Jobs

Cybersecurity Pen Tester


Job details
  • TÜV SÜD
  • Wallasey
  • 5 months ago

Aufgaben

Position Summary:

This position is responsible for focusing domain areas of expertise as well as a good breadth of experience across Application Penetration Testing, Thick Client Penetration Testing, Web Application Penetration Testing, Mobile Application Penetration Testing (iOS and Android), Medical IoT devices Penetration Testing, fuzz testing and Open-Source Intelligence and Physical Security Testing.

Responsibilities:

Perform medical device vulnerability scans, fuzz testing, penetration testing, security code reviews, and reverse engineering. Carrying out IOT penetration tests, application (mobile, MIoT and PC platform), network, systems, and infrastructure penetration tests and performing various aspects of vulnerability assessments / penetration tests across a wide variety of platforms and technologies in medical industry. Perform targeted testing activities to identify weaknesses and methods in which to exploit them.

Review threat models and perform security risk assessments of medical products

Helping evolve the knowledge of adversarial TTPs for medical devices and medical applications and apply that knowledge when evaluating and testing corporate resources. Adherence to the highest standards of safety, ethics, and professional conduct are critical requirements of this position.

Supporting project initiatives to assess vulnerabilities in medical devices and medical/health software assets (via penetration tests, testing policies and procedures, etc.).

Applying existing IT technical expertise to address cybersecurity related issues and challenges.

Keeping up to date with tools, countermeasures, threats and technologies.

Developing and refining tools, templates and methodologies.

Interpreting vulnerabilities, identifying weaknesses, exploiting them and escalate access.

Qualifikationen

Higher degree in Information Security, Computer Science, Computer/Software Engineering, Electrical Engineering, or relevant work experience

Several years of professional experience in conducting IOT penetration testing, fuzz testing preferably in the medical sector (or other relevant sector).

Security knowledge in the areas: Operation system security, mobile OS Security, embedded operation system security, communication protocols (Bluetooth/BLE/WIFI etc.), medical protocols (DICOM etc.), threat modeling, common security testing tools.

Programming skills in Python, C/C++, C#, or similar for the purpose of code review and test automation

Excellent technical expertise (in both breadth and depth), written communication skills, time management skills, and the ability to communicate effectively with numerous lines of business representatives.

Experience with open source and commercial penetration testing security tools in an enterprise environment.

Proficiency with Windows, Unix/Linux, and mobile platform operating systems.

Comprehension of OWASP Top 10 (both web and (M)IoT), OSSTMM, PTES, NIST and able to understand and communicate findings to customers

Must be willing to work flexible hours; they must also be able to travel, as required. Comfortable working in a fast-paced environment

Sign up for our newsletter

The latest news, articles, and resources, sent to your inbox weekly.

Similar Jobs

Penetration Tester

ResponsibilitiesConduct comprehensive penetration testing on client systems, networks, applications, and devices to identify security vulnerabilities. Develop and execute detailed testing plans and methodologies for various environments, including Cloud, OT, Application, IT, and IoT. Produce detailed reports that clearly communicate vulnerabilities, their potential impacts, and recommended remediation strategies. Collaborate with client...

Expleo Derby

Penetration Tester

ResponsibilitiesConduct comprehensive penetration testing on client systems, networks, applications, and devices to identify security vulnerabilities. Develop and execute detailed testing plans and methodologies for various environments, including Cloud, OT, Application, IT, and IoT. Produce detailed reports that clearly communicate vulnerabilities, their potential impacts, and recommended remediation strategies. Collaborate with client...

Expleo London

Penetration Tester

We believe in better. And we make it happen.Better content. Better products. And better careers.Working in Tech, Product or Data at Sky is about building the next and the new. From broadband to broadcast, streaming to mobile, SkyQ to Sky Glass, we never stand still. We optimise and innovate.We turn...

Middlesex

Senior Penetration tester

Senior Penetration Tester – Infrastructure FocusedI’m representing aleading Quantitative Hedge Fundthat is expanding its offensive security team. They are looking for a Senior Penetration Tester with expertise ininfrastructure testingand a strong engineering background. This role is ideal for someone with experience inKubernetes,cloud environments, andinfrastructure as code.Key Responsibilities:70% testingwith a focus...

Iceberg Cyber Security London

Senior Penetration Tester

Senior Penetration Tester Infrastructure FocusedIm representing a leading Quantitative Hedge Fund that is expanding its offensive security team. They are looking for a Senior Penetration Tester with expertise in infrastructure testing and a strong engineering background. This role is ideal for someone with experience in Kubernetes , cloud environments ,...

Iceberg Cyber Security Ltd London

IT Director (Head of Software Engineering background)

Robert Half have partnered exclusively with a growing Financial Services business in the North Bristol area to recruit an IT Director on a permanent basis.Purpose of the role:To scope, create and implement software solutions that enables the business to deliver on its strategic goals. To manage all aspects of IT...

Robert Half Bristol