Associate, Compliance Security Penetration Tester

Coalfire

United States

Hybrid

USD 120,000 - 180,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Coalfire is seeking an experienced information security professional to join our Penetration Testing Team. You will conduct security assessments on a wide range of technologies, simulate sophisticated cyberattacks, and advise clients on technical security and compliance activities.

This role requires 3+ years of web application and network pentesting, scripting skills (Python, PowerShell, Shell, or Ruby), and the ability to travel up to 20%.

Qualifications

  • Bachelor's degree or equivalent combination of education and work experience.
  • 3+ years’ experience in information security with Web Application and Network penetration testing experience.
  • Experience working with enterprise environments.
  • Hands-on experience with scripting languages such as Python, Powershell, Shell, or Ruby.
  • Experience with IT security compliance frameworks (PCI, FISMA, HIPAA, FEDRAMP, HITRUST).
  • 1-3 years in an IT Security Audit and/or Compliance role.
  • Experience interacting with management in a consultative manner.
  • Strong IT understanding with respect to networks, servers, workstations, and applications.
  • Excellent communication and presentation skills.
  • Ability to travel up to 20%.

Responsibilities

  • Advises clients on technical security or compliance activities.
  • Manages priorities and tasks to achieve delivery utilization targets.
  • Operates with professionalism both internally and with clients.
  • Ensures quality products and services are delivered on time.
  • Continues to develop professional skills with relevant industry specific certifications.
  • Collaborates with project managers, quality management, sales, and other delivery team members to drive customer satisfaction and meet project deliverables.
  • Develop processes, procedures, and methodologies to enhance testing processes and experience.
  • Assist with report generation and quality assurance processes.
  • Develop client relationships.
  • Assist in the scoping of prospective engagements and lead engagements from initial stages through implementation and remediation.
  • Manage project escalations of current testing being conducted.
  • Mentor and develop less experienced staff.
  • Contribute to the Penetration Testing Team overall success by meeting objectives and metrics.

Skills

Information security
Penetration testing
Client engagement
Mentoring

Education

Bachelor's degree

Tools

Python
PowerShell
Shell
Ruby

Job description

Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.

But that’s not who we are – that’s just what we do.

We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.

Conduct security assessments on a wide variety of technologies and implementations.

Simulate sophisticated cyberattacks for clients worldwide.

About Coalfire

Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Chicago, Illinois with offices across the U.S. and U.K., and we support clients around the world.

But that’s not who we are – that’s just what we do.

We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.

Working independently and collaboratively with a team to support the following work activities where skills apply such as: Internal and External Network Penetration Testing, Application Penetration Testing (Browser-based, API, Mobile), Cloud Solution Penetration Testing, Social Engineering, Wireless Assessments.

Conduct security assessments on a wide variety of technologies and implementations.

Simulate sophisticated cyberattacks for clients worldwide.

What You'll Do
  • Advises clients on technical security or compliance activities
  • Manages priorities and tasks to achieve delivery utilization targets
  • Operates with professionalism both internally and with clients
  • Ensures quality products and services are delivered on time
  • Continues to develop professional skills with relevant industry specific certifications. Maintains strong depth of knowledge in the practice area
  • Collaborates with project managers, quality management, sales, and other delivery team members to drive customer satisfaction and meet project deliverables
  • Develop processes, procedures, and methodologies to enhance testing processes and experience
  • Assist with report generation and quality assurance processes
  • Develop client relationships
  • Assist in the scoping of prospective engagements, leading engagements from initial stages through implementation and remediation
  • Manage project escalations of current testing being conducted
  • Mentor and develop less experienced staff
  • Contribute to the Penetration Testing Team overall success by managing your team to meet various business objectives and metrics
What You'll Bring
  • Bachelor's degree (four-year college or university) or equivalent combination of education and work experience
  • 3+ years’ experience in information security with Web Application and Network penetration testing experience
  • Experience working with enterprise environments
  • Hands-on experience with scripting languages such as Python, Powershell, Shell, or Ruby
  • Experience with one or more IT security compliance frameworks, such as PCI, FISMA, HIPAA, FEDRAMP, or HITRUST
  • One to three (1-3) years of experience in an IT Security Audit and/or Compliance role
  • Experience interacting with management in a consultative manner
  • Strong IT understanding with respect to networks, servers, workstations, and applications
  • Excellent communication and presentation skills
  • Ability to travel up to 20%
Bonus Points
  • Deep experience engaging clientele in consulting-related environments
  • Experience leading penetration team engagements
  • Reverse engineering malware, data obfuscators, or ciphers
  • An aptitude for technical writing, including assessment reports, presentations, and operating procedures
  • Strong understanding of security principles, policies, and industry best practices
  • Experience working with C and various compiler toolchains
  • Community contributions or participation including
  • CTF, Hack-the-box, or cyber-defense competitions
  • Speaking or presentations
  • Public security research
Why You’ll Want to Join Us

