Perform penetration testing against systems across Navy Federal in order to identify weaknesses and provide guidance on remediation and prevention.
Conduct application, network, wireless, and mobile assessments as well as lead red team campaigns.
Assess a wide variety of critical systems and applications to discover exploitable risks to the credit union and improve the risk posture of the organization.
Manage penetration tests from inception through delivery.
Identify and prescribe remediation for vulnerabilities in applications, systems, and networks.
Leverage complex tactics including lateral movement, network tunneling/pivoting, and credential compromise.
Requirements
Bachelor’s Degree in Computer Science or the equivalent combination of education, training or experience.
2-5 years of experience in cyber or application security.
Basic understanding of business and operating environment.
Basic knowledge of MITRE ATT&CK and/or CAPEC Frameworks.
Experience testing against Active Directory environments.
Experience testing against both Linux based and Windows based systems.
Experience developing custom malware and evading EDR solutions.
Experience coding in languages and on frameworks such as: Python, JavaScript, Bash, PowerShell, Java, C#, C++, Springboot, React, NodeJS.