As an Offensive Security Engineer in the telecommunications industry, you will play a critical role in proactively identifying vulnerabilities and security gaps within Verizon's infrastructure and applications. This role focuses on emulating real-world adversarial techniques to evaluate and improve Verizon's defensive capabilities, ensuring the security of customer data and network infrastructure.
You will collaborate closely with internal teams to scope and execute offensive engagements. As an Engineer III, you will work under the direction of project leads to plan and execute tests targeting applications, devices and platforms supporting the Verizon network.
Key Responsibilities:
- Supporting the organization's overall cybersecurity strategy, and addressing the unique challenges of securing large-scale telecommunications systems
- Adversary Emulation: Execute Penetration Test or Red Team projects that identify vulnerabilities in wireline/wireless network infrastructure and supporting applications
- Vulnerability Exploitation: Identify, exploit, and report vulnerabilities in critical telco systems and infrastructure
- Test Planning: Execute Penetration Tests or Red Team campaigns that provide comprehensive feedback on the security posture and risks of applications, devices and platforms deployed to the Verizon network
- Post-Engagement Reporting: Deliver comprehensive technical reports that outline findings, supporting artifacts, and remediation recommendations.
- Collaboration and mentorship: Work closely with stakeholders to scope projects appropriately and work within the team to share information
- Tool Development: Build or customize tools and scripts to build a consistent and efficient process for testing
- Threat Intelligence: Stay updated on the latest attack techniques, tactics, and procedures (TTPs) relevant to the telecommunications industry
- Continuous Improvement: Provide insights to enhance the organization's security posture through collaboration with peers in both security and operations
What we're looking for...You'll need to have:- Bachelor's degree or three or more years of relevant work experience in network security or a related field.
- Foundational knowledge of security testing processes or adversarial techniques
- Strong Linux skills
- Experience with penetration testing tools such as Burp Suite, Cobalt Strike, Nmap, Metasploit, etc.
Even better if you have one or more of the following:- Network or cybersecurity related professional certifications.
- Familiarity with security challenges in running large enterprise-scale networks, wireless core components, cloud, and edge computing
- Expertise in network engineering, routing, switching, BGP, stateful or stateless firewalling, load balancing, or proxies
- Expertise in telecommunications systems, protocols (SIP, SS7/Diameter, TR-69, etc)
- Expertise in 4G/5G core network architecture, and supporting systems
- Coding and scripting skills (Python, Bash, PowerShell, etc.).
- Deep knowledge of network architecture and cloud environments (e.g., Kubernetes, OpenStack, OpenShift)
- Soft Skills: Strong communication and teamwork skills
Where you'll be workingIn this hybrid role, you'll have a defined work location that includes working from home and a minimum of three days per week in the office, which will be set by your manager. Employees are responsible for maintaining compliance with hybrid work policies.
Scheduled Weekly Hours40
Benefits and CompensationOur benefits are designed to help you move forward in your career, and in areas of your life outside of Verizon. From health and wellness benefit options including: medical, dental, vision, short and long term disability, basic life insurance, supplemental life insurance, AD&D insurance, identity theft protection, pet insurance and group home & auto insurance. We also offer a matched 401(k) savings plan, up to 8 company paid holidays per year and up to 6 personal days per year, paid parental leave, adoption assistance and tuition assistance, plus other incentives, we've got you covered with our award-winning total rewards package. Depending on the role, employees have the opportunity to receive compensation in the form of premium pay such as overtime, shift differential, holiday pay, allowances, etc. Newly hired employees receive up to 15 days of vacation per year, which grows with additional service. For part-timers, your coverage will vary as you may be eligible for some of these benefits depending on your individual circumstances.
The salary will vary depending on your location and confirmed job-related skills and experience. This is an incentive based position with the potential to earn more. For part-time roles, your compensation will be adjusted to reflect your hours.
The annual salary range for the location(s) listed on this job requisition based on a full-time schedule is: $81,000.00 - $155,000.00.