Information Security Analyst at Hitss conducting penetration tests and security assessments across IT infrastructures. Collaborating with teams to report and mitigate vulnerabilities.
Responsibilities
Perform penetration tests on IT infrastructure, including networks, operating systems, servers and network devices, as well as web and mobile applications;
Execute penetration testing phases in accordance with established best practices, processes and methodologies;
Identify and exploit security vulnerabilities in systems, networks and applications using manual techniques and automated tools;
Prepare and present detailed penetration testing reports.
Requirements
Bachelor's degree in Cyber Defense, Computer Science, Information Systems or a related field;
Basic English proficiency;
Strong experience in offensive security projects (penetration testing);
Experience using methodologies such as OWASP, OSSTMM, NIST, PTES, among others;
Experience creating testing methods to identify and exploit vulnerabilities;
Experience finding security flaws in software (web applications and proprietary and open-source systems);
Experience documenting test results and discussing findings with internal and external teams;
Experience providing recommendations for vulnerability remediation;
Experience preparing and presenting detailed penetration testing reports;
Familiarity with tools such as proxies, port scanners, vulnerability scanners, exploit frameworks, Burp Suite, Nessus, Nmap, Metasploit;
Knowledge of computer networks (protocols);
Knowledge of operating system architecture (Windows and Linux);
Certifications such as CompTIA Security+, CompTIA PenTest+, EC-Council CEH, Desec.
Benefits
Gender and race/ethnicity equity
Positions eligible for professionals with disabilities
Staff Cybersecurity Analyst responsible for safeguarding cloud assets and leading security assessments for Southern Glazer’s. Collaborating with teams to develop cloud security policies and addressing cybersecurity incidents.
Senior Threat Intelligence Analyst working with Bupa's cybersecurity team. Focused on threat management and defensive strategies to enhance cyber security posture.
Senior Information Security Analyst at Field Nation leading SOC 2 and ISO 27001 compliance programs. Collaborating with teams to embed security and leverage AI in GRC workflows.
Analista de Ciberseguridad en CRG Solutions responsable de monitorear amenazas y gestionar vulnerabilidades en la organización. Identificación de riesgos y mejora continua de la postura de seguridad.
Compliance & Information Security Analyst at beqom managing GRC and TPRM functions. Overseeing client governance, risk, and compliance requests, and vendor due diligence at a SaaS company.
Senior Technical Expert in Cyber Defense Center at ZEISS analyzing global cyber threats. Collaborating with SOC, CIRT, and ensuring proactive defense strategies.
Information Security Analyst focusing on vulnerability research and data analysis at Flexera. Involves analyzing, verifying vulnerabilities, and maintaining high - quality content standards.
Oversee the testing lifecycle and provide cyber security solutions at Xcel Energy. Engage in various testing techniques and collaborate with teams to enhance quality practices.
Security Analyst II role at Deepwatch focusing on incident handling and cybersecurity analysis. Working with a team to improve security posture and customer experience in a hybrid environment.