Create Email Alert

Email Alert for

ⓘ There was an unexpected error processing your request.

Please refresh the page and try again.

If the problem persists, please contact us with your issue.

Email address is already registered

You can always manage your preferences and update your interests to ensure you receive the most relevant opportunities.

Would you like to [visit your alert settings] now?

Success! You're now signed up for Job Alerts

Get ready to discover your next great opportunity.

Similar Jobs

  • Software Guidance and Assistance, Inc.

    Penetration Tester (Application/Security)

    Jersey City, NJ, United States

    • Ending Soon

    Software Guidance & Assistance, Inc., (SGA), is searching for a Penetration Tester (Application/Security) for a 6 MONTH CONTRACT-TO-PERM assignment with one of our premier Financial Services clients in Jersey City, NJ . Hybrid work is required. This is NOT fully remote. This is a true right to hire position - client cannot sponsor Visas

    Job Source: Software Guidance and Assistance, Inc.
  • OccamSec

    Penetration Tester

    New York, NY, United States

    • Ending Soon

    The Penetration Tester is responsible for working as part of the Assessment Team to conduct and participate in offensive and defensive security projects for OccamSec and its clients. This individual will work as part of a security team and report to an Assessment Team Lead. Job Responsibilities: Conduct security audits, network penetration tests,

    Job Source: OccamSec
  • Allgeier Cyris

    Senior Penetration Tester (m/w/d) Offensive Security Consultant

    , ID, United States

    Bewirb Dich bei uns und werde Bestandteil eines starken Teams! Bring Deine Leidenschaft für Technik und Innovationen in Deinen Job ein und bewege etwas in unserer digitalisierten Gesellschaft! Mach die Welt Bit für Bit sicherer, einfacher, nachhaltiger! Gestalte aktiv den Wachstumsmarkt Cybersecurity ! Arbeitsmodell: Vollzeit, 40 h die Woche bei

    Job Source: Allgeier Cyris
  • Tik Tok

    Security Engineer (Security Posture Analysis) - Offensive Security Operations - USDS

    New York, NY, United States

    • Ending Soon

    Responsibilities About TikTok U.S. Data Security TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. U.S. Data Security ("USDS") is a subsidiary of TikTok in the U.S. This new, security-first division was created to bring heightened focus and governance to our data protection policies

    Job Source: Tik Tok
  • eTeam

    Cyber Security Engineer

    Jersey City, NJ, United States

    Job Title: Application Security Associate/Penetration Tester Location: Jersey City, NJ (Hybrid) Duration: 6+ months Rate: Upto $70/hr on W2 Below is the Job Description for your reference: • Perform Offensive Application Testing against applications and APIs. • Perform manual penetration testing and threat hunting against applications. • Provide

    Job Source: eTeam
  • X (formerly Twitter)

    Senior/Staff Security Engineer, Offensive Security

    New York, NY, United States

    • Ending Soon

    Are you prepared to join the X team and help build the ultimate real-time information-sharing app, revolutionizing how people connect? At X, we're on a mission to become a trusted global digital public square, committed to minimal censorship within legal boundaries. Our goal is to empower every user to freely create and share ideas, fostering open

    Job Source: X (formerly Twitter)
  • OccamSec

    Security Engineer

    Little Ferry, NJ, United States

    • Ending Soon

    The Security Engineer is responsible for working as part of the Assessment Team to conduct and participate in offensive and defensive security projects for OccamSec and its clients. This individual will work as part of a security team and report to an Assessment Team Lead. Job Responsibilities: Conduct security audits, network penetration tests,

    Job Source: OccamSec
  • Dice

    Senior Consultant, Offensive Security, Proactive Services (Unit 42)- Remote

    Little Ferry, NJ, United States

    Dice is the leading career destination for tech experts at every stage of their careers. Our client, PaloAlto Networks, is seeking the following. Apply via Dice today! Description Our Mission At Palo Alto Networks everything starts and ends with our mission: Being the cybersecurity partner of choice, protecting our digital way of life. Our vis

    Job Source: Dice

Penetration Tester, Offensive Security Operations (Network/Cloud/Application) - USDS

New York, NY, United States

Responsibilities

About TikTok U.S. Data Security

TikTok is the leading destination for short-form mobile video. Our mission is to inspire creativity and bring joy. U.S. Data Security ("USDS") is a subsidiary of TikTok in the U.S. This new, security-first division was created to bring heightened focus and governance to our data protection policies and content assurance protocols to keep U.S. users safe. Our focus is on providing oversight and protection of the TikTok platform and U.S. user data, so millions of Americans can continue turning to TikTok to learn something new, earn a living, express themselves creatively, or be entertained. The teams within USDS that deliver on this commitment daily span across Trust & Safety, Security & Privacy, Engineering, User & Product Ops, Corporate Functions and more.

