Logo of Huzzle

Penetration Tester

image

NVIDIA

2mo ago

  • Job
    Full-time
    Senior Level
  • Consulting
    IT & Cybersecurity
  • Santa Clara
  • Quick Apply

AI generated summary

  • You need a Bachelor's or equivalent, 5+ years in adversarial roles, strong interpersonal skills, a growth mindset, a helpful demeanor, and experience with automation tools like Kubernetes or Terraform.
  • You will conduct penetration tests on various products, prioritize assessments, coordinate with product owners, communicate timelines, and facilitate tabletop exercises to identify and mitigate threats.

Requirements

  • A Bachelor's Degree or equivalent experience.
  • 5+ years of adversarial experience at a company, organization. Show us a history of bugs or exploits.
  • Proven intrapersonal skills, specifically, trustworthy speaking (there are tricks to learning interpersonal skills - don’t let this worry you)
  • Growth Mindset where every single day brings opportunities to tackle new problems.
  • Helpful demeanor. We are trusted adversaries and that trust needs to remain strong
  • Automation skills or experience with Kubernetes, Terraform, or other automation tools

Responsibilities

  • Conduct open box penetration testing assessments on a variety of products, ranging from web applications, cloud, APIs, and automation pipelines
  • Make friends product owners to scope and schedule assessments, often with another operator, but sometimes our engagements are self directed
  • Prioritize assessments based on a number of factors: critical stuff goes first, and customers need to understand why they didn't make the list this month and what we can do to help
  • Communicate the Pentest team's assessment bandwidth and timeline to customers: visually, verbally, on recurring comms, or something else. It's up to you!
  • Table Top Exercises to generate nightmare scenarios with customers: freeform threat modeling where we cut right to the heart of what scares them about their product, and our recommendations on how to fix it

FAQs

What is the role of a Penetration Tester at NVIDIA?

The Penetration Tester is responsible for scheduling, prioritizing, and conducting assessments of various products while building strong relationships with internal customers as part of the Vulnerability Operations team.

What types of assessments will I conduct?

You will conduct open box penetration testing assessments on a variety of products, including web applications, cloud environments, APIs, and automation pipelines.

How does the team prioritize assessments?

The team prioritizes assessments based on several factors, ensuring that critical issues are addressed first. Customers are informed about the prioritization process and how they can improve their chances for future assessments.

What are Table Top Exercises?

Table Top Exercises are freeform threat modeling sessions conducted with customers to discuss potential nightmare scenarios, vulnerabilities, and recommendations for improving their product security.

What qualifications do I need to apply for this role?

You need a Bachelor's Degree or equivalent experience and at least 5 years of adversarial experience, along with a proven history of identifying bugs or exploits.

What interpersonal skills are necessary for this position?

Strong intrapersonal skills, specifically trustworthy communication, are essential. This includes the ability to build and maintain strong relationships with internal customers.

Is there an emphasis on automation skills?

Yes, experience with automation tools such as Kubernetes or Terraform is important. Candidates with automation skills will be considered more favorably.

What skills or experiences could help me stand out as a candidate?

Mastery of Burp Suite, Red Team experience, published offensive security research, validated personal projects on Git, security conference speaking, and relevant certifications such as OSWE will help you stand out.

What is the salary range for this position?

The base salary range is $132,000 to $258,750, depending on your location, experience, and the pay of employees in similar positions.

Does NVIDIA offer equity and benefits?

Yes, in addition to base salary, you will be eligible for equity and benefits as part of your compensation package.

How does NVIDIA approach diversity and equal opportunity in hiring?

NVIDIA is committed to fostering a diverse work environment and is an equal opportunity employer, ensuring that they do not discriminate based on any protected characteristics in hiring and promotion practices.

Manufacturing & Electronics
Industry
10,001+
Employees
1993
Founded Year

Mission & Purpose

Since its founding in 1993, NVIDIA (NASDAQ: NVDA) has been a pioneer in accelerated computing. The company’s invention of the GPU in 1999 sparked the growth of the PC gaming market, redefined computer graphics, ignited the era of modern AI and is fueling the creation of the metaverse. NVIDIA is now a full-stack computing company with data-center-scale offerings that are reshaping industry.