Lead complex internal penetration tests to uncover security weaknesses.
•Lead Offensive Security Engagements: Own and execute complex, end-to-end internal penetration tests against Bazaarvoice's most critical applications, infrastructure, and cloud environments.
•You will simulate advanced, multi-stage attack scenarios to uncover systemic security weaknesses before they can be exploited.
•Key Responsibilities Lead Offensive Security Engagements Program and Tooling Enhancement Strategic Third-Party Penetration Test Management Bug Bounty Program Leadership Mentorship and Technical Leadership Threat Modeling Requirements Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent practical experience with 10+ years of related experience. 7+ years of hands-on experience in offensive security, with a strong background in penetration testing, red teaming, or application security.
•Operational Cloud Expertise: 3-5 years of hands-on experience operating in, managing, or performing manual penetration tests of cloud infrastructure (AWS preferred), with a deep understanding of cloud-native attack vectors (e.g., IAM exploitation, container escapes, and serverless security).
•Expert-level knowledge in managing the lifecycle of penetration testing engagements and a proven track record of driving remediation efforts in a complex, multi-team environment.
•Deep and practical understanding of common and advanced vulnerability classes (OWASP Top 10 and beyond) and the ability to architect solutions to remediate them at scale.
•High proficiency in one or more scripting languages (e.g., Python, Go, Bash) for advanced tool development and automation of complex tasks.
•Exceptional communication and interpersonal skills, with a demonstrated ability to influence technical and non-technical stakeholders at all levels, including senior leadership.
•A proven history of mentorship and a passion for elevating the skills of those around you.