Cybersecurity Analyst
Core
Identify, validate, and resolve security vulnerabilities across cloud infrastructure and applications through manual and automated penetration testing.
Role type
Senior IC penetration tester (application and network security)
Builds
Secured cloud infrastructure and applications for Target's global retail operations
Domain
Retail / Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Penetration testing, ethical hacking, web-based attack mitigation (SQLi, XSS, CSRF, XXE), scripting (Python, Go, Ruby, Bash), network protocols (TCP/IP, DNS, HTTP/S, TLS, IPSEC), security testing tools (BurpSuite, SAST, DAST, IAST), API security (OAuth 2.0, OIDC, JWT)
Preferred skills
Bug bounty program management, ChatOps automation, Infrastructure as Code (Terraform), container orchestration (Docker, Kubernetes), compliance frameworks (ISO 27001, PCI DSS, SOC2, CCPA)
Technologies
BurpSuite Enterprise, Python, Go, Ruby, Bash, Terraform, Docker, Kubernetes, HackerOne, BugCrowd
Responsibilities
Perform manual and automated application-layer penetration tests, conduct network-layer penetration tests, validate segmentation controls for Cardholder Data Environment, triage and validate bug bounty reports, document and risk-rate findings with remediation guidance, verify vulnerability corrections through re-testing, collaborate with external security firms
Seniority
Mid-Senior, hands-on IC