Logo
ACI Worldwide

ACI Worldwide is hiring: Sr. Cybersecurity Pentester in Norcross

ACI Worldwide, Norcross, GA, United States, 30092


Job Description

Join the Team Making Possibilities Happen

If you've ever used an ATM, paid a bill through your phone, sent money to a friend or shopped online, chances are your transaction was safeguarded and processed using our software. Now it's your turn to serve the payment needs of organizations and people the world over.

This position can be remote but candidates must be currently located in the US in Eastern or Central time zones and preference will be given to those near our Norcross, GA or Omaha, NE office.

Applicants must be authorized to work for any employer in the U.S. Visa sponsorship or assumption of a of an sponsored Visa is not available at this time.

As a Sr Cybersecurity Pentester (Hybrid) in Norcross, GA or Omaha, NE, you will join a diverse, passionate team, dedicated to making possibilities happen in the payments industry!

Job Summary:

Protects the confidentiality and availability of software, systems and information owned, controlled, used and managed by the company. Will be responsible for planning, coordinating, and performing penetration testing and vulnerability assessments within a team environment. Conducts formal tests on web-based and traditional applications, networks/infrastructure, mobile, source code reviews, threat analysis, wireless network assessments and other technology. Performs the daily operation of the team including vulnerability identification, risk assessments, vulnerability remediation, and validation testing. Will provide actionable recommendations and guidance for the business based on the assessment findings.

Job Responsibilities:
  • Leads and coordinates penetration testing and external red teaming of networks, systems, and applications within agreed scope and rules of engagement.
  • Uses penetration testing methodologies to validate the remediation of vulnerabilities and misconfiguration issues.
  • Interfaces with business units to assess technology initiatives, identify potential risks, and recommend improvements.
  • Provides continuous enhancement of security services and methodologies to protect the environment, customers and associates.
  • Develops and maintains a threat modeling capability that aims to identify specific threat actors and TTPs.
  • Leads regular meetings with business unit stakeholders to assess remediation efforts from the findings of the pentest.
  • Gathers security related information across multiple electronic, computer and development environments. Identifies, summarizes, reviews, and reports potential/actual actions that may jeopardize information security environments.
  • Participates in information security audits to proactively minimize and eliminate information security vulnerabilities.
  • Responds to information security incidents and assists with internal information security investigations.
  • Participates in the development of information security systems, enhancements, and support processes.
  • Reviews Application Code reports on vulnerabilities.
  • Performs network and application penetration testing to dissect any system, any ports, services either internal or external to ACI.
  • Performs extensive internal network reconnaissance with the correlation of data from SIEM, scanning applications, network monitoring devices, host applications, etc.
  • Identifies and understands IOCs (Indicators of Compromise) in networks and endpoints.
  • Performs Web application testing focused on http/https vulnerabilities, TLS, application level like XSS, SQL, cross site scripting.
  • Develops technical specifications to satisfy customer requirements and meet security policy which represent efficient and effective solutions in relationship to operational costs, usability, and maintainability.
  • Perform other duties as assigned.
  • Understands and complies with Risk Management program requirements including identification of risks, key controls, and control testing as applicable to their responsibilities.
  • Understand and adhere to all corporate policies to include but not limited to the ACI Code of Business Conduct and Ethics.
Knowledge, Skills and Experience required for the job:
  • Bachelor's degree in computer science, MIS, or related field or equivalent experience.
  • 5 years' experience in information security in various security disciplines.
Preferred Knowledge, Skills and Experience needed for the job:
  • Ability to interface with internal resources and drive results within deadlines.
  • Expert level Excel skills.
  • Ability to create error free reports.
  • Capable of managing multiple projects simultaneously.


Work Environment:

Standard work environment

Benefits: In return for your expertise, we offer growth, opportunity, and a competitive compensation and benefits package in a casual work environment.

Are you ready to help us transform the world of electronic payments? To learn more about ACI Worldwide, visit our web site at www.aciworldwide.com Job ID (Requisition #14909).

ACI Worldwide is an AA/EEO employer in the United States, which includes providing equal opportunity for protected veterans and individuals with disabilities, and an EEO employer globally

#LI-LF1

#LI-Hybrid

About Us

ACI Worldwide is a global leader in mission-critical, real-time payments software. Our proven, secure and scalable software solutions enable leading corporations, fintechs and financial disruptors to process and manage digital payments, power omni-commerce payments, present and process bill payments, and manage fraud and risk. We combine our global footprint with a local presence to drive the real-time digital transformation of payments and commerce.