Attack Surface Management Engineer

hace 2 semanas


San Francisco, Heredia, Costa Rica Bma Group A tiempo completo

**Job Title**:
Attack Surface Management Engineer

**Job Category**:
Professional

**Department/Group**:
Attack Surface Management

**Position Type**:
Full time

**Location**:
Remote, Costa Rica

**Reports to**:
Director Attack Surface Management
- Attack Surface Management EngineerDescription

The Attack Surface Management Engineer is responsible for activities related to Attack Surface Management, with the goal to ensure comprehensive visibility and actionability of the companies external attack surface, exposures, and vulnerabilities, minimizing the companies risk potential.
Functions
- Follows Attack Surface Mgmt processes to continuously monitor and improve visibility of the attack surface in order to detect anomalies faster and reduce incidences or potential of cyber-attacks.
- Generate comprehensive reports, including detailed findings, exploitation procedures, and mitigation techniques.
- Engage with business stakeholders to ensure they fully understand their Attack Surface, and helps them identify prioritization of vulnerabilities.
- Develops vulnerability KPIs/metrics to demonstrate coverage and remediation effectiveness.
- Execute daily operations of the Attack Surface Mgmt program, including the interpretation of scanning results.
- Asist in the identification of internal and external risks based on scanning results.
- Assist in the attribution of findings to appropriate business owner.
- Identify improvements to scan coverage.
- Coordinate with IT and geographically dispersed Business Units on vulnerability remediation and mitigation strategies.
- Assist in the documentation and standardization of process and procedures related to Attack Surface Mgmt
- Aggregating vulnerability data across technologies such as endpoints, servers, network equipment, and cloud and interpreting and presenting risk.
Responsibilities/Requirements
- Familiarity with common web vulnerabilities including: XSS, XXE, SQL Injection, Deserialization Attacks, Path Traversal Attacks, Remote Execution Flaws, and Authentication Flaws.
- Experience with one or more scripting languages such as Bash, Python, Perl, PowerShell, etc.
- Working knowledge of networking standards and protocols: IPv4 IPv6, TCP/IP, DNS, HTTPS, TLS, BGP, Firewalls and NAT, SMTP, VPN, ICMP, SSH, IPSec, etc.
- In-depth knowledge of architecture, engineering, and operations of one or more vulnerability management tools, such as Wiz, Qualys, Rapid7 and ServiceNow.
- Ability to provide creative solutions to complex problems.
- Ability to clearly communicate risk of vulnerabilities to all levels within an organization.
- Knowledge of major cloud platforms (AWS, Azure, or GCP).
- Knowledge of systems hardening and other risk mitigation factors on multiple technologies and operating systems (Window, Linux, Mac, routers, switches, Kubernetes).
- Ability to manage, organize, analyze, and present substantial amounts of data.
- Experience selecting and deploying product.
Position Requirements

Formal Education & Certification
- Four-year college diploma or university degree in computer science or computer engineering, and/or 3 years equivalent work experience.
Knowledge & Experience
- Certification that could be helpful but not required: CISSP, Security+, CEH, GIAC certifications.
- 2-4+ years of experience in information security vulnerability management role.
6+ years in security and/or technology engineering roles.
- Experience with large scale and complex environments.
- A broad and deep understanding of cybersecurity threats, vulnerabilities, controls, and remediation strategies.
- Applied knowledge and experience in cybersecurity, technology infrastructure, vulnerability management and security and controls.
- Excellent interpersonal skills and strong verbal and written communication.
- An ability to communicate complex and technical issues to diverse audiences, orally and in writing, in an easily-understood and actionable manner.
- Strong organizational skills with proven ability to manage multiple high visibility issues simultaneously.
- Proactive attitude, seeking for improvement opportunities which can positively impact the security posture and the business.
Personal Attributes
- Excellent oral and interpersonal communication skills.
- Outstanding writing and documentation skills.
- Able to communicate ideas in both technical and user-friendly language.
- Highly self-motivated and directed, with keen attention to detail.
- Able to prioritize and execute tasks in a high-pressure environment.
- Experience working in a team-oriented, collaborative environment.
- Willing to travel globally as required.



  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Company DescriptionExperian is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.We help individuals to take financial control and...


  • San Francisco, Heredia, Costa Rica Bma Group A tiempo completo

    Attack Surface Visibility Expert Job Summary:Bma Group is seeking an experienced Attack Surface Visibility Expert to join our team. In this role, you will be responsible for ensuring comprehensive visibility of our attack surface and developing strategies to mitigate identified vulnerabilities.Key Responsibilities:Develop and implement scan coverage...


  • San Francisco, Heredia, Costa Rica Bma Group A tiempo completo

    Job Description:Bma Group is seeking an experienced Cybersecurity Risk Management Engineer to join our team. In this role, you will be responsible for identifying, assessing, and mitigating cybersecurity risks across our organization.Key Responsibilities:Analyze scanning results to identify vulnerabilities and exposures.Develop and implement risk-based...


  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Company Description**About us, but we'll be brief**Experian is the world's leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society.We are thrilled to share that FORTUNE has named Experian one of the 100 Best Companies to work for.In addition, for the last five years we've...


  • San Francisco, Heredia, Costa Rica Bma Group A tiempo completo

    About the Role:We are seeking a highly skilled Security Vulnerability Specialist to join our team at Bma Group. As a key member of our cybersecurity team, you will be responsible for managing and mitigating security risks within our organization.Key Responsibilities:Develop and implement vulnerability management processes to ensure comprehensive visibility...

