Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
IT Security image - Rise Careers
Job details

IT Security - job 1 of 2

This position is eligible for our Hybrid Work Policy. Eligible employees can work from home up to one day each week.JOB SCOPEResponsible for conducting penetration testing of information systems, networks, applications, and databases for vulnerabilities and risks within technology environments. Provides simulated cyberattacks and security assessments, under general direction, to probe existing security measures for potential weaknesses and check for exploitable vulnerabilities. Maintains deep knowledge of vulnerabilities and exploits to discern how they affect different systems and network protocols and their communication with each other. Works closely with engineering and technical operations staff to plan, discover, test, and report on penetration testing engagements and identified findings.DUTIES AND RESPONSIBILITIESPerform web application penetration testing, network penetration testing, mobile application penetration testing, and source code reviews.Basic understanding of a software development lifecycle, scripting languages, and public and private cloud environments.Lead penetration testing engagements to including scoping, testing, reporting, and debriefing findings to business stakeholders.Demonstrate expertise with applications, operating systems, firmware, etc with regards to vulnerabilities and appropriate remediation activities to eliminate risk to the business.Able to work with applications, platforms, and business owners to identify scope and outline requirements for testing engagements.Document and create reports outlining the findings identified as part of an engagement and communicate to business stakeholders.Proficiency in at least one programming language (e.g., Bash, Python, PHP, Ruby) to support development of testing scripts and tools.Review information security trends and leverage new source for emerging threats and vulnerabilities.Ensures compliance with security standards, policies, and procedures.Adheres to industry specific local, state, and federal regulations, as applicable.BASIC / MINIMUM QUALIFICATIONSBachelor's degree in computer science or information Systems or related field or equivalent experienceMinimum of Four (4) years of IT/network Operations/SupportAt least Four (4) year of Information Security OperationsADDITIONAL JOB QUALIFICATIONSStrong knowledge of Microsoft Office tools, especially Excel, Word, Visio, and Power Point with the ability to document, prepare and present data driven summaries.Contribute to the development of the penetration testing methodologies, testing capabilities and practices, and engagement deliverables within the security operations team.Experience with open-source security testing standards and projects, such as OWASP, OSSTMM, NIST 800-115, and/or PTES.Strong knowledge of network and application testing technologies and tools, such as Burp Suite, OWASP ZAP, Metasploit, Kali Linux Suite, Postman, and others.Working knowledge of TCP/IP and advanced host and network security administrative and technical controls.Demonstrated capabilities with the ability to work across functional boundaries, build consensus and drive results.Strong written and verbal communication skills and should have good presentation skills.Must be a problem solver, able to balance competing priorities, have a strong process orientation and be able to manage through complexity and rapid change.PREFERRED QUALIFICATIONSExperience in a security operations support role performing penetration testing or similar.Experience with penetration testing tools such as: Burp Suite, Kali Linux Suite, OWASP Zap.Current security certifications, such as CompTIA Security+, CISSP, CEH, and SANS GIAC.ESE340 2024-42240 2024Here, employees don’t just have jobs, they build careers. That’s why we believe in offering a comprehensive pay and benefits package that rewards employees for their contributions to our success, supports all aspects of their well-being, and delivers real value at every stage of life.A qualified applicant’s criminal history, if any, will be considered in a manner consistent with applicable laws, including local ordinances.This job posting will remain open until 2024-12-30 07:05 PM (UTC) and will be extended if necessary.The base pay for this position generally is between $78,900.00 and $139,500.00. The actual compensation offered will carefully consider a wide range of factors, including your skills, qualifications, experience, and location. We comply with local wage minimums and also, certain positions are eligible for additional forms of other incentive-based compensation such as bonuses.
Spectrum Glassdoor Company Review
3.3 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Spectrum DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Spectrum
Spectrum CEO photo
Chris Winfrey
Approve of CEO

Average salary estimate

$109200 / YEARLY (est.)
min
max
$78900K
$139500K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About IT Security, Spectrum

If you're passionate about cybersecurity and want to take your skills to the next level, consider joining our team as an IT Security professional in Castlewood, CO. We embrace a hybrid work policy, allowing you to balance your work-from-home days with exciting in-office collaboration. In this role, you'll be the go-to expert for conducting penetration testing across a variety of platforms, from web applications to mobile apps and networks. Your days will be filled with simulating cyberattacks to identify vulnerabilities, providing you with the chance to use your keen analytical skills to assess and report on security measures. Your close collaboration with engineering and technical operations teams means that you’ll play an integral part in safeguarding our systems. If you have a knack for troubleshooting and a solid understanding of programming languages like Python or Bash, you’re exactly who we’re looking for! We value innovation and proactive problem-solving while ensuring compliance with industry standards and regulations. Along with your technical expertise, your ability to communicate effectively with stakeholders will be essential in reporting your findings and suggesting actionable remedies. Committed to helping you grow, our company offers a rewarding career path that not only supports your professional development but also values your contributions to our success. Whether you're leveling up your skills with industry-standard tools or contributing to the creation of impactful security practices, there's a lot to gain here. So, if you're ready to make a real impact in a fast-paced, ever-evolving field, we welcome you to apply and explore the exciting opportunities awaiting you in our team!

