[Close] 

Associate Application Security Engineer

Responsibilities
The successful candidate will be joining NBCUniversal at an exciting time where it is transforming from an operational, tool-based cyber defense program to an intelligence and threat-based organization. The successful candidate will report to the Director of Product Security and will work directly with Senior Analysts, Security Architects, and Engineers as well as our business areas throughout NBCUniversal to shape the future of cyber defense across the company.
The successful candidate will be expected to 'think like an adversary', pulling from their diverse background and knowledge of IT, to identify, assess, prioritize and communicate vulnerabilities and threats across the systems and applications making up the NBCUniversal IT ecosystem.
Assists in developing innovative security testing to mimic advanced persistent threat techniques and blended threats
Perform network and application technical vulnerability assessments using vulnerability assessment tools such as Burp Suite Professional, SAST, DAST, Nmap, Metasploit, and Kali Linux
Identify and articulate risks and remediation in a relevant and approachable manner with both technical and non-technical audiences
Assess publicly and privately announced security vulnerabilities to determine the risk based on severity, threat likelihood and impact
Assists in designing correction plans, mitigations, and full remediation actions
Understand the cybersecurity kill chain model, and communicate defenses at each stage to management and other stakeholders
Integrate findings across infrastructure, dynamic web application, and static code security testing to provide a holistic security posture for assets
Collaborate with infrastructure and application owners on security hotfixes or patch management validation
Support the cyber incident response team in specified vulnerability discovery and identification tasks during crisis management
Coordinate with stakeholders to develop requirements for service enhancements
Provide support for operational needs of securing the SDLC through metrics, projects, tool support, and coordination with contractors/vendors
Qualifications/Requirements
2-4 years of experience in a technical cyber security role
Experience in threat and vulnerability management, penetration testing, security operations
Familiarity with multiple programming and scripting languages (such as, Java, C#/ASP.NET, C/C++, Objective C, Ruby, Python, Perl, etc.)
An understanding of network and web related protocols (such as, TCP/IP, UDP, IPSEC, HTTP, HTTPS, routing protocols)
Experience with source code analysis
Working knowledge and experience with testing and remediation methodologies for vulnerabilities in the OWASP Top 10 and SANS Top 25
Understanding of how applications, networking, operating systems, and databases work
Desired Characteristics
Intellectual capability and curiosity to learn complex processes
Highly collaborative; personally, and professionally self-aware; able to and interested in interacting with employees at all levels; embody integrity; and represent and inspire the highest ethical standards
Strong sense of urgency and commitment, as well as sound business sense with a strategic, conceptual and operational orientation
Passion for and interest in media and entertainment industry highly desired
Flexible, organized, and passionate about advancing cyber security
Great interpersonal skills and love for a team environment



Don't Be Fooled

The fraudster will send a check to the victim who has accepted a job. The check can be for multiple reasons such as signing bonus, supplies, etc. The victim will be instructed to deposit the check and use the money for any of these reasons and then instructed to send the remaining funds to the fraudster. The check will bounce and the victim is left responsible.

More Jobs

Network Security Engineer
Sacramento, CA ConvergeOne
Senior Security Engineer
Santa Clara, CA Citrix Systems Inc.
Security Engineer, Detection (Senior/Staff/Pri...
San Jose, CA Okta
Paranoids Enterprise Security Engineer
Sunnyvale, CA Oath
Info Security Engineer
Oakland, CA Chevron Federal Credit Union