- Home
- ...
- Open Positions
- Job Detail
Description and Requirements
Description and Requirements
The Staff Specialist Cybersecurity Engineer is responsible for identifying, assessing, and helping mitigate cybersecurity risks across the organization's infrastructure, applications, cloud environments, and external attack surface. This role combines hands-on penetration testing with broader threat management responsibilities, vulnerability risk assessment, attack surface monitoring, threat intelligence analysis, and security validation activities.
The ideal candidate possesses strong offensive security skills, practical experience conducting infrastructure and application penetration tests, and the ability to translate technical findings into actionable risk reduction strategies for engineering and business stakeholders. Experience with autonomous and LLM assisted penetration testing is desired.
Key Responsibilities
Penetration Testing and Security Assessments
· Perform infrastructure penetration testing across internal, external, cloud, and hybrid environments.
- Conduct web application and API security assessments.
- Perform adversary emulation and attack path validation to identify exploitable weaknesses.
- Execute authenticated and unauthenticated security assessments of operating systems, databases, network devices, and security technologies.
- Validate vulnerability exploitability and determine real-world business risk.
- Develop detailed technical reports and executive summaries documenting findings, attack paths, and remediation recommendations.
- Partner with support and infrastructure teams to validate remediation efforts and conduct retesting activities.
Threat Management
· Identify, assess, and prioritize emerging threats that may impact the organization.
- Analyze threat intelligence from commercial, open-source, and industry sources.
- Support continuous attack surface management initiatives to identify exposed assets and security risks.
- Conduct risk-based analysis of vulnerabilities and provide prioritization guidance based on exploitability and business impact.
- Assist in developing and maintaining threat management processes, standards, and reporting.
Our commitment to you!
BMC’s culture is built around its people. We have 6000+ brilliant minds working together across the globe. You won’t be known just by your employee number, but for your true authentic self. BMC lets you be YOU!
If after reading the above, You’re unsure if you meet the qualifications of this role but are deeply excited about BMC and this team, we still encourage you to apply! We want to attract talents from diverse backgrounds and experience to ensure we face the world together with the best ideas!
BMC is committed to equal opportunity employment regardless of race, age, sex, creed, color, religion, citizenship status, sexual orientation, gender, gender expression, gender identity, national origin, disability, marital status, pregnancy, disabled veteran or status as a protected veteran. If you need a reasonable accommodation for any part of the application and hiring process, visit the accommodation request page.
(Returnship@BMC)
Had a break in your career? No worries. This role is eligible for candidates who have taken a break in their career and want to re-enter the workforce. If your expertise matches the above job, visit to https://bmcrecruit.avature.net/returnship know more and how to apply.