Principal Consultant, Security Research Services (Unit 42)

22 May 2024

Vacancy expired!

The RoleUnit 42 is looking for Consultants to work with a single, long-term client across a wide range of unique security and regulatory needs. Unit 42 has nine distinct teams working on this engagement, and understands nobody will have all of the skills listed below - but the ability to be versatile and work across multiple teams is highly desirable.  Unit 42 is looking for someone who can help us help our clients better manage their data risk, exposure, and compliance obligations.Your ImpactInvestigate mobile applications, websites, browser extensions, and other digital assetsLeverage physical and emulated sandboxed environments for analysisLeverage proxy technologies to capture web traffic generated by applicationsInspect web traffic logs to identify anomalous or suspicious activityIdentify unauthorized exfiltration, handling, or use of end-user data including Personally Identifiable Information (“PII”), created content, credentials, etcUnderstand and adhere to best practices for operational security (“OPSEC”) conceptsEdit and write SQL queries or scripts to query APIsReview application source code and artifactsReverse engineering of applications, tools, etcLeverage formal and informal internal documentation to quickly interpret unknown data behaviorCreate replicable processing scripts/notebooks, and document steps takenHelp develop and refine ongoing data and code review strategies and workflowsRegularly and uniformly report findings. Create a narrative to the analysis performedUnderstand how web requests are formed including POST parameters, HTTP headers, user agents, request parameters, request cookies, etc Query back-end databases using Presto SQLUtilize web logs to identify traffic and request patternsReview and validate external penetration test results to determine severityActively participate in the development, documentation, and implementation of new processes to expand and mature capabilities for the organization.Continuous involvement in workstream growth and process improvement

  • ID: #49980607
  • State: New Hampshire Newyork 00000 Newyork USA
  • City: Newyork
  • Salary: USD TBD TBD
  • Job type: Full-time
  • Showed: 2023-05-22
  • Deadline: 2023-07-21
  • Category: Et cetera