Snell & Wilmer, one of the largest and most prestigious law firms in the western United States, is currently looking to fill an Offensive Security Engineer position. You will have the opportunity to work remotely in this role, with potential locations near Salt Lake City, Utah; Dallas, Texas; Las Vegas, Nevada; Phoenix, Arizona; or Tucson, Arizona.
Responsibilities:
- Perform or manage various types of offensive security tests to identify potential risks, including:
- Network, Mobile, and Application Penetration Testing
- Cloud Security Assessments
- Adversarial Simulation / Red Teaming
- Vulnerability Assessments
- Hardware / Device Security assessments
Test and validate security controls protecting production systems.
Investigate and evaluate risks identified from threat intelligence sources.
Analyze and evaluate security vulnerabilities, identifying and classifying possible threats.
Help implement best practices to improve system and application security.
Develop detailed reports to document findings and recommend solutions.
Present findings and recommendations to stakeholders and partners.
Ensure compliance with applicable regulations and industry standards by conducting tests and testing procedures.
Automate repeatable security tests.
Research, recommend, and track security-related technology solutions.
Additional Responsibilities:
- Plan, scope, coordinate, and execute penetration tests from initiation to closure.
- Carry out application & network testing of the cloud to expose weaknesses in security.
- Perform black, white, and gray box testing, including manual and automated testing.
- Plan, create, and execute penetration attack methods, scripts, and tests according to current policies and processes.
- Simulate security breaches to test system security.
- Work with the business to determine test requirements and understand the impact of identified flaws.
- Create reports and recommendations from findings.
- Collaborate with other teams to advise on methods to mitigate or lower security risks.
Experience and Qualifications:
- Formal training and certifications in cybersecurity engineering concepts.
- At least 2 years of hands-on experience conducting manual penetration testing and vulnerability assessments, including network and application testing, using various testing techniques.
- Strong knowledge of cybersecurity practices, risk management, incident response, and vulnerability management.
- Experience working in a cloud environment (AWS, GCP, Azure).
- Proficiency in programming languages such as Python, Bash, Java, C++, or PowerShell.
- Understanding of the Software Development Life Cycle and infrastructure/cloud architecture security testing approaches.
- Ability to conduct and lead security assessments independently.
- Excellent communication skills to convey technical information to diverse audiences.
Certifications:
- OSCP, C|EH, GPEN, or CEPT preferred.
Snell & Wilmer offers a competitive, performance-based compensation package along with comprehensive benefits including medical, dental, vision, disability, life insurance, 401K/profit sharing, paid holidays, tuition reimbursement, and paid time off. We value Diversity, Equity, and Inclusion, and are an Equal Employment Opportunity employer.