MUFG

Associate Vice President, Penetration Testing

MUFG

full-time

Posted on:

Origin:  • 🇺🇸 United States • Arizona, Florida

Visit company website
AI Apply
Apply

Salary

💰 $108,000 - $131,000 per year

Job Level

JuniorMid-Level

Tech Stack

AssemblyAWSAzureCloudJavaKubernetesLinuxMySQLOraclePythonRubySQLUnix

About the role

  • Penetration testing of applications and infrastructure assets to identify exploitable vulnerabilities across MUFG assets
  • Prepare clear and concise reporting on issues found including severity calculation, steps to reproduce, and mitigation/remediation recommendations
  • Scope and perform penetration testing and vulnerability research of complex proprietary software and hardware for client services
  • Create custom tool(s) and/or modify existing tool(s) to aid with automation of vulnerability detection
  • Partner with infrastructure and application development teams at MUFG to ensure identified findings are understood and effectively mitigated or remediated in a timely manner
  • Continuously research new exploitation/attack techniques against technology stack(s) currently being used across MUFG
  • Continuously develop skills using MUFG-provided training and other resources; maintain familiarity with industry trends and security best practices
  • Assist with the development of an internal training program for all levels of penetration testers
  • Provide technical training and guidance to junior and peer team members

Requirements

  • Bachelor’s degree in computer science or related field; applicable specialized training; or equivalent work experience - equally preferable
  • 3+ years of experience in application and infrastructure penetration testing, utilizing industry-standard penetration-testing methodologies and security concepts such as OWASP and the MITRE ATT&CK framework
  • Operational experience penetration testing two or more of the following technology areas: Network infrastructure (Routers, switches...), Security products and services (FW, IDS, IPS, AV...), Active Directory, servers, services, desktops and mobile devices, Operating System (Windows, Unix/Linux/AIX), Databases (MySQL, SQL, DB2...), Cloud and container technologies like AWS, Azure, Oracle and Kubernetes
  • Operational experience with one or more programming languages including Java, C#, C, C++, Assembly desired, but not required
  • Operational experience in one or more of these areas: Post exploitation, exploitation development, or binary reverse engineering
  • 3+ years of experience employing testing frameworks and tools such as Burp Suite, Metasploit, Cobalt Strike, Kali Linux, Nessus, PowerShell Empire, AutoSploit, Ghidra, IDAPro, OllyDbg, Fiddler
  • 1+ years of experience in scripting languages such as Python, PowerShell, Bash, and/or Ruby desired, but not required, including experience using automated tools and manual testing techniques
  • Excellent communication and report-writing skills
  • Ability and willingness to work at MUFG office or client sites four days per week and remotely one day
  • Visa sponsorship/support is not anticipated for this position (work authorization likely required without sponsorship)
Pure Storage

Senior Security Operations Manager

Pure Storage
Seniorfull-time$176k–$265k / yearCalifornia · 🇺🇸 United States
Posted: 24 days agoSource: boards.greenhouse.io
AssemblyAWSAzureCloudCyber SecurityGoogle Cloud PlatformLinuxMacOSPythonSplunk
Saffire, LLC

SVP, Enterprise Architecture, Engineering and Development

Saffire, LLC
Leadfull-timePennsylvania · 🇺🇸 United States
Posted: 27 days agoSource: asmglobal.wd1.myworkdayjobs.com
AssemblyAWSAzureCloudCyber SecurityDockerGoogle Cloud PlatformKubernetesMicroservicesTableau
Kyndryl

Graduate – Emerging Tech, Front-End, Back-End, Data, Automation, Applications, SAP, Cloud

Kyndryl
Entryfull-time🇨🇴 Colombia
Posted: 6 days agoSource: kyndryl.wd5.myworkdayjobs.com
AssemblyAWSAzureCloudCyber SecurityDockerETLGoGoogle Cloud PlatformJavaKubernetesMicroservices+2 more
Accurate Background

Application Security Lead

Accurate Background
Seniorfull-time$120k–$180k / year🇺🇸 United States
Posted: 8 days agoSource: jobs.lever.co
AWSAzureCloudCyber SecurityGoogle Cloud PlatformJavaMongoDBOraclePythonSDLCSQL
Forcepoint

Senior Cyber Engineer, TS/SCI Required

Forcepoint
Seniorfull-time$152k–$187k / year🇺🇸 United States
Posted: 41 days agoSource: evergreenix.wd1.myworkdayjobs.com
AWSAzureCloudCyber SecurityFirewallsGrafanaKubernetesLinuxOracleSwitchingTypeScriptVMware