Why Join Us

Creation is the core of TikTok's purpose. Our platform is built to help imaginations thrive. This is doubly true of the teams that make TikTok possible.

Together, we inspire creativity and bring joy - a mission we all believe in and aim towards achieving every day.

To us, every challenge, no matter how difficult, is an opportunity; to learn, to innovate, and to grow as one team. Status quo? Never. Courage? Always.

At TikTok, we create together and grow together. That's how we drive impact - for ourselves, our company, and the communities we serve.

Join us.

About The Team

As an Application Security Penetration Tester, you will validate security controls around web resources and mobile applications and their backend web services for TikTok. Work with a team of security testing professionals to enhance existing services offerings and security testing capabilities and conduct hands on technical testing focused on identification of OWASP type vulnerabilities in both web application and mobile applications.

To succeed in this role the candidate will possess breadth and depth of knowledge in security of operating systems, networking and protocols, firewalls, databases and middleware applications, forensics, scripting and programing. All Application Security Penetration Testers are expected to continuously improve their tradecraft through research, to add breadth and depth to their knowledge a part of the Offensive Security Operations team.

In order to enhance collaboration and cross-functional partnerships, among other things, at this time, our organization follows a hybrid work schedule that requires employees to work in the office 3 days a week, or as directed by their manager/department. We regularly review our hybrid work model, and the specific requirements may change at any time.

Responsibilities:

- Develop/modify custom tooling to solve new needs

- Build relationships with engineering teams to drive TikTok to a mature security state

- Conduct full exploitation operations in Windows and *nix environments

- Develop comprehensive and accurate reports and presentations for both technical and executive audiences

- Communicate findings and strategy to client stakeholders, including technical staff, executive leadership, and legal counsel

- Perform innovative research and promote an environment of innovation and knowledge sharing

- Perform web application testing, mobile application testing, network penetration testing, and source code reviews

- Utilize attacker tools, tactics, and procedures to perform analysis and identify vulnerabilities

- Implement static and dynamic security testing as part of an automated application security testing process

- Other Cybersecurity operational and project initiatives responsibilities to be assigned

Qualifications

- Bachelors' Degree or industry equivalent work experience in IT, Computer Engineering or a similar field

- 5+ years of experience performing application penetration tests

- Well-rounded background in application, network, and system security

- Experience with using, administering, and troubleshooting different flavors of Linux

- Experience working in Windows environments

- Experience with reading, writing, and editing code written in various programming languages, such as Perl, Python, Ruby, Bash, C/C++, C#, and Java

- Experience with Burp Suite Pro, including identification and usage of relevant plugins

- Experience with security assessment tools, including Nessus, Accunetix, Metasploit, or Cobalt Strike

- Experience with conducting reverse engineering on mobile applications, including applications with anti-emulator and obfuscation protections

- Open to travel as the need arises to perform testing on-site e.g. Data centers, office locations etc. (Estimated Frequency: once in 2-3 months)

Preferred Qualifications:

- Industry certifications such as OSCP, OSCE, OSWE, GPEN, GCIH, GWAPT, or GXPN

- Contributions to the security community such as research, public CVEs, bug-bounty recognitions, open-source projects, blogs, publications, etc

- Experience with server administration, TCP/IP networking, vulnerability identification and exploitation, vulnerability exploit code development, offensive security operation coordination and communication, vulnerability tracking and remediation, mobile testing

- Experience with methodologies on both static and dynamic analysis for different application types and platforms

- Experience working with Web Application Firewalls

- Securing, testing, having a good understanding of API vulnerabilities and how to address them

TikTok is committed to creating an inclusive space where employees are valued for their skills, experiences, and unique perspectives. Our platform connects people from across the globe and so does our workplace. At TikTok, our mission is to inspire creativity and bring joy. To achieve that goal, we are committed to celebrating our diverse voices and to creating an environment that reflects the many communities we reach. We are passionate about this and hope you are too.

TikTok is committed to providing reasonable accommodations in our recruitment processes for candidates with disabilities, pregnancy, sincerely held religious beliefs or other reasons protected by applicable laws. If you need assistance or a reasonable accommodation, please reach out to us at [email protected]

Data Security Statement

This role requires the ability to work with and support systems designed to protect sensitive data and information. As such, this role will be subject to strict national security-related screening.

#LI-JC5

Apply

Create Email Alert

Create Email Alert

Email Alert for Penetration Tester, Offensive Security Operations (Network/Cloud/Application) - USDS jobs in New York, NY, United States

ⓘ There was an unexpected error processing your request.

Please refresh the page and try again.

If the problem persists, please contact us with your issue.

Email address is already registered

You can always manage your preferences and update your interests to ensure you receive the most relevant opportunities.

Would you like to [visit your alert settings] now?

Success! You're now signed up for Job Alerts

Get ready to discover your next great opportunity.