Frequently Asked Questions (FAQs) for IT Security Role at Spectrum
What are the primary responsibilities of an IT Security professional at our company?

As an IT Security professional with us, you will conduct various types of penetration testing, including web applications, networks, and mobile apps. Your responsibilities also entail scoping, testing, and presenting findings to business stakeholders, ensuring that we adhere to industry security standards and protocols.

Join Rise to see the full answer
What qualifications are required for the IT Security position in Castlewood, CO?

For this IT Security role, a Bachelor's degree in Computer Science or a related field is ideal. Additionally, candidates should have at least four years of experience in IT operations and information security. Familiarity with programming languages, penetration testing tools, and a solid grasp of security standards are essential.

Join Rise to see the full answer
What type of experience is preferred for applicants interested in the IT Security position?

We're looking for candidates with strong backgrounds in security operations, specifically those who have experience performing penetration testing. Familiarity with relevant tools like Burp Suite and a current security certification such as CompTIA Security+ or CISSP would give you an edge.

Join Rise to see the full answer
What is the work environment like for an IT Security professional at our company?

Our work environment supports a hybrid model, offering the flexibility to work from home up to one day a week. This fosters a balanced work-life dynamic while still allowing for meaningful collaboration and strategic discussions when you’re in the office.

Join Rise to see the full answer
How does our company support the growth and development of IT Security professionals?

We believe in nurturing our employees’ careers by offering comprehensive pay and benefits packages, as well as opportunities for continuous learning and professional development in the cybersecurity field. Your growth and success are important to us.

Join Rise to see the full answer
Common Interview Questions for IT Security
Can you describe your experience with penetration testing methods?

In responding to this question, highlight specific penetration testing methodologies you've utilized in past roles, such as OWASP guidelines or PTES. Provide examples of engagements, including how you scoped, executed, and reported your findings.

Join Rise to see the full answer
What programming languages are you proficient in, and how have you used them in security assessments?

Discuss your proficiency in programming languages like Python or Bash, and how you’ve leveraged these skills to write testing scripts or automate processes during security assessments. Sharing concrete examples will demonstrate your hands-on experience.

Join Rise to see the full answer
How do you stay updated on emerging cybersecurity threats and vulnerabilities?

It's crucial to express your method of staying informed about the latest threats. Mention resources such as cybersecurity blogs, industry publications, and active participation in forums or communities that offer insights on security trends and emerging vulnerabilities.

Join Rise to see the full answer
Can you give an example of a vulnerability you discovered and how you handled it?

Share a specific instance where you identified a vulnerability during a penetration test. Explain how you reported it to the stakeholders and what recommendations you provided to remediate the issue efficiently and effectively.

Join Rise to see the full answer
How do you prioritize multiple testing engagements with tight deadlines?

Discuss your approach to time management and prioritization, mentioning tools or methodologies you utilize to assess the urgency and impact of different engagements. Sharing examples of past experiences will reinforce your capability.

Join Rise to see the full answer
What are some common security weaknesses that you've encountered in web applications?

Provide examples of typical vulnerabilities such as SQL injection, cross-site scripting (XSS), or misconfigurations. Elaborate on how you approached testing for these weaknesses and any tools you used to support your evaluations.

Join Rise to see the full answer
Describe a time where you had to communicate complex security information to non-technical stakeholders.

In your answer, highlight how you bridged the gap between technical jargon and business needs. Emphasize the importance of clear communication and how you ensured stakeholders understood both the risk and the necessary remediation steps.

Join Rise to see the full answer
What tools do you typically use for penetration testing and why?

Mention specific tools you're familiar with, such as Burp Suite, Metasploit, or OWASP ZAP. Explain their significance in your testing strategy and how they've helped you effectively identify and analyze vulnerabilities.

Join Rise to see the full answer
How do you ensure compliance with industry security standards in your work?

Articulate your understanding of various security standards, such as NIST or ISO, and discuss how you incorporate these into your testing engagements as well as your overall security practice. Provide examples of how you've implemented these in the past.

Join Rise to see the full answer
Why do you want to work as an IT Security professional at our company?

This is your chance to express your genuine interest in the company and its mission. Discuss how your values align with theirs and how you see yourself contributing to the success and security of the organization.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 4 days ago
Photo of the Rise User
Experian Remote Calle Graham Bell s/n Armilla, Granada, MD, Spain
Posted 7 days ago
Photo of the Rise User
McDonald's Corporation Hybrid 110 N Carpenter St, Chicago, IL 60607, USA
Posted 2 days ago
Photo of the Rise User
Posted 11 days ago
Doppel Remote No location specified
Posted 2 days ago

Charter Communications, Inc. (NASDAQ:CHTR) is a leading broadband connectivity company and cable operator serving more than 31 million customers in 41 states through its Spectrum brand. Over an advanced communications network, the company offers a...

212 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
December 19, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!