Match score not available

Cybersecurity Engineer, Principal

extra holidays
Remote: 
Full Remote
Contract: 
Work from: 

Offer summary

Qualifications:

Bachelor’s degree in IT, Information Security, Computer Science, or related field., 6-8 years of Cybersecurity experience focused on vulnerability management., Certifications such as CEH, CISSP, or CISM are preferred., Proficient with vulnerability management tools like Qualys and Tenable..

Key responsabilities:

  • Identify and assess vulnerabilities within infrastructure and applications.
  • Coordinate and execute enterprise vulnerability scanning and application security testing.
  • Manage the bug bounty program and respond to security researchers.
  • Lead cybersecurity projects to enhance vulnerability detection and response capabilities.

Progress logo
Progress Large https://www.progress.com/
1001 - 5000 Employees
See all jobs

Job description

We are Progress (Nasdaq: PRGS), the trusted provider of software that enables our customers to develop, deploy and manage responsible, AI-powered applications and experience with agility and ease. We’re proud to have a diverse, global team where we value the individual and enrich our culture by considering varied perspectives because we believe people power progress. Join us as a Cybersecurity Engineer, Principal and help us do what we do best: propelling business forward. 

Overview: The Cybersecurity Engineer role is primarily responsible for identifying, assessing, prioritizing, and reporting on vulnerabilities within Progress infrastructure and applications. Responsibilities include enterprise vulnerability scanning, applications security testing, coordinating penetration tests, product release monitoring and support, and maintaining the bug bounty program.

In this role you will:

  • Review security vulnerabilities across a variety of technologies and environments to determine high risk vulnerabilities to business assets.
  • Configure and execute enterprise infrastructure vulnerability scanning across cloud and on-premises assets.
  • Validate vulnerability scanning accuracy and scope against asset management, networks, and CMDB inventories.
  • Co-ordinate with system owners and other teams to address the vulnerabilities as per defined SLAs.
  • Respond to security researchers that report vulnerabilities through our Bug Bounty program and support the CVE publication process.
  • Conduct static and dynamic application security testing across core products, analyze results, and prioritize vulnerabilities for remediation.
  • Provide security gate review support to product and development teams to validate products meet security control standards prior to release.
  • Coordinate third party penetration tests including scoping, scheduling, budgeting, vendor management, and procurement.
  • Liaise with the security engineering team to improve tool usage and workflow, as well as with the advanced threats and assessment team to mature monitoring and response capabilities.
  • Build strong partnerships with technical teams to promote best practices for managing vulnerabilities across traditional infrastructure and in cloud environments.
  • Lead cybersecurity projects to promote integration, automation, and increase vulnerability detection and response capabilities.
  • Ensure compliance with organizational cybersecurity policies and procedures.
  • Provide architecture and design support for cloud environments.

Your background:
  • Bachelor’s degree in information technology, Information Security/Assurance, Computer Science, Engineering, or related field or equivalent combination of education and experience 
  • 6-8 years of Cybersecurity experience with a concentration in vulnerability management techniques, tools and methodologies.
  • One or more of the following certifications CEH, CISSP, CRISC, GSEC, GSED, CISM.
  • Proficient with vulnerability management solutions such as Qualys, Tenable, and Rapid7.
  • Familiarity with bug bounty platforms and tools (e.g., HackerOne, Bugcrowd etc)
  • Experience using web application security testing tools and commercial scanners (Veracode, Qualys WAS, Tenable WAS).
  • Experience with vulnerability management across cloud environments (AWS, Azure, GCP).
  • Experience conducting organization-wide vulnerability scanning and developing remediation processes.
  • Knowledge and experience with DevSecOps practices, container security, microservices architecture, infrastructure as code, OWASP, CVSS, SDLC, and penetration testing methodologies.
  • Hands-on experience in application security testing tools like Burpsuite, OWASP ZAP etc.
  • Strong communication skills with the ability to influence cross functionally, both at the peer level or above.
  • Solid project management skills with the ability to prioritize tasks based on risk.
If this sounds like you and fits your experience and career goals, we’d be happy to chat. What we offer in return is the opportunity to experience a great company culture with wonderful colleagues to learn from and collaborate with and also to enjoy:  

Compensation  
  • Competitive remuneration package 
  • Employee Stock Purchase Plan Enrolment
Vacation, Family, and Health
  • 30 days of earned leave
  • An extra day off for your birthday
  • Various other leaves like marriage leave, casual leave, maternity, and paternity leave
  • Premium Group Medical Insurance for employees and five dependents, personal accident insurance coverage, life insurance coverage
  • Professional development reimbursement  
  • Interest subsidy on loans - either vehicle or personal loans
  • Health club reimbursement
Apply now!
Progress is proud to be an Equal Opportunity Employer!

Together, We Make Progress

Progress is an inclusive workplace where opportunities to succeed are available to everyone. As a multicultural company serving a global community, we encourage a wide range of points of view and celebrate our diverse backgrounds. Our unique combination of perspectives inspires innovation, connects us to our customers and positively affects our communities. It is only by working together and learning from each other that we make Progress. Join us!

Required profile

Experience

Spoken language(s):
English
Check out the description to know which languages are mandatory.

Other Skills

  • Communication

Cybersecurity Engineer Related jobs