What are the responsibilities and job description for the Offensive Security Engineer position at Shift4?
Shift4
Shift4 is the leader in secure payment processing solutions, including point-to-point encryption, tokenization, EMV technology, and point-of-sale (POS) systems.
Have you got the right qualifications and skills for this job Find out below, and hit apply to be considered.
Shift4 (NYSE : FOUR) is boldly redefining commerce by simplifying complex payments ecosystems across the world. As the leader in commerce-enabling technology, Shift4 powers billions of transactions annually for hundreds of thousands of businesses in virtually every industry. For more information, visit www.shift4.com.
Offensive Security Engineer
Shift4 is expanding globally and hiring a key Offensive Security Engineer for their Information Security team. This individual will be responsible for supporting Shift4’s cybersecurity defense through proactive penetration testing, vulnerability assessments, and security risk evaluations. This is a Junior level position where an individual is proactive in building their skills in ethical hacking and exploit discovery, helping identify and address security flaws in network infrastructure, applications, and systems. The Offensive Security Engineer will work closely with senior engineers to gain hands-on experience with attack simulation and assist in improving overall security posture.
This role is onsite based at any of the following Shift4 locations : Las Vegas, NV / Tampa, FL / Atlanta, GA / Center Valley, PA / Morrisville, NC
Responsibilities :
- Assist in developing and executing offensive security strategies to uncover potential exploits.
- Identify security risks and weaknesses, delivering detailed reports with mitigation recommendations.
- Conduct vulnerability assessments and penetration testing of web applications, networks, and systems.
- Collaborate with security teams to help triage and remediate identified vulnerabilities.
- Use automated tools and manual techniques to identify and exploit vulnerabilities.
- Simulate cyberattacks to assess the organization’s security controls.
- Conduct social engineering campaigns to identify areas and individuals in need of training.
- Stay up-to-date with emerging cybersecurity threats, tools, and methodologies.
- Participate in red teaming exercises to emulate real-world attack scenarios.
- Document findings and assist in the creation of reports for both technical and non-technical audiences.
- Work with cross-functional teams to ensure vulnerabilities are resolved in a timely manner.
- Follow industry best practices and regulatory compliance standards in security testing.
Qualifications :
Additional skills that are a plus to have :
We are an Equal Opportunity Employer and do not discriminate against any employee or applicant for employment because of race, color, sex, age, national origin, religion, sexual orientation, gender identity and / or expression, status as a veteran, and basis of disability or any other federal, state or local protected class.
J-18808-Ljbffr