Lead Analyst, Cyber Security
WestRock Company
Our technology organization is transforming how we work at Smurfit Westrock. We align with our businesses to deliver innovative solutions that:
* Address specific business challenges, integrate processes, and create great experiences
* Connect our work to shared goals that propel Smurfit Westrock forward in the Digital Age
* Imagine how technology can advance the way we work by using disruptive technology
We are looking for forward thinking technologists that can accelerate our focus areas such as building stronger foundational technology capabilities, reducing complexity, employing digital transformation concepts, and leveraging disruptive technology.
Position Summary:
We are seeking a Lead Penetration Tester for conducting offensive cyber security operations against a wide array of applications, technologies, and platforms. With direction from Smurfit Westrock leadership, the Penetration Tester will help plan and perform testing efforts of in-scope information systems to expose weaknesses in security controls. Penetration tester will help drive testing efforts from the planning phase to final report delivery, participating in technical exchange discussions with the Business Units, Vulnerability Management, Application Security and Security Operations Center Teams. This role will be influential to the development and building of a Pentest and Red Team program here at WestRock. In addition, you will provide mentorship and guidance to other team members.
How you will impact Smurfit Westrock:
Offensive Cyber Security Projects as assigned:
* Perform internal and external penetration tests to help determine WestRock security posture.
* Able to lead all phases of penetration testing engagements to include scoping, planning, reconnaissance, vulnerability assessment, exploitation, risk identification, and report delivery.
* Develop in-depth reports (issue, severity, impact, remediation recommendations) for penetration testing and offensive security operations.
* Develop documentation, tools, and techniques to automate and provide adversary emulation capabilities.
* Provide guidance on penetration testing operations in OT environments.
* Able to partner with and provide guidance to Security Operations Center team members on adversarial tools, techniques, and procedures.
* Keep up to date on the current offensive cyber operations landscape.
* Assist with the configuration of evaluation environments, testing for new security features and capabilities, and provide recommendations to improve the infrastructure.
What you need to succeed:
* Minimum of 4 years\u2019 experience working in Offensive Cyber Security operations to include Penetration Testing, Red Teaming, Cloud Security Testing, Web Application Security Testing, or Network Security Testing.
* Hands on experience with but not limited to the following tools:
* Multiple Operating Systems to include: Kali Linux, Microsoft and Linux Distributions.
* Vulnerability Scanners. (NMAP, Nessus, Nexpose etc.)
* Metasploit.
* Wireshark.
* Sqlmap.
* Burpsuite.
* Covenant C2.
* Dirbuster.
* Ffuf.
* Nuclei.
* Strong knowledge of networking and network infrastructure.
* Experience with performing penetration tests against assets in AWS and or AZURE environments.
* Strong communication and collaboration skills and ability to work effectively in a global enterprise.
* Ability to work under tight deadlines at a fast pace.
* Excellent written and verbal communication skills.
* Ability to collaborate in a matrixed environment.
* Strong attention to detail.
* Ability to manage multiple priorities efficiently and effectively.
* A proactive and positive team player who is impact-focused, driven, curious, analytical, and excited about information security.
* Preferred Certifications:
* Offensive Security Certified Professional - OSCP
* Offense Security Experienced Pentester - OSEP
* GIAC Penetration Tester Certification - GPEN
* GIAC Exploit Researcher Advanced Penetration Tester - GXPN
* Certified Professional Penetration Tester - eCPPT
What we offer:
* Corporate culture based on integrity, respect, accountability and excellence
* Comprehensive training with numerous learning and development opportunities
* An attractive salary reflecting skills, competencies and potential
* A career with a global packaging company where Sustainability, Safety and Inclusion are business drivers and foundational elements of the daily work.
Smurfit Westrock is an Equal Opportunity Employer. We strive to create and maintain a diverse workforce where everyone feels valued, respected, and included. Smurfit Westrock does not discriminate based on race, color, religion, national origin, sex, age, disability, veteran status, sexual orientation, gender identity, or any other basis protected by federal, state, or local law.
Smurfit Westrock (NYSE:SW) is a global leader in sustainable paper and packaging solutions. We are materials scientists, packaging designers, mechanical engineers and manufacturing experts with a shared purpose: Innovate Boldly. Package Sustainably. Guided by our values of safety, loyalty, integrity, and respect, we use leading science and technology to move fiber-based packaging forward.
Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected veteran status or other characteristics protected by state or federal law.
Confirm your E-mail: Send Email
All Jobs from WestRock Company