refresh

트렌딩 기업

트렌딩 기업

채용

채용Principal

Consultant - Info Security Engineer

Principal

Consultant - Info Security Engineer

Principal

Hyderabad, India

·

On-site

·

Full-time

·

2w ago

  • Responsibilities This is an outstanding opportunity to join Principal as a Consultant
  • Info Security Engineer.

You will conduct security penetration testing on Principal applications deployed both on-premises and in cloud environments.

This role is vital to ensuring our systems remain secure and function flawlessly.

Key Responsibilities Perform manual security penetration assessments of internet-facing software and APIs maintained in both on-premises infrastructure and cloud environments using AWS services including S3 buckets, EC2 instances, Lambda functions, API Gateway, SNS, and others.

Conduct security testing on thick client/desktop applications using tools like Echo Mirage, IDAPro, CFF Explorer, Dnspy, MS sys-internals, Wireshark, dotpeek, Ghidra.

Prioritize Vulnerability Disclosure Program (VDP) and Bug Bounty reports, including detailed technical validation, consistent assessment of impact and severity, and fair evaluation of external security researcher submissions.

Use CVSS scoring mechanism to assess the risk levels of identified vulnerabilities.

Innovatively identify techniques to exploit vulnerabilities in applications and generate impactful proof-of-concepts (POCs).

Communicate and document findings effectively, providing remediation mentorship to app-dev teams.

Provide mentorship and support to peers and junior team members in vulnerability assessment techniques.

Technical Qualifications 8-10 years of direct experience assessing the security of web applications, web APIs, thick client apps, mobile apps, and AWS services, preferably within the finance sector.

Experience: with web/API testing tools such as Burp Suite, Postman, OWASP ZAP, and advanced security testing tools on Kali Linux.

Sound knowledge of common web application security vulnerabilities (OWASP Top Ten, SANS Top 25, etc.) and programming patterns leading to them, as well as remediation techniques. AWS Cloud Practitioner Certification or other cloud certifications are beneficial.

Security-related certifications such as C|EH, CPent, etc., are a plus.

Plus/Good to Have

Experience: in conducting security assessments of AI applications.

Experience: with server-less architectures and micro-services on AWS.

Qualifications Working Hours 4:30 PM – 1:30 AM IST to provide support to the US and LatAM collaborators.

If you are passionate about information security and looking to make an impact in a collaborative and high-reaching environment, Principal is the place for you!

Qualifications Education: Bachelor’s degree in Engineering or a related field, or equivalent experience.

Additional Information Our Engineering Culture Through our Agile/Lean DevOps environment centered on delivering quality solutions, we’ve fostered a culture of innovation and experimentation across our development teams.

As a customer-focused organization, we work closely with our end users and product owners to understand and rapidly respond to emerging business needs.

Collaboration is embedded into everything we do – from the products we develop to the quality service we provide.

We’re driven by the belief that diversity of thought, background, and perspective is critical to crafting the best products and experiences for our customers.

Experience: Principal At Principal, we value connecting on both a personal and professional level.

Together, we’re imagining a more purpose-led future for financial services – and that starts with you.

Our success depends on the outstanding experiences, backgrounds, and talents of our employees.

And we support our employees the same way we support our customers: with comprehensive, competitive benefit offerings crafted to protect their physical, financial, and social well-being.

Check out our careers site to learn more about our purpose, values and benefits.

Principal is an Equal Opportunity Employer All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status.

  • This is an outstanding opportunity to join Principal as a Consultant
  • Info Security Engineer.

You will conduct security penetration testing on Principal applications deployed both on-premises and in cloud environments.

This role is vital to ensuring our systems remain secure and function flawlessly.

Key Responsibilities Perform manual security penetration assessments of internet-facing software and APIs maintained in both on-premises infrastructure and cloud environments using AWS services including S3 buckets, EC2 instances, Lambda functions, API Gateway, SNS, and others.

Conduct security testing on thick client/desktop applications using tools like Echo Mirage, IDAPro, CFF Explorer, Dnspy, MS sys-internals, Wireshark, dotpeek, Ghidra.

Prioritize Vulnerability Disclosure Program (VDP) and Bug Bounty reports, including detailed technical validation, consistent assessment of impact and severity, and fair evaluation of external security researcher submissions.

Use CVSS scoring mechanism to assess the risk levels of identified vulnerabilities.

Innovatively identify techniques to exploit vulnerabilities in applications and generate impactful proof-of-concepts (POCs).

Communicate and document findings effectively, providing remediation mentorship to app-dev teams.

Provide mentorship and support to peers and junior team members in vulnerability assessment techniques.

Technical Qualifications 8-10 years of direct experience assessing the security of web applications, web APIs, thick client apps, mobile apps, and AWS services, preferably within the finance sector.

Experience: with web/API testing tools such as Burp Suite, Postman, OWASP ZAP, and advanced security testing tools on Kali Linux.

Sound knowledge of common web application security vulnerabilities (OWASP Top Ten, SANS Top 25, etc.) and programming patterns leading to them, as well as remediation techniques. AWS Cloud Practitioner Certification or other cloud certifications are beneficial.

Security-related certifications such as C|EH, CPent, etc., are a plus.

Plus/Good to Have

Experience: in conducting security assessments of AI applications.

Experience: with server-less architectures and micro-services on AWS.

Working Hours 4:30 PM – 1:30 AM IST to provide support to the US and LatAM collaborators.

If you are passionate about information security and looking to make an impact in a collaborative and high-reaching environment, Principal is the place for you!

Qualifications Education: Bachelor’s degree in Engineering or a related field, or equivalent experience.

총 조회수

1

총 지원 클릭 수

0

모의 지원자 수

0

스크랩

0

Principal 소개

Principal

Principal

Public

Vicki Ree Principal, later known as Victoria Principal, is an American actress, producer, entrepreneur, and author, best known for her role as Pamela Barnes Ewing on the American primetime television soap opera Dallas. She spent nine years on the long-running series, leaving in 1987.

10,001+

직원 수

Harrogate

본사 위치

리뷰

2.8

3개 리뷰

워라밸

2.5

보상

3.5

문화

2.0

커리어

2.5

경영진

1.8

25%

친구에게 추천

장점

Supportive assistant general manager

Decent compensation

Well-engineered codebase

단점

Poor management (absent or overly controlling)

Petty and vindictive leadership behavior

Gender diversity issues

연봉 정보

5개 데이터

Principal/L7

Senior/L5

Principal/L7 · DATA SCIENTIST II

1개 리포트

$137,650

총 연봉

기본급

$105,885

주식

-

보너스

-

$137,650

$137,650

면접 경험

6개 면접

난이도

3.2

/ 5

소요 기간

14-28주

경험

긍정 0%

보통 50%

부정 50%

면접 과정

1

Application Review

2

Recruiter Screen

3

Technical Phone Screen

4

System Design Interview

5

Behavioral Interview

6

Onsite/Virtual Interviews

7

Offer

자주 나오는 질문

System Design

Coding/Algorithm

Technical Leadership

Behavioral/STAR

Past Experience