Penetration Tester, Offensive Security Operations (Network/Cloud/Application) - USDS

Remote Full-time
About the position As an Application Security Penetration Tester, you will validate security controls around web resources and mobile applications and their backend web services for TikTok. Work with a team of security testing professionals to enhance existing services offerings and security testing capabilities and conduct hands on technical testing focused on identification of OWASP type vulnerabilities in both web application and mobile applications. The USDS Offensive Security and Privacy serves as the Independent Testing and Validation pillar for USDS. The team performs cyber threat simulations within the TikTok USDS environment to proactively identify vulnerabilities, misconfigurations and defense gaps. They do so by analyzing the organization's attack surface, which includes - but is not limited to - products, applications, controls, appliances, and infrastructure. Their objective is to emulate adversaries to equip the organization against emerging threats by improving their identification, detection, protection, response, and remediation capabilities. Responsibilities • Develop/modify custom tooling to solve new needs • Build relationships with engineering teams to strengthen TikTok's security state • Conduct full exploitation operations in Windows and *nix environments • Develop comprehensive and accurate reports and presentations for both technical and executive audiences • Communicate findings and strategy to client stakeholders, including technical staff, executive leadership, and legal counsel • Perform innovative research and promote an environment of innovation and knowledge sharing • Perform web application testing, mobile application testing, network penetration testing, and source code reviews • Utilize attacker tools, tactics, and procedures to perform analysis and identify vulnerabilities • Implement static and dynamic security testing as part of an automated application security testing process • Other Cybersecurity operational and project initiatives responsibilities to be assigned Requirements • Breadth and depth of knowledge in security of operating systems, networking and protocols, firewalls, databases and middleware applications, forensics, scripting and programming • Experience in identifying OWASP type vulnerabilities in web and mobile applications Apply tot his job
Apply Now

Similar Opportunities

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote Full-time

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote Full-time

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote Full-time

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote Full-time

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote Full-time

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote Full-time

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote Full-time

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote Full-time

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote Full-time

USPS Office Helper

Remote Full-time

Accountant- General Ledger- USA Remote

Remote Full-time

Disaster Recovery and Business Continuity Analyst - Remote Contract to Permanent Opportunity with Workwarp

Remote Full-time

**Experienced Data Entry Specialist – Unlock Flexibility and Opportunity with blithequark's Work-At-Home Program**

Remote Full-time

Health Coach (Fully Remote)

Remote Full-time

Experienced Remote Data Entry Specialist – Medical Information Acquisition and Management

Remote Full-time

Chat Support Agent (Remote) - 15 - 18/hr

Remote Full-time

**Experienced Entry-Level Customer Services Assistant - Data Entry Specialist for Remote Global Connections and Diplomacy at blithequark**

Remote Full-time

**Experienced Data Entry Customer Care Representative – Remote Opportunity at blithequark**

Remote Full-time

[Remote] Cybersecurity & Technology Risk, Director (REMOTE)

Remote Full-time

**Experienced Remote Data Entry Clerk – Part-Time Opportunity at blithequark**

Remote Full-time
← Back to Home