Collaborate with Cyber Threat Intelligence teams across regions to share situational awareness on active threats
Support Incident Response, Purple Team, and Vulnerability Management initiatives
Monitor and evaluate cyber threat intelligence from multiple external and internal sources
Execute proactive threat hunts to identify malicious activities
Conduct penetration testing within agreed scope and timelines using industry-standard methodologies (e.g., OWASP)
Perform web application security testing including injection attacks, XSS, CSRF, broken authentication, session management, security misconfiguration, sensitive data exposure, and insecure direct object references
Utilize authorized tools such as Burp Suite to identify vulnerabilities and assess risk
Maintain strict confidentiality and data security practices throughout all engagements
Provide guidance on improving security posture and support retesting to validate remediation efforts
Required Skills
Cyber Threat Intelligence and Threat Modeling
Penetration Testing — web application focus (OWASP methodology)
Incident Response and Purple Team operations
Vulnerability Management and Threat Hunting
Burp Suite and equivalent authorized security tooling
Web application attack vectors: XSS, CSRF, SQL Injection, broken authentication
Security posture assessment and remediation validation