Job Description
Job Description
OverviewThe Cybersecurity Test Engineer II primary role is to identify and verify cybersecurity vulnerabilities and testing and verifying cybersecurity patches to be applied to Spacelabs Products. The Cybersecurity Test Engineer works as a key contributor to the Cybersecurity Team. Additionally this role participates in the Cybersecurity Team in responding to Sales Questionnaires.
Responsibilities Perform cybersecurity testing vulnerability and penetration testing under supervision. Documents targets, test plan, scenarios tested, findings, test evidence and recommendations in Cybersecurity test reports.Simulate tactics, techniques and procedures used by advanced cyber threat actors (i.e., “Hackers”).Leverage internal and external resources to research threats, vulnerabilities and intelligence on various attackers and attack infrastructure.Recognize and safely utilize attacker tools, tactics, and proceduresEvaluates cybersecurity tools used in exploit developmentProvides assistance in security awareness and training activitySupport Product Investigations for complaints and incidentsParticipates and sometimes leads the Sales Questionnaire Responses for cybersecurity. Participates as an active Cybersecurity team member in requirement reviews and team meetings.Analyze and review vulnerabilities and/or weaknesses identified by customer complaints.Participate in management technical reviews on test activities, scenarios, and results.Follows corporate standards and proceduresCollaborates and shares knowledge with team members via formal and informal methods on a regular basisProvide regular assessment progress updates that include sufficient detail to convey work completed and upcoming activitiesParticipates as an active Spacelab Cybersecurity team member in requirement reviews and team meetingsNetworking/Key relationships
Will interface on a regular basis with groups across the organization as needed.
Skills & Capabilities:
Domain Expertise
Knowlege/experience and understanding of firmware, operating systems, applications, networks and network protocols, encryption algorithms, Access Control ModelsKnowledge/experience and understanding of Software and Hardware engineering, reverse engineering, web applications, databases, scripting,Some knowledge in Operating Systems (Linux, MS Windows) Databases (MS SQL, MySQL, Postgres), Application/Web Servers (Apache, IIS, Wildfly), Microsoft WSUSSome knowledge/experience in Networking, including switching, routing, firewalls and vulnerabilitiesSecurity Testing Tools such but not limited to - Tenable Nessus, Rapid7 InsightVM, Metasploit, BurpSuite, NetSparker, Wireshark)Must have the ability to handle many software exploits and take ownership for the assigned security assessmentsMust have the ability to take ownership for high complexity Security Assessments.Ability to operate Spacelabs Medical Devices and Solutions.Knowledge of Secure Coding and Development including OWASP Top 10 and MITRE/SANS Top 25Secure Software Development Life CycleSecurity Frameworks (ISO x, NIST Special Publications)Static Code AnalysisCloud Development and Cloud Security TestingUnderstand medical device regulations and quality system requirementsFamiliarity with some common attacks:Password CrackingCross site request forgeryCross site scriptingImproper AuthorizationImproper AuthenticationPrivilege EscalationAgile/Digital Experience
Passionate about Agile software processes, data-driven development, reliability, and experimentationOpenness to working on a collaborative, cross-functional Agile solution team Qualifications Minimum of 5 years of related experience
Any Bachelors degree
Individual Skills:
Self-motivated with strong problem-solving and learning skillsProfessional attitude and service orientation; team playerFlexibility to changes in work direction as the project developsGood verbal and written communication and listening skills Ability to work well with others and under pressureStrong analytical and critical observation skillsMindset and Behaviors:
Team player that works collaboratively across Spacelabs. Passion for discovering and researching new vulnerabilities and exploitation techniquesStrong work ethic; ability to work at an abstract level and gain consensusAble to build a sense of trust and rapport that creates a comfortable and effective workplaceAttitude to thrive in a fast-paced environmentOpen minded to new approaches of learningTakes ownership and responsibility for data work
Apply for this Position
Ready to join ? Click the button below to submit your application.
Submit Application