Penetration Tester

Hyderabad, India

Experian

Experian is committed to helping you protect, understand, and improve your credit. Start with your free Experian credit report and FICO® score.

View all jobs at Experian

Apply now Apply later

Company Description

Experian is a global data and technology company, powering opportunities for people and businesses around the world. We help to redefine lending practices, uncover and prevent fraud, simplify healthcare, create marketing solutions, and gain deeper insights into the automotive market, all using our unique combination of data, analytics and software. We also assist millions of people to realize their financial goals and help them save time and money.

We operate across a range of markets, from financial services to healthcare, automotive, agribusiness, insurance, and many more industry segments.

We invest in people and new advanced technologies to unlock the power of data. As a FTSE 100 Index company listed on the London Stock Exchange (EXPN), we have a team of 22,500 people across 32 countries. Our corporate headquarters are in Dublin, Ireland. Learn more at experianplc.com.

Job Description

Job description

 

Penetration Tester Position Overview:

At Experian, we recognize the need for vigilant cybersecurity to safeguard our systems and data. As such, we are seeking a Penetration Tester to fortify our defenses and ensure our digital assets remain secure.

Role Definition:

The Penetration Tester is an essential part of our cybersecurity team, responsible for identifying vulnerabilities within our digital infrastructure. By simulating cyber-attacks and assessing our systems, this role plays a fundamental part in highlighting potential security threats and strengthening our defenses.

Scope of Work:

  • Infrastructure Assessment: The Penetration Tester will analyze a variety of systems within Experian, spanning from external-facing applications to internal networks or cloud environments, ensuring all potential vectors of attack are considered.
  • Regular Deliverables: Meeting targets is crucial. Delivering a minimum workload per month is a clear metric of productivity, yet it's vital this doesn't come at the expense of the assessment's depth or quality.
  • Strategic Testing: Under the guidance of senior team members, the Penetration Tester will work to determine which systems to test, based on current risk assessments and business needs.
  • Standards Adherence: While conducting tests, it's essential to follow industry best practices and our in-house SOPs, ensuring consistent and rigorous assessments.
  • Skill Development: Continual learning is encouraged. While proficiency in basic scripting and understanding of various environments is required, there will be opportunities to expand on these skills and learn new techniques.
  • Clear Communication: The ability to relay findings, both to the cybersecurity team and potentially to broader stakeholders, is essential. Clear, concise reporting ensures swift action can be taken on any vulnerabilities found.
  • Team Collaboration: Being a valuable team player is vital. While the Penetration Tester will work on individual projects, collaboration, sharing insights, and integrating feedback are all crucial aspects of the role.

Value Proposition:

The Penetration Tester, while being an individual contributor, is a foundational pillar in Experian's overarching cybersecurity strategy. This role ensures our systems are resilient against potential threats and provides peace of mind that our digital operations can continue unhindered by external threats.

Roles and Responsibilities:

  • Deliver above the minimum required workload per month without compromising on the quality of assessment.
  • Deliver penetration tests on both business-critical applications and infrastructure to support the organization's information security risk management program.
  • Ensure tests are prioritized based on business and compliance requirements, such as compliance due date, requested date and feedback from the application team.
  • Guarantee engagements are fully compliant of our standard operating procedures and service level agreement timelines.
  • Proficient at scripting and automating exploits in language of choice
  • Make consistent efforts to upskill and learn new testing standards.
  • Understand and clearly communicate potential vulnerabilities and their associated risk level, remediation steps and/or mitigating controls with business stakeholders.
  • Research and maintain proficiency in tools, techniques, countermeasures, and trends in computer and network vulnerabilities, data hiding and encryption.
  • Participate in regular Teach-the-team sessions to share the knowledge with team members.
  • Complete assigned training and certification per agreed timeline
  • Attend and contribute during engagement's scoping calls.

Qualifications

Qualifications

  • 2+ years' experience in a Penetration Testing position · Experience in planning and executing penetration tests/red team exercises against web applications, containers, APIs, network devices, databases, operating systems, and various cloud technologies. · Infrastructure penetration testing while most of the time focused on assessing cloud environments, both public and private ones. · Preferred certifications are listed as follows OSWA, OSCP, CPSA, CWAT, Pen Test+, CPENT, GPEN, AWS Security Specialty or similar certifications.

Additional Information

Our uniqueness is that we celebrate yours. Experian's culture and people are important differentiators. We take our people agenda very seriously and focus on what matters; DEI, work/life balance, development, authenticity, collaboration, wellness, reward & recognition, volunteering... the list goes on. Experian's people first approach is award-winning; World's Best Workplaces™ 2024 (Fortune Top 25), Great Place To Work™ in 24 countries, and Glassdoor Best Places to Work 2024 to name a few. Check out Experian Life on social or our Careers Site to understand why.

Experian is proud to be an Equal Opportunity and Affirmative Action employer. Innovation is an important part of Experian's DNA and practices, and our diverse workforce drives our success. Everyone can succeed at Experian and bring their whole self to work, irrespective of their gender, ethnicity, religion, colour, sexuality, physical ability or age. If you have a disability or special need that requires accommodation, please let us know at the earliest opportunity.

Experian Careers - Creating a better tomorrow together

Find out what its like to work for Experian by clicking here

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  12  2  0
Category: PenTesting Jobs

Tags: Analytics APIs AWS Cloud Compliance Encryption Exploits GPEN OSCP Pentesting Red team Risk assessment Risk management Scripting Strategy Vulnerabilities

Perks/benefits: Career development Insurance

Region: Asia/Pacific
Country: India

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.