user avatar

Security Engineer

Eliassen Group

Today
Dept of Homeland Security
Unspecified
Unspecified
Engineering - Civil
Oakland, CA (On-Site/Office)

Description:
**Hybrid | Oakland, CA**

Our client, a leading provider of consumer credit services, has an excellent opportunity for a Security Engineer to work on a 12+ month renewable contract opportunity. Work will be a hybrid schedule in Oakland, CA. The Security Engineer will perform penetration testing on our web applications and services (both internal and external).

We can facilitate w2 and corp-to-corp consultants. For our w2 consultants, we offer a great benefits package that includes Medical, Dental, and Vision benefits, 401k with company matching, and life insurance.

Rate: $60 - $70 / hr. w2

Responsibilities:
  • Discover and document vulnerabilities, assess their risk levels, and communicate findings clearly in written and verbal form.
  • Deliver high-quality penetration testing reports for newly developed services and features.
  • Build and maintain custom scripts and tools, including those that integrate with Burp Suite (via the Extender API), to enhance testing efficiency and accuracy.
  • Review application source code to uncover hidden security flaws and logic vulnerabilities.
  • Triage and validate security reports from external penetration testers, bug bounty researchers, and automated vulnerability scans.

Experience Requirements:
  • 2+ years of experience in penetration testing, application security, or related security roles.
  • Demonstrated experience conducting both manual and automated penetration tests.
  • Experience developing tools such as Burp Suite, especially through its Extender API.
  • Experience reviewing application source code to detect vulnerabilities.
  • Familiarity with CI/CD pipelines, security automation, and how security integrates into DevOps practices.
  • Ability to write clear, concise, and technically sound security assessment reports.

Education Requirements:
  • Bachelor's degree in IT, cybersecurity, computer information systems, or related field.
  • Hands-on experience with Bug Bounty platforms (e.g., HackerOne, Bugcrowd).
  • Relevant certifications such as OSCP, OSWE, GWAPT, or CEH are highly desirable.
group id: 10106647

Match Score

Powered by IntelliSearchâ„¢
image match score
Create an account or Login to see how closely you match to this job!