  • Validation Engineer Ii

    hace 2 días


    San Francisco, Heredia, Costa Rica Sgf Global A tiempo completo

    We are seeking an experienced Validation Engineer Ii to join our team at Sgf Global. As a key member of our validation team, you will be responsible for:Main Responsibilities:Support the development of technical documentationCoordinate validation activities with engineering teamsProvide status reports on validation progressRequirements:Mid to advanced level...


  • San Francisco, Heredia, Costa Rica Stryker A tiempo completo

    Job SummaryStryker is one of the world's leading medical technology companies, and we are looking for a Medical Cybersecurity Engineer to help us protect our systems and data from cyber threats. As a Medical Cybersecurity Engineer, you will play a critical role in analyzing cybersecurity threats related to the medical industry and developing mechanisms to...


  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    **Job Title:** File Management EngineerWe are seeking a skilled File Management Engineer to join our team. The successful candidate will be responsible for managing and administering all aspects of the Axway Secure Transport software within Experian Global File Transfer.You will configure file transfers in Axway Secure Transport to securely deliver files to...


  • San Francisco, Heredia, Costa Rica Hewlett Packard Enterprise A tiempo completo

    Event Management EngineerThis role has been designated as 'Edge', which means you will primarily work outside of an HPE office.Our new innovative IT services organization is HPE Pointnext.We have the expertise to advise, integrate, and accelerate our customers' outcomes from their digital transformation.The Event Management Team is the first line of support...


  • San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Company DescriptionAbout us, but we'll be briefExperian is the world's leading global information services company, unlocking the power of data to create more opportunities for consumers, businesses and society.We are thrilled to share that FORTUNE has named Experian one of the 100 Best Companies to work for.In addition, for the last five years we've been...


  • San Francisco, Heredia, Costa Rica Moody'S A tiempo completo

    About the RoleWe are looking for a talented System Engineer to join our team at Moodys. As a key member of our Workplace Services Desktop Engineering Team, you will provide expert advice and counsel to users, management, and IT project teams for the most complex systems.ResponsibilitiesProvide expert advice and counsel to users, management, and IT project...


  • San Francisco, Heredia, Costa Rica Hewlett Packard Enterprise A tiempo completo

    **Job Description**We are looking for an experienced PDM Engineer to join our team at Hewlett Packard Enterprise. The successful candidate will be responsible for delivering best-in-class product master data solutions and operations to support faster NPI and order fulfillment process capabilities.The ideal candidate will have a Bachelor's or Master's degree...

  • Quality Engineer

    hace 5 horas


    San Francisco, Heredia, Costa Rica Boston Scientific Corporation A tiempo completo

    Job OverviewThe Quality Engineer will provide support to Arden Hills and Heredia commercial and development products ensuring delivery of the highest quality results to customers while supporting continuous improvement projects and quality initiatives.This role will work in various functions including design activities, risk management, post-market...


  • San Francisco, Heredia, Costa Rica Hewlett Packard Enterprise A tiempo completo

    Junior Change Management EngineerThis role has been designated as 'Edge', which means you will primarily work outside of an HPE office.Global Operations prioritizes putting customers and partners first by developing the workforce of the future.This involves strategic, inclusive, and collaborative working culture.At our core, we strive to uphold HPE's values...

  • Iam Security Engineer Ii

    hace 2 semanas


    San Francisco, Heredia, Costa Rica Experian A tiempo completo

    Company Description**Experian **is the world's leading global information services company.During life's big moments - from buying a home or a car, to sending a child to college, to growing a business by connecting with new customers - we empower consumers and our clients to manage their data with confidence.We help individuals to take financial control and...


  • San Francisco, Heredia, Costa Rica Servicenow A tiempo completo

    Job DescriptionWe are seeking a skilled Technical Support Engineer to join our team. In this role, you will be responsible for resolving technical cases created by customers, employing various diagnostic tools to isolate potential causes of issues.Key Responsibilities:Resolving technical cases related to the ServiceNow software and platform.Managing and...

  • Quality Engineer Ii

    hace 7 días


    San Francisco, Heredia, Costa Rica Boston Scientific Corporation A tiempo completo

    **Work mode**:Hybrid**Onsite Location(s)**:Heredia, H, CR**Additional Locations**: N/A**Diversity - Innovation - Caring - Global Collaboration - Winning Spirit - High Performance**- At Boston Scientific, we'll give you the opportunity to harness all that's within you by working in teams of diverse and high-performing employees, tackling some of the most...

  • Test Engineer

    hace 3 semanas


    San Francisco, Heredia, Costa Rica Sgf Global A tiempo completo

    Test Engineer (Remote)We are seeking a skilled Test Engineer to join our team, working in an IT enterprise environment. This is a full-time position requiring 8 hours of work per day.RequirementsTo be successful in this role, you should possess the following qualifications:Bachelor's degree or equivalent work experience.At least 2 years of experience in...

  • Software Engineer

    hace 5 días


    San Francisco, Heredia, Costa Rica Sysco Costa Rica A tiempo completo

    Delivers high quality software and technical solutions to meet product/platform needs.Works across the full stack and possesses a flexible mindset and passion for programming RESPONSIBILITIES Produce high quality code to meet product/platform requirements Adheres to architecture standards and development best practices like Test-Driven development, code...

  • Azure Systems Engineer

    hace 5 días


    San Francisco, Heredia, Costa Rica Kyndryl Costa Rica, Sociedad De Responsabilidad Limitada A tiempo completo

    Job Description SummaryWe are seeking a skilled Azure Systems Engineer to join our team in Kyndryl Costa Rica, Sociedad De Responsabilidad Limitada. The ideal candidate will have expertise in managing cloud platforms such as MS Azure, public cloud operations, and managing services.Key ResponsibilitiesSupport Linux environments with 1-2 years of...