Cybersecurity Analyst

Target


Job Location:

Bengaluru - India

Monthly Salary: Not Disclosed
Posted on: 4 hours ago
Vacancies: 1 Vacancy

Job Summary

About Us

As a Fortune 50 company with more than 400000 team members worldwide Target is an iconic brand and one of Americas leading Target means promoting a culture of mutual care and respect and striving to make the most meaningful and positive impact. Becoming a Target team member means joining a community that values different voices and lifts each other up. Here we believe your unique perspective is important andyoullbuild relationships by being authentic and respectful.

Overview about TII

At Target we have a timeless purpose and a proven strategy. And thathasnthappened by accident. Some of the best minds fromdifferent backgroundscome together at Target to redefine retail in an inclusive learning environment that values people and delivers world-class outcomes. That winning formula is especiallyapparentin Bengaluru where Target in Indiaoperatesas a fully integrated part of Targets global team and has more than 4000 team members supporting the companys global strategy and operations.

Position Overview

The Penetration Tester at is a critical member of the Application Security team focused onidentifyingvalidating and resolving security vulnerabilities across our cloud infrastructure and applications. You will lead technical security assessments including application-layer and network-layer penetration testing to ensure all information assets are secured against evolving threats. This role is vital formaintainingour security posture and ensuring remediation efforts are effectively prioritized and executed.

Key Responsibilities

  • Perform comprehensive manual and automated application-layer penetration tests toidentifyvulnerabilities adhering to industry standards and internal methodologies.

  • Conduct network-layer penetration tests encompassing all components supporting network functions and operating systems.

  • Validate segmentation and scope-reduction controls at least annuallyand afterany significant changes to ensure isolation of the Cardholder Data Environment (CDE).

  • Triage andvalidatevulnerabilities reported through bug bounty program.

  • Document and risk-rate all findingsprovidingactionable remediation guidance to engineering and product teams.

  • Verify the correction of exploitable vulnerabilities through re-testing and post-remediation assessments.

  • Collaborate with external 3rd party security firmson penetrationtesting and threat hunting exercises.

  • Ensure all security assessments and remediation activities meet compliance and regulatory obligations (e.g. PCI DSS SOC).

Qualifications

  • Minimum of 4 years of hands-on experience in penetration testing ethical hacking orapplicationsecurity engineering.

  • Deep understanding of common web-based attacks (SQLi XSS CSRF XXE etc.) and how to mitigate them at the application level.

  • Proficiencyin scripting or programming languages such as Python Go Ruby or