Find a job that matters. Work with people
who care.

Sr. Penetration Engineer-REMOTE

Job Details

Job Ref:
161847
Location:
Providence, RI 02908
Location Flexibility:
Remote
Category:
IT
Job Type:
Full-time
Job Status:
Exempt
Anticipated Closing Date:
June 18, 2024
Pay Basis
Yearly
Pay Range
$100200.00 - $193400.00 Annually ($48.17 - $92.98 Hourly)

PURPOSE:

UNFI is looking for an experienced technical Senior Penetration Tester/Engineer to help us create a resilient food supply chain. The Senior Penetration Tester/Engineer will focus on performing threat emulations and identifying cybersecurity issues within the UNFI environment against a wide range of technologies and systems, performing technical penetration testing of APIs, web applications, networks, cloud services, databases, directory services, and infrastructure. They will be part of the cybersecurity threat and emulation team and will collaborate with staff from other teams across UNFI. While management responsibilities are not part of the role, the expectation is that they can lead engagements, communicate technical details to senior leadership, mentor junior staff, provide technical direction to the program. Coding skills and a passion for cybersecurity is a must, with a preference for testers who view cybersecurity and penetration testing as more than just a job but also a hobby.

JOB RESPONSIBILITIES:

  •        Perform technical penetration testing of APIs, web applications, networks, cloud services, databases, directory services, and infrastructure.
  •        Strategic attack simulation by analyzing UNFI’s internal and external attack surface and crafting bespoke penetration strategies.
  •        Writing comprehensive reports outlining identified vulnerabilities, potential exploitation paths. Provide remediation guidance and recommendations from the assessments and support any security questions from network, system, and/or application owners.
  •        Assess UNFI’s software development and cloud infrastructure from a security perspective and help drive internal security standards.

JOB REQUIREMENTS:

Education/Certification:

  •        At least 1 industry leading or senior level cybersecurity penetration certification, for example: Offensive Security Certified Professional (OSCP), GIAC Penetration Tester Certification (GPEN), GIAC Web Application Penetration Tester (GWATP), GIAC Cloud Penetration Tester (GCPN) or EC-Council Licensed Penetration Tester (LPT) Master.
  •        Active GitHub repository account with examples of security tools, scripts, exploits developed OR evidence of past and current artifacts.

Experience:

  •        8+ years of hands-on cybersecurity experience within IT environments.
  •        5+ years of experience performing penetration testing and vulnerability assessments.

Knowledge/ Skills/ Abilities:

  •        Advanced penetration testing skills across both tools and scripting abilities. Expertise with the following tools: various C2s, Burp Suite, Nmap, Wireshark, Bloudhound. Expertise with cybersecurity scripting in Python, PowerShell, or Go to manipulate vulnerabilities and demonstrate potential exploits.
  •        Ability to employ OSINT techniques to maximize attack vectors, simulating real-world cyber threats.
  •        Skills in developing implants and evading common security tools.
  •        Ability to critically examine an organization and system using knowledge of tactics, techniques, and procedures associated with malicious insider activity, organized crime groups, and both state and non-state sponsored threat actors.
  •        Knowledge of web application and cloud infrastructure best practices and understanding of how to exploit misconfigurations and vulnerabilities.
  •        Knowledge of network access, identify and access management, including public key infrastructure and understanding of how to exploit misconfigurations and vulnerabilities.
  •        Experience creating rules of engagement, test plans, scripts to aid testing efforts, and technical assessment reports that detail findings and remediation efforts.
  •        Ability to translate technical findings into actionable insights.
  •        Ability to mentor junior staff and transfer technical knowledge as well as contribute to the team’s knowledge sharing. 

All qualified applicants will receive consideration for employment without regard to race, color, age, religion, sex, sexual orientation, gender identity or expression, national origin, disability, or protected veteran status. UNFI is an Equal Opportunity employer committed to creating an inclusive and respectful environment for all.

- M/F/Veteran/Disability. VEVRAA Federal Contractor.

Additional Information

  • Schedule: Full-time

Company:
United Natural Foods Inc.

Compensation:

UNFI anticipates paying the above-referenced pay rate (or within the above-referenced pay range) for this position. Actual Pay, where applicable, will depend on a number of factors, including, but not limited to, education, experience, training, and any requirements under applicable collective bargaining agreements. UNFI is committed to transparency in pay in compliance with applicable state and local laws.

Benefits:

For Washington positions (or positions that may be performed remotely from Washington), Click HERE for Washington-specific paid time off details.

Candidates hired into this position will also be eligible to participate in the following benefits programs: Paid Time Off; Sick Time; paid holidays and parental leave; 401K Program; medical, dental, vision, life, and accidental death/dismemberment insurance; short-term and long-term disability insurance program, Flexible Spending Account and/or Health Savings Account, subject to meeting the eligibility requirements and the terms and conditions of these programs, and subject to any requirements under applicable collective bargaining agreements.

Sales Positions Only: For sales positions that are commission-based, the above range is an estimate of total potential commission-based compensation during an associate’s first year, but UNFI offers an introductory period minimum of $680 per week. After the introductory period, as a 100% commission-based role, there is no set salary. UNFI’s commission plans are uncapped and average earnings vary depending on territory and sales achieved, among other factors.

UNFI’s compensation, benefits, and paid time off policies are subject to change in the Company’s sole discretion, consistent with applicable law. This job posting should not be construed as an offer of employment with certain terms, nor should it be construed as a guaranteed minimum.

Join Our Talent Network

Find Your Fit Here at UNFI