Senior Security Test Engineer

Index Engines

Holmdel Township (NJ)

Hybrid

USD 100,000 - 130,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive salary
401(k)
Professional development opportunities
Unlimited PTO
Hybrid work schedule

Job summary

Index Engines is seeking a Senior Security Test Engineer to enhance the security of its CyberSense product. Responsibilities include developing a security testing strategy, performing security assessments, and collaborating with engineering teams. Ideal candidates have 7+ years of security testing experience, knowledge of SDLC practices, and proficiency with security tools like Tenable Nessus and OWASP ZAP. The role offers a hybrid work schedule, competitive salary, and benefits like unlimited PTO and professional development opportunities.

Qualifications

  • 7+ years in a security testing or engineering role.
  • Ability to reproduce and verify software vulnerabilities.
  • Experience with DAST, SCA, and API testing.

Responsibilities

  • Develop security testing strategies and manage product security scans.
  • Analyze vulnerability findings for exploitability.
  • Create actionable security reports.

Skills

Security testing
Vulnerability analysis
SDLC best practices
Troubleshooting skills (Linux)
Scripting (Bash, Python)

Education

Bachelor’s degree in Computer Science, IT, or related

Tools

Tenable Nessus
JFrog
OWASP ZAP
Jira
Confluence

Job description

The Role

We’re looking for an experienced and driven Senior Security Test Engineer to join our awesome Engineering team. In this role, you’ll take our security test strategy to the next level, ensuring that our CyberSense product continues to be highly secure. You will test CyberSense using multiple security tools, assess the severity and exploitability of issues found, and work with the Engineering teams to resolve them. You will write security assessment reports that will be consumed both internally and externally. In this role, you will collaborate closely with talented engineers, product management, quality assurance engineers, and program managers and contribute to improving security processes and metrics collection.

What You'll Do
  • Develop a best-in-class security testing strategy by combining your deep security testing and SDLC expertise with an understanding of product architecture, customer use cases, and industry trends.
  • Manage and execute product security scans at various parts of our SDLC, including DAST, SCA, API, and penetration testing.
  • Perform security testing and analyze vulnerability findings to determine real-world exploitability, reproduce issues, separate false positives from actionable risks, and communicate remediation plans.
  • Verify security fixes and confirm remediation effectiveness.
  • Create clear and actionable security reports.
  • Contribute to our SDLC with respect to security practices.
  • Participate in threat modeling and security design discussions to identify potential risks early in the SDLC.
  • Stay current with security testing trends and continuously monitor and evaluate new tools and technologies.
  • Contribute in responding to customer and partner security inquiries.
  • Coordinate with independent security testing teams.
  • Monitor the CVE database and assess potential impacts to our products and customers.
  • Deploy, configure, and maintain Index Engines products in lab environments for security testing.
  • Provide detailed and well-documented updates in Jira tickets, including descriptions of testing performed, steps taken, and results observed.
  • Collaborate closely with peers, sharing expertise and supporting team success and continuous improvement.
What You Bring
  • 7+ years of professional experience in a security testing or security engineering role within a product company.
  • Experience identifying and validating software security vulnerabilities in complex applications, including the ability to reproduce and verify findings.
  • Deep understanding of secure SDLC best practices and processes.
  • Experience with DAST, SCA, and API testing using tools such as Tenable Nessus, JFrog, and OWASP ZAP.
  • Knowledge of networking technologies such as proxy servers and firewalls.
  • Strong troubleshooting skills across Linux environments and full-stack applications.
  • Scripting skills in Bash or Python for automation and diagnostics.
  • Excellent interpersonal skills with the ability to work both independently and within a collaborative team environment.
  • Strong written and verbal communication skills for engaging with customers and internal teams.
  • Experience working in a matrixed, global organization, including coordination across time zones.
  • Bachelor’s degree in Computer Science, Information Technology, or a related field.
  • A strong desire to learn, adapt, and grow in a fast-paced, customer-focused environment.
We’d Love It If You Have
  • Master’s degree in Computer Science or a related field.
  • Experience using Jira, Confluence, and Xray for issue tracking and documentation.
  • Familiarity with virtualization technologies such as VMware or Hyper‑V.
  • Programming experience in Python or C/C++.
  • One or more ethical hacking or security certifications.
  • Hands‑on experience with backup technologies, storage systems, and data recovery processes.
Benefits
  • Competitive salary based on experience and qualifications
  • 401(k)
  • Opportunities for professional development and certification support
  • Collaborative team environment with a mission‑driven culture
  • Unlimited PTO
  • Hybrid work schedule with WFH on Mondays and Fridays
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Application Security Test Engineer
Senior Application Security Test Engineer

Index Engines • Holmdel Township (NJ)

Hybrid
USD 100,000 - 130,000
Competitive salary
Health, dental, and vision benefits
401(k)
+2
Security Engineer
Security Engineer

Horizontal Talent • Brooklyn Park (MN)

On-site
USD 120,000 - 160,000
Security Operations Engineer
Security Operations Engineer

Reserv • Atlanta (GA)

Hybrid
USD 80,000 - 100,000
Generous health-insurance package
401(k) retirement plan with employer matching
Competitive PTO policy
+1
Senior Security Engineer - Product Security
Senior Security Engineer - Product Security

Cogent Security • San Francisco (CA)

On-site
USD 100,000 - 300,000
Staff Security Engineer (Product Security and Architecture)
Staff Security Engineer (Product Security and Architecture)

Compass • Ventura (CA)

On-site
USD 150,000 - 230,000
Senior Security Engineer - Product Security
Senior Security Engineer - Product Security

Cogent-Security • United States

On-site
USD 100,000 - 300,000
Cyber Security Engineer—Technical Lead
Cyber Security Engineer—Technical Lead

Leidos • Bethesda (MD)

On-site
USD 150,000 - 180,000
Security Engineer/Tester
Security Engineer/Tester

ManpowerGroup Global, Inc. • Town of Norway (WI), Seattle (WA)

On-site
USD 80,000 - 100,000
Medical and Prescription Drug Plans
Dental Plan
401(k) Plus Match
+1
Senior Security Engineer
Senior Security Engineer

Mach7 Technologies • New Jersey

On-site
USD 120,000 - 190,000
Sr. Information Security Engineer
Sr. Information Security Engineer

State of Wisconsin Investment Board • Madison (WI)

On-site
USD 120,000 - 180,000