersecurity, cloud security, application security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Penetration testing, cloud security, OWASP Application Security Testing Standard, static and dynamic application security testing, white box and black box testing, ISO 27002:2022 compliance, vulnerability identification, attack vector analysis, defensive strategies
Preferred skills
Certified Ethical Hacker (CEH), Certified Information Systems Security Professional (CISSP)
Technologies
Cloud, OWASP, Network, Web
Responsibilities
Conduct internal and external security testing on networks and applications before and after deployment, Assess physical security measures as required, Carry out security audits when assigned, Analyze and review security policies and standards for improvements, Share knowledge and insights with fellow members of the Cyber Security and Risk Management Branch, Prepare and write comprehensive security assessment reports
Seniority
Mid-level, hands-on IC