Advance Search

Browse Jobs

Manager, Perimeter Security Testing

Posted 22 days ago

Manager, Perimeter Security Testing The Global Information Security (GIS) organization delivers proactive cyber defence for the global Pfizer enterprise. Our mission is to secure all of Pfizer's digital information assets ranging from the manufacturing floor to the core data centres, and out to our patient facing solutions. We achieve this mission through a team of world-class talent that focuses on building strong partnerships to build security into all aspects of our business. Across GIS we utilize top-tier technologies, industry leading best practices, advanced analytics, and the promotion of a cybersecurity ownership culture to drive results for the enterprise.
The Manager, Perimeter Security Testing will perform cybersecurity manual and automated vulnerability assessments for business solutions that are externally facing. The assessments will focus on protecting the company information assets using a threat-based approach and recommend risk reduction actions. The manager will work within a team and directly with business technology application and technology teams. The position will report to the Global Information Security, Red Team Manager.
At Pfizer, you will find a company as focused on its internal culture as it is on its external reputation. You will have the opportunity to partner with colleagues of diverse backgrounds and abilities, people who contribute to all aspects of what we do-from drug development to marketing, technology to sales, and so much more.
Primary responsibilities include: Leverage industry best practices perform manual and automated security testing for web applications, architectures, specialty solutions including internet of things and wearable devices as well as participate in critical asset reviews.Research new security threats, vulnerabilities, and exploit techniques to identify new weaknesses and recommend remediation or mitigation.Ability to perform manual testing for remediation validation and verification of vulnerabilities reported.Create scripting code and methodologies for new testing techniques.Upgrade, maintain, and recommend security process workflows to support perimeter security testing and remediation.Manage assessments performed and deliver results to customers on time, assist customers with recommendations and retest as needed.Develop communications and present to key shareholders for assessments. Responding to new attack surfaces and help implement new requirements as needed.Drive remediation of findings or recommend mitigations to business stakeholders.Transform or adapt remediation tracking workflows and vulnerability risk ratings to prioritize business actions.Ability to work both independently and in a team-oriented, collaborative environment.Partner with global team members to drive secure outcomes based on industry best practices.Partner with the business units on developing remediation tracking deadlines, and deployment of mitigations BASIC QUALIFICATIONS
Proven experience in information and cybersecurityBS in Computer Sciences, Information Security, Information Systems, Engineering, Sciences, or related fieldExperience performing security assessments.Familiar with automation or scripting languagesStrong leadership skills with the ability to prioritize and execute with minimal direction or oversight.Ability to interpret log data and draw analytical conclusions.Maintain awareness of industry frameworks and best practices: Threat Modelling, NIST, OWASP, SANS Security ModelMaintain awareness of industry trends and emerging technologies including web services, mobile, wearables, isolated architectures, databases security, IoTUnderstanding of operating systems, network protocols, and applications developmentExperience with security testing tool, proxies, port scanners, vulnerability scanners, exploit frameworksProven track record in project planning, execution and delivering results with multiple projects concurrently.Ability to proactively solve complex problems both individually and as part of a team.Demonstrated experience in an agile work environment possessing qualities such as a collaborative mindset, adaptability to change, and a proactive problem-solving approach.Demonstrated commitment to training, self-study and maintaining proficiency in the cyber security domain.Effective oral, written, and interpersonal communications skills are required as well as organizational, planning, and administrative abilities and the ability to coordinate multiple complex projects simultaneously.High level of integrity and strong ethical valuesWork Location Assignment: Flexible
#J-18808-Ljbffr
Apply