Samsung Electronics GmbH
Senior Engineer, Software Security
Samsung Electronics GmbH, Mountain View, California, us, 94039
The Development QA (DQA) lab in Mountain View has a dual role that is first to research new automation tools as well as take current tools and refine them to our needs. Second, act as a centralized QA group to provide quality assessment by creating comprehensive E2E test strategy for various Endpoint security solutions developed.
This duality provides a unique opportunity to explore new concepts in different technologies and perform original research in the quality domain.
We are looking for a penetration tester who conducts pre-authorized simulated cyberattacks on our groundbreaking B2B enterprise products and services to test system resilience.
In this role, you will conduct offensive security operations to emulate adversary tactics and procedures to test preventative, detective, and response controls across the global technology landscape. You will use your expertise to help influence technology decisions and work as part of a team to create consistent approaches to the offensive security processes and techniques.
Our ideal candidate is a creative thinker and an excellent communicator who is comfortable working in a demanding, fast-paced environment. If you have a passion for security and a strong understanding of the latest technologies, we want to hear from you!
Responsibilities:
Develop expertise in our product solutions, deep diving into design/architecture, & execute white box and black box penetration scenarios.
Plan, scope and conduct vulnerability assessments/Penetration tests on internal/external facing public assets such as Web applications, Android platforms, Android Apps, Backend APIs, and Cloud services.
Research & conduct adversary simulation for known security threats and identify novel attack vectors to test a system’s relative security readiness.
Conduct Threat modelling, Threat Intelligence, and scoping with stakeholders.
Assist in creating and maintaining internal penetration testing practices within the QA team.
Build Test harness & required Automation suites and validate attack vectors in Threat Lab.
Create and target journal publications on security research.
Log and track vulnerabilities until closure.
Coordinate with program management and security architects at internal & offshore sites.
Stay up to date on current tools, technologies, and vulnerabilities to incorporate into testing practices.
Research and develop exploits for zero-day vulnerabilities.
Conduct secure source code analysis on products and services.
Required Skills:
BS in Cyber Security or relevant disciplines or equivalent combination of education, training, and experience.
5+ years’ experience in Penetration testing including 2+ years experience in Android and 1+ year experience in Web Application.
Comprehensive knowledge in Information Security practices on malware, phishing attacks, attack vectors, and methods to protect against threats.
Certifications in offensive security: OSCP, OSWA, OSWE, CRTO, BSCP, or similar.
Extensive Knowledge in Java, C, or any relevant programming language.
Special Attributes:
Experience in Endpoint security platforms.
History in cyber security competitions or CTFs.
Blog posts on security research, walkthroughs, or PoCs in the security domain.
Malware development or reverse engineering experience.
Experience testing Endpoint Detection & Response (EDR), Extended Detection & Response (XDR) platforms, Security Information and Event Management (SIEM), Security Orchestration, Automation, and Response (SOAR), or related products.
Compensation:
The base pay range for roles at this level is listed below, but may be higher or lower in other states due to geographic differentials in the labor market. Within the base pay range, individual rates depend on a number of factors—including the role’s function and location as well as the individual’s knowledge, skills, experience, education, and training. This is part of our comprehensive compensation package with annual bonus eligibility and generous benefits to help you live life well.
Base Pay Range: $126,200 — $173,450 USD
Additional Information:
Be careful not to disclose information related to the trade secrets of your previous or current employer(s).
Essential Job Functions:
This position will be performed in an office setting. The position will require the incumbent to sit and stand at a desk, communicate in person and by telephone, and frequently operate standard office equipment, such as telephones and computers.
Samsung Research America is committed to complying with all Federal, State, and local laws related to the employment of qualified individuals with disabilities. If you are an individual with a disability and would like to request a reasonable accommodation as part of the employment selection process, please contact the recruiter or email sratalent@samsung.com.
Samsung Research America is an Affirmative Action and Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity or expression, national origin, disability, or status as a protected veteran.
For more information regarding protection from discrimination under Federal law for applicants and employees, please refer to the links below.
#J-18808-Ljbffr
#J-18808-Ljbffr