We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
Remote

Principal Penetration Tester

HealthEquity
parental leave, paid time off, tuition assistance, 401(k)
United States
Dec 29, 2024

Principal Penetration Tester
Job Locations

US-Remote


Overview

We are CONNECTING HEALTH AND WEALTH. Come be part of remarkable.

How you can make a difference

We are seeking a highly skilled Principal Penetration Tester to join our cybersecurity team. This role involves proactive identification and mitigation of vulnerabilities in our customer-facing SaaS applications. The ideal candidate will have extensive experience in penetration testing, particularly in web-based applications, and a strong understanding of offensive security techniques.

What you'll be doing

    Lead Penetration Testing: Perform thorough penetration testing on applications, networks, systems, and infrastructure. Simulate real-world attacks to identify vulnerabilities and risks.
  • Security Assessments: Conduct risk assessments and vulnerability analysis, providing detailed reports that outline findings, severity, and remediation recommendations.
  • Red Team Engagements: Lead and participate in advanced Red Team exercises to test an organization's security readiness against sophisticated attacks.
  • Tool Development: Build, modify, and customize tools/scripts for specific penetration testing scenarios.
  • Reporting and Documentation: Generate comprehensive reports that explain the vulnerabilities found, their potential impact, and recommended remediation strategies.
  • Collaboration: Work closely with IT, development, and operations teams to communicate vulnerabilities and guide remediation efforts.
  • Research and Development: Stay up-to-date on the latest threats, vulnerabilities, and security technologies. Continuously research new attack techniques and defense strategies.
  • Mentorship: Mentor junior team members, providing guidance and sharing knowledge of best practices and cutting-edge techniques. Continue to formally document HealthEquity's layered security model and build out current and future state security models.
  • Foster a working environment that is conducive to two-way communication, teamwork and learning.

What you will need to be successful

  • Proven experience in penetration testing, particularly on SaaS applications.
  • Familiarity with solutions like Burp Suite, Metasploit, and OWASP Top 10.
  • Strong understanding of web application security and common vulnerabilities.
  • Ability to think like an attacker and approach testing with a black box mentality.
  • Ability to chain multiple exploits together to demonstrate complex attack scenarios.
  • Excellent problem-solving skills and attention to detail.
  • Strong communication skills, with the ability to explain complex security issues to non-technical stakeholders.

#LI-Remote

This is a remote position.



Salary Range

$133,000.00 to $173,000.00/year


Benefits & Perks

The compensation range describes the typical minimum or maximum base pay range for this position. The actual compensation offer is determined based on job-related knowledge, education, skills, experience, and work location. This position will be eligible for performance-based incentives as part of the total compensation package, in addition to a full range of benefits including:

  • Medical, dental, and vision
  • HSA contribution and match
  • Dependent care FSA match
  • Uncapped paid time off
  • Adventure accounts
  • Paid parental leave
  • 401(k) match
  • Personal and healthcare financial literacy programs
  • Ongoing education& tuition assistance
  • Gym and fitness reimbursement
  • Wellness program incentives


Come be your authentic self

Why work for HealthEquity

HealthEquity has a vision that by2030 we will make HSAs as wide-spread and popular as retirement accounts. We are passionate about providing a solution that allows American families to connect health and wealth. Join us and discover a work experience where the person is valued more than the position. Click here to learn more.

Come be your authentic self

HealthEquity, Inc. is an equal opportunity employer that is committed to inclusion and diversity. We take affirmative action to ensure equal opportunity for all applicants without regard to race, age, color, religion, sex, sexual orientation, gender identity, national origin, status as a qualified individual with a disability, veteran status, or other legally protected characteristics. HealthEquity is a drug-free workplace. For more information about our EEO policy, or about HealthEquity's applicant disability accommodation, drug-free-workplace, background check, and E-Verify policies, please visit our Careers page.

HealthEquity is committed to your privacy as an applicant for employment. For information on our privacy policies and practices, please visit HealthEquity Privacy.

Applied = 0

(web-6f784b88cc-s8lnv)