As a Staff Engineer of Product Security , you will lead the effort for internal and external third-party Penetration Testing. Your passion for security and in-depth knowledge of Product Security will ensure that you deliver high impact results.
Conduct Application and Cloud Infrastructure Penetration Testing.
Lead External Third-Party Penetration testing program.
Create detailed report for findings, gaps and remediation recommendations.
Conduct assessments of security controls, configurations and continuous verification with automation.
Perform Threat Assessment and able to create exploits to showcase vulnerabilities and recommend mitigation controls.
Maintain the vulnerability management system and ensure compliance on SLAs for security bugs by partnering with engineering teams.
Participate in our incident response.
Evaluate and prototype application security tools for automation and tooling.
Collaborate with Engineering teams to build awareness about possible threat vectors.
Conduct reverse engineering to create exploits.
REQUIREMENTS :
B.S. / M.S. in Computer Science, Electrical Engineering or related experience.
At least 8+ years of experience in Penetration Testing.
Experience in performing Black, Grey and White box Penetration Testing
Experience in performing Threat assessment on Cloud Infrastructure, API, Web, Mobile and Embedded platforms.
In-depth experience in identifying and protecting against web application and web service security vulnerabilities including OWASP Top 10 IoT Top 10 and CWE Top 25.
Proficient in developing the exploits to demonstrate weaknesses and vulnerabilities.
Experience in DAST Tools such as Checkmarx, Burp, etc
Proficient in at least one of the programming languages (Python, C, C++, Java).
Experience in Fuzzing techniques
Desire to stay abreast of emerging security threats, vulnerabilities, and controls.
Experience in CTF competitions and or Bug Bounty recognition is good to have.
#LI-Hybrid
This is a hybrid role based in Palo Alto, CA. Work will be performed onsite 3 days a week.
The compensation information is a good faith estimate only. It is based on what a successful applicant in the California Bay Area which includes the following counties: Marin, Contra Costa, San Francisco, Alameda, San Mateo, Santa Clara, and Santa Cruz might be paid in accordance with the California law.
The compensation may not be representative for positions located outside of the California Bay Area.
The annual salary range for this role is $124,500 - $190,696. The actual base salary a successful candidate will be offered within this range will vary based on factors relevant to the position.
Bonus Potential: An incentive pay program offers payouts based on company performance, job level, and individual performance.
Benefits: GM offers a variety of health and wellbeing benefit programs. Benefit options include medical, dental, vision, Health Savings Account, Flexible Spending Accounts, retirement savings plan, sickness and accident benefits, life insurance, paid vacation & holidays, tuition assistance programs, employee assistance program, GM vehicle discounts and more.
About GMOur vision is a world with Zero Crashes, Zero Emissions and Zero Congestion and we embrace the responsibility to lead the change that will make our world better, safer and more equitable for all.
Why Join UsWe aspire to be the most inclusive company in the world. We believe we all must make a choice every day – individually and collectively – to drive meaningful change through our words, our deeds and our culture. Our Work Appropriately philosophy supports our foundation of inclusion and provides employees the flexibility to work where they can have the greatest impact on achieving our goals, dependent on role needs. Every day, we want every employee, no matter their background, ethnicity, preferences, or location, to feel they belong to one General Motors team.
Total Rewards Benefits OverviewFrom day one, we're looking out for your well-being–at work and at home–so you can focus on realizing your ambitions. Learn how GM supports a rewarding career that rewards you personally by visiting Total Rewards resources.
Diversity InformationGeneral Motors is committed to being a workplace that is not only free of discrimination, but one that genuinely fosters inclusion and belonging. We strongly believe that workforce diversity creates an environment in which our employees can thrive and develop better products for our customers. We understand and embrace the variety through which people gain experiences whether through professional, personal, educational, or volunteer opportunities. GM is proud to be an equal opportunity employer.
We encourage interested candidates to review the key responsibilities and qualifications and apply for any positions that match your skills and capabilities.
Equal Employment Opportunity StatementsThe policy of General Motors is to extend opportunities to qualified applicants and employees on an equal basis regardless of an individual's age, race, color, sex, religion, national origin, disability, sexual orientation, gender identity/expression or veteran status. Additionally, General Motors is committed to being an Equal Employment Opportunity (EEO) Employer and offers opportunities to all job seekers including individuals with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, email us at [email protected] or call us at 800-865-7580. In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying.