Security Analyst, Part-Time (Temporary)
$52,000–$52,000 year
RemoteUnited States
Job Summary
Review and accept Missions, Patch Verifications, and vulnerability reports while bypassing customer patch attempts and creating suspected vulnerability reports. Exploit real-world vulnerabilities and work remotely with seasoned Computer Security Analysts to learn complex vulnerability review processes. This part-time, temporary role lasts 6 months and requires strong communication skills, a basic understanding of offensive cyber subjects, and knowledge of the OSI model, TCP/IP, and CVSS Scoring. Candidates must be U.S. citizens due to Federal Government contract requirements and should be prepared for a technical assessment demonstrating practical application of these skills.
Required Qualifications
- Strong written and verbal communication skills
- Basic understanding of various Computer Security topics, particularly offensive cyber subjects
- Course work in offensive security (not necessarily at a University), hackathons, CTF participation, and any of the following lab/live testing: Portswigger Academy, HackTheBox.eu, TryHackMe, Or any other Offensive Security Lab platform
- A clear understanding of the OSI model, TCP/IP, and CVSS Scoring
- Basic understanding of OWASP top ten
- Creative problem solving acumen
- Enthusiasm to build an offensive cyber career, and a positive can-do attitude
- Must be a citizen of the United States
- Must be prepared to take a basic technical assessment to demonstrate practical application of required skills
- Must have Burp Suite (any), or similar proxy tool such as Zap fully working and configured with your browser
- Must be able to share your screen
- Must be able to describe your methodology and thought process as you work through the challenges in real-time
- Must be able to demonstrate proper enumeration and testing processes
- Must be able to demonstrate a working knowledge of the tools being used
Desired Qualifications
- Operational, hands-on knowledge of web application vulnerabilities and how to exploit them via Labs, CTFs, certifications, or prior work experience
- Coursework and/or lab work towards obtaining CEH, GPEN, EJPT, OSCP a plus
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.