Bread Financial
Website:
breadfinancial.com
Job details:
Job Summary
The Senior Security Testing Engineer leads complex security testing initiatives that strengthen the organization's security posture.
The role plans, scopes, and executes advanced assessments across applications, networks, and infrastructure, applying deep expertise in testing techniques, exploitation methods, and secure design principles.
The role independently drives end to end engagements from defining objectives and creating test plans to executing sophisticated manual testing and validating remediation efforts.
Serving as a technical escalation point, the engineer guides teams through root cause analysis and practical risk reduction strategies.
The Senior Engineer mentors junior and mid level engineers, reviews test artifacts for accuracy, and promotes consistent testing practices.
The role partners with engineering, architecture, DevOps, and risk stakeholders to evaluate system designs, identify gaps early in development, and ensure solutions align with security standards.
Essential Job Functions
- Conduct thorough security assessments and penetration tests to uncover vulnerabilities. Recommend corrective measures to secure systems, ensuring the protection of digital assets and compliance with security protocols (20%).
- Collaborate with development and IT teams to embed security testing within the software development lifecycle, ensuring security is a core component of all stages, from design to deployment (20%).
- Develop and maintain robust security testing tools and methodologies, aligning them with industry best practices. Continuously refine techniques to enhance the effectiveness of security evaluations (20%).
- Analyze security incidents comprehensively, providing detailed reports that outline the incident's nature, impact, and scope. Offer actionable recommendations to bolster security measures and prevent future occurrences (20%).
- Stay informed about the latest security threats, trends, and technologies. Proactively address potential risks by implementing updated security protocols and adapting strategies to meet emerging challenges (20%).
Minimum Qualifications
- Bachelors Degree in Cybersecurity, Information Technology, Computer Science or equivalent, relevant work experience.
- 5-8 years of experience in Information Security, IT Audit, Risk Management or a related field.
Preferred Qualifications
- Masters Degree in Cybersecurity, Information Technology, Computer Science, or related field or equivalent, relevant work experience.
- Certified Information Systems Security Professional (CISSP) International Information System Security Certification Consortium.
- Certified Information Systems Auditor (CISA) The Information Systems Audit and Control Association, Inc.
- GSEC.
- Security+, GCIH.
- 8+ years experience in related field or a related field.
Skills
- Penetration Testing.
- Vulnerability Assessments.
- Security Incident Response.
- Threat Modeling.
- Cyber Threat Intelligence.
- Risk Analysis.
- Compliance Risk Management.
(ref:hirist.tech)
Click on Apply to know more.