OSec
Cybersecurity Specialist / Security Engineer (L0), you will play a crucial role in ensuring the security and integrity of client network environments, web applications, and REST APIs. Your primary responsibilities will include validating findings from automated technologies, conducting checklist-based penetration tests, generating vulnerability reports for our clients, and prioritizing continuous self-improvement to stay current with evolving security trends.
Key Responsibilities:1. Validate Findings: Verify and validate the results generated by automated security testing technologies to ensure accuracy for client networks and web applications.2. Penetration Testing: Conduct penetration testing of client network environments and web applications using established frameworks, including but not limited to OWASP, PTES, and NIST, to identify vulnerabilities and weaknesses.3. Understanding of Technologies: Possess a high-level understanding of network, web technologies, APIs, and their interactions to effectively assess and test them for security vulnerabilities in client environments.4. Vulnerability Reporting: Prepare comprehensive vulnerability reports that include detailed write-ups, descriptions of identified issues, recommended remediation steps, and an assessment of the business-related impact for our clients.5. Deadline Management: Independently manage and prioritize your workload to ensure that project deadlines for our clients are met in a timely manner while maintaining the highest standards of quality and accuracy.6. Collaboration: Foster communication and collaboration with other team members and departments to share insights, findings, and best practices, as security is a collective effort for our clients.7. Retesting: Perform retesting of identified issues within client network, APIs, and web application environments to confirm that vulnerabilities have been successfully remediated.8. REST API Penetration Testing: Conduct penetration testing of REST API environments for our clients to identify security vulnerabilities and potential risks.
Cybersecurity company with offices in Honolulu and New York City. Remote positions available.
No reviews yet. Reviews unlock for candidates 30 days after adding this program to their tracker — integrity over volume.
Interview prep for this program▸
- ▸ "How many of your past SkillBridge interns received full-time offers?" — a serious program knows the number.
- ▸ "Who will my day-to-day mentor be, and what does week one look like?"
- ▸ "The listing says 91 - 120 days — can that flex to my approved window if my command shortens it?"
- ▸ "Is relocation expected for a full-time offer, or can I convert where I am?"
- ✓ Your projected start window and separation date (from your profile)
- ✓ Your command's approval status — even "packet drafted" signals you're serious
- ✓ Your civilian-translated resume bullets (generate them here)
- ✓ A written training-plan ask — you'll need it for your packet anyway