채용
- Responsibilities This is an outstanding opportunity to join Principal as a Consultant
- Info Security Engineer.
You will conduct security penetration testing on Principal applications deployed both on-premises and in cloud environments.
This role is vital to ensuring our systems remain secure and function flawlessly.
Key Responsibilities Perform manual security penetration assessments of internet-facing software and APIs maintained in both on-premises infrastructure and cloud environments using AWS services including S3 buckets, EC2 instances, Lambda functions, API Gateway, SNS, and others.
Conduct security testing on thick client/desktop applications using tools like Echo Mirage, IDAPro, CFF Explorer, Dnspy, MS sys-internals, Wireshark, dotpeek, Ghidra.
Prioritize Vulnerability Disclosure Program (VDP) and Bug Bounty reports, including detailed technical validation, consistent assessment of impact and severity, and fair evaluation of external security researcher submissions.
Use CVSS scoring mechanism to assess the risk levels of identified vulnerabilities.
Innovatively identify techniques to exploit vulnerabilities in applications and generate impactful proof-of-concepts (POCs).
Communicate and document findings effectively, providing remediation mentorship to app-dev teams.
Provide mentorship and support to peers and junior team members in vulnerability assessment techniques.
Technical Qualifications 8-10 years of direct experience assessing the security of web applications, web APIs, thick client apps, mobile apps, and AWS services, preferably within the finance sector.
Experience: with web/API testing tools such as Burp Suite, Postman, OWASP ZAP, and advanced security testing tools on Kali Linux.
Sound knowledge of common web application security vulnerabilities (OWASP Top Ten, SANS Top 25, etc.) and programming patterns leading to them, as well as remediation techniques. AWS Cloud Practitioner Certification or other cloud certifications are beneficial.
Security-related certifications such as C|EH, CPent, etc., are a plus.
Plus/Good to Have
Experience: in conducting security assessments of AI applications.
Experience: with server-less architectures and micro-services on AWS.
Qualifications Working Hours 4:30 PM – 1:30 AM IST to provide support to the US and LatAM collaborators.
If you are passionate about information security and looking to make an impact in a collaborative and high-reaching environment, Principal is the place for you!
Qualifications Education: Bachelor’s degree in Engineering or a related field, or equivalent experience.
Additional Information Our Engineering Culture Through our Agile/Lean DevOps environment centered on delivering quality solutions, we’ve fostered a culture of innovation and experimentation across our development teams.
As a customer-focused organization, we work closely with our end users and product owners to understand and rapidly respond to emerging business needs.
Collaboration is embedded into everything we do – from the products we develop to the quality service we provide.
We’re driven by the belief that diversity of thought, background, and perspective is critical to crafting the best products and experiences for our customers.
Experience: Principal At Principal, we value connecting on both a personal and professional level.
Together, we’re imagining a more purpose-led future for financial services – and that starts with you.
Our success depends on the outstanding experiences, backgrounds, and talents of our employees.
And we support our employees the same way we support our customers: with comprehensive, competitive benefit offerings crafted to protect their physical, financial, and social well-being.
Check out our careers site to learn more about our purpose, values and benefits.
Principal is an Equal Opportunity Employer All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.
- This is an outstanding opportunity to join Principal as a Consultant
- Info Security Engineer.
You will conduct security penetration testing on Principal applications deployed both on-premises and in cloud environments.
This role is vital to ensuring our systems remain secure and function flawlessly.
Key Responsibilities Perform manual security penetration assessments of internet-facing software and APIs maintained in both on-premises infrastructure and cloud environments using AWS services including S3 buckets, EC2 instances, Lambda functions, API Gateway, SNS, and others.
Conduct security testing on thick client/desktop applications using tools like Echo Mirage, IDAPro, CFF Explorer, Dnspy, MS sys-internals, Wireshark, dotpeek, Ghidra.
Prioritize Vulnerability Disclosure Program (VDP) and Bug Bounty reports, including detailed technical validation, consistent assessment of impact and severity, and fair evaluation of external security researcher submissions.
Use CVSS scoring mechanism to assess the risk levels of identified vulnerabilities.
Innovatively identify techniques to exploit vulnerabilities in applications and generate impactful proof-of-concepts (POCs).
Communicate and document findings effectively, providing remediation mentorship to app-dev teams.
Provide mentorship and support to peers and junior team members in vulnerability assessment techniques.
Technical Qualifications 8-10 years of direct experience assessing the security of web applications, web APIs, thick client apps, mobile apps, and AWS services, preferably within the finance sector.
Experience: with web/API testing tools such as Burp Suite, Postman, OWASP ZAP, and advanced security testing tools on Kali Linux.
Sound knowledge of common web application security vulnerabilities (OWASP Top Ten, SANS Top 25, etc.) and programming patterns leading to them, as well as remediation techniques. AWS Cloud Practitioner Certification or other cloud certifications are beneficial.
Security-related certifications such as C|EH, CPent, etc., are a plus.
Plus/Good to Have
Experience: in conducting security assessments of AI applications.
Experience: with server-less architectures and micro-services on AWS.
Working Hours 4:30 PM – 1:30 AM IST to provide support to the US and LatAM collaborators.
If you are passionate about information security and looking to make an impact in a collaborative and high-reaching environment, Principal is the place for you!
Qualifications Education: Bachelor’s degree in Engineering or a related field, or equivalent experience.
총 조회수
1
총 지원 클릭 수
0
모의 지원자 수
0
스크랩
0
비슷한 채용공고
Principal 소개

Principal
PublicVicki Ree Principal, later known as Victoria Principal, is an American actress, producer, entrepreneur, and author, best known for her role as Pamela Barnes Ewing on the American primetime television soap opera Dallas. She spent nine years on the long-running series, leaving in 1987.
10,001+
직원 수
Harrogate
본사 위치
리뷰
2.8
3개 리뷰
워라밸
2.5
보상
3.5
문화
2.0
커리어
2.5
경영진
1.8
25%
친구에게 추천
장점
Supportive assistant general manager
Decent compensation
Well-engineered codebase
단점
Poor management (absent or overly controlling)
Petty and vindictive leadership behavior
Gender diversity issues
연봉 정보
5개 데이터
Principal/L7
Senior/L5
Principal/L7 · DATA SCIENTIST II
1개 리포트
$137,650
총 연봉
기본급
$105,885
주식
-
보너스
-
$137,650
$137,650
면접 경험
6개 면접
난이도
3.2
/ 5
소요 기간
14-28주
경험
긍정 0%
보통 50%
부정 50%
면접 과정
1
Application Review
2
Recruiter Screen
3
Technical Phone Screen
4
System Design Interview
5
Behavioral Interview
6
Onsite/Virtual Interviews
7
Offer
자주 나오는 질문
System Design
Coding/Algorithm
Technical Leadership
Behavioral/STAR
Past Experience
뉴스 & 버즈
Albany announces new elementary school principal - NEWS10 ABC
NEWS10 ABC
News
·
3d ago
[Hodgkinson] I’ve confirmed that Gene Principe will still be doing broadcast work for the Oilers-Ducks series. He will be handling pre and postgame duties, conducting interviews, sharing stories, and doing other live hits for Sportsnet
·
3d ago
·
233
·
17
Allentown elementary school principal was forced out because she’s Puerto Rican, lawsuit says - lehighvalleylive
lehighvalleylive
News
·
3d ago
St. Paul principal aims to build community with new Afrocentric school - Star Tribune
Star Tribune
News
·
3d ago




