FREE ACCESS
5,000–10,000 jobs/day
See all jobs on Scoutfield
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in application and infrastructure penetration testing, security code reviews, and implementing security policies across various environments. Proficient in managing security tools and conducting vulnerability assessments while effectively communicating technical concepts to diverse stakeholders.
Highest-signal resume keywords
Application Penetration TestingInfrastructure Penetration TestingSecurity Code ReviewsAWS, Azure, or GCPSecurity Policies Implementation
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Penetration TestingSecurity Code ReviewVulnerability AssessmentSecurity Logging and MonitoringIncident ResponseSecurity Tool IntegrationKubernetes SecurityCI/CD Pipeline SecurityWeb Application Firewall ManagementManual Penetration Testing
Soft Skills
Strong Communication SkillsMentoring
Tools & Technologies
DockerKubernetesSIEM SolutionsEDRIDSCSPMCWPPFortinet
Industry Keywords
Secure Software Development Life CycleSecurity Best PracticesRed-Team ActivitiesBug-Bounty ProgramSecurity Roadmap
Tech Stack
Tools & technologiesAWSAzureCloudDockerFirewallsGoogle Cloud PlatformKubernetesPythonSDLC
About the role
Key responsibilities & impact- Review new product features and suggest security-improving features
- Drive the Secure Software Development Life Cycle and review security acceptance criteria and threat models
- Guide and train teams on security checks and best practices
- Perform pre-deployment and post-deployment penetration tests
- Plan and execute web, mobile, and cloud security assessments and penetration tests
- Identify infrastructure security issues through red-team activities with Infrastructure teams
- Define, implement, and monitor infrastructure security measures
- Contribute to the security roadmap and backlog
- Assess and integrate security tools
- Conduct incident response and research
- Monitor security news, trends, tools, and incidents and drive required changes
- Support management of the bug-bounty program and security channels
- Conduct vulnerability research against company assets
- Improve security logging and monitoring solutions
- Coordinate company-wide security-incident response through remediation
- Manage vulnerabilities in production and staging environments
- Mentor members of the security team
Requirements
What you’ll need- Bachelor's degree in Computer Science, Software Engineering, or a related field (or equivalent work experience)
- Minimum 5 years of experience performing application and/or infrastructure penetration testing beyond running automated tools
- Highly experienced in performing security code reviews; Python experience is a plus
- Solid understanding of AWS, Azure, or GCP
- Solid understanding of Docker and Kubernetes; serverless/Lambda experience is a plus
- Solid understanding of software development principles, software testing methodologies, and version control systems such as Git
- Hands-on experience implementing security policies across servers, storage, networks, security, virtualization, systems monitoring, and management
- Strong communication skills and ability to articulate technical concepts to technical and non-technical stakeholders
- Solid understanding of networks and network security; Fortinet experience is a plus
- Hands-on experience managing SIEM solutions
- Knowledge of EDR, IDS, CSPM, and CWPP
- Required application-form experience areas include securing Kubernetes clusters, securing CI/CD pipelines, managing Web Application Firewalls, security logging and monitoring solutions, and manual penetration testing beyond automated vulnerability scanning
Benefits
Comp & perks- Highly collaborative position embedded within product, engineering, and infrastructure teams
- Mentorship opportunities through actively mentoring members of the security team
