Synack logo
SynackPosted 1 month ago
EXPIRED

Security Analyst, Part-Time (Temporary)

$52,000–$52,000 year

RemoteUnited States

Part TimeMediumCybersecurity Services

Job Summary

Review and accept Missions, Patch Verifications, and vulnerability reports while bypassing customer patch attempts and creating suspected vulnerability reports. Exploit real-world vulnerabilities and work remotely with seasoned Computer Security Analysts to learn complex vulnerability review processes. This part-time, temporary role lasts 6 months and requires strong communication skills, a basic understanding of offensive cyber subjects, and knowledge of the OSI model, TCP/IP, and CVSS Scoring. Candidates must be U.S. citizens due to Federal Government contract requirements and should be prepared for a technical assessment demonstrating practical application of these skills.

Required Qualifications

  • Strong written and verbal communication skills
  • Basic understanding of various Computer Security topics, particularly offensive cyber subjects
  • Course work in offensive security (not necessarily at a University), hackathons, CTF participation, and any of the following lab/live testing: Portswigger Academy, HackTheBox.eu, TryHackMe, Or any other Offensive Security Lab platform
  • A clear understanding of the OSI model, TCP/IP, and CVSS Scoring
  • Basic understanding of OWASP top ten
  • Creative problem solving acumen
  • Enthusiasm to build an offensive cyber career, and a positive can-do attitude
  • Must be a citizen of the United States
  • Must be prepared to take a basic technical assessment to demonstrate practical application of required skills
  • Must have Burp Suite (any), or similar proxy tool such as Zap fully working and configured with your browser
  • Must be able to share your screen
  • Must be able to describe your methodology and thought process as you work through the challenges in real-time
  • Must be able to demonstrate proper enumeration and testing processes
  • Must be able to demonstrate a working knowledge of the tools being used

Desired Qualifications

  • Operational, hands-on knowledge of web application vulnerabilities and how to exploit them via Labs, CTFs, certifications, or prior work experience
  • Coursework and/or lab work towards obtaining CEH, GPEN, EJPT, OSCP a plus

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Find similar roles