At Coalfire, you’ll find the support you need to thrive personally and professionally. In many cases, we provide a flexible work model that empowers you to choose when and where you’ll work most effectively – whether you’re at home or an office.

Regardless of location, you’ll experience a company that prioritizes connection and wellbeing and be part of a team where people care about each other and our communities. You’ll have opportunities to join employee resource groups, participate in in-person and virtual events, and more. And you’ll enjoy competitive perks and benefits to support you and your family, like paid parental leave, flexible time off, certification and training reimbursement, digital mental health and wellbeing support membership, and comprehensive insurance options.

At Coalfire, equal opportunity and pay equity is integral to the way we do business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran. Coalfire is committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. To request reasonable accommodation to participate in the job application or interview process, contact our Human Resources team at HumanResourcesMB@coalfire.com .

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Associate, Compliance Security Penetration Tester
Associate, Compliance Security Penetration Tester

Socket.dev • United States

Hybrid
USD 120,000 - 180,000
Associate, Compliance Security Penetration Tester
Associate, Compliance Security Penetration Tester

Coalfire- • Chicago (IL)

Hybrid
USD 64,000 - 117,000
Flexible work model
Parental leave
Certification and training reimbursem
Associate, Compliance Security Penetration Tester
Associate, Compliance Security Penetration Tester

Coalfire • Northern (KY)

Hybrid
USD 64,000 - 117,000
Flexible work model
Parental leave
Certification reimbursement
+2
Associate, Compliance Security Penetration Tester
Associate, Compliance Security Penetration Tester

Coalfire • Chicago (IL)

Hybrid
USD 64,000 - 117,000
Engineer development support
Certification reimbursement
Paid parental leave
+3
Senior Consultant, Application Security
Senior Consultant, Application Security

Coalfire • United States

Hybrid
USD 100,000 - 130,000
Paid parental leave
Flexible time off
Training reimbursement
+2
Associate, FedRAMP Assessment
Associate, FedRAMP Assessment

Coalfire • United States

Hybrid
USD 70,000 - 90,000
Paid parental leave
Flexible time off
Certification and training reimbursement
+2
Account Executive - AI, Cloud and Compliance Advisory
Account Executive - AI, Cloud and Compliance Advisory

Coalfire • United States

Hybrid
USD 90,000 - 150,000
Flexible work model
Parental leave
Training reimbursement
+2
Senior Consultant, FedRAMP Assessment
Senior Consultant, FedRAMP Assessment

Coalfire • United States

On-site
USD 86,000 - 148,000
Paid parental leave
Flexible time off
Certification and training reimbursement
Principal Cloud Engineer
Principal Cloud Engineer

Coalfire • Washington

Hybrid
USD 109,000 - 182,000
Flexible work model
Parental leave
Flexible time off
+3
Principal Cloud Engineer
Principal Cloud Engineer

Coalfire- • United States

Remote
USD 109,000 - 182,000
Flexible work model
Competitive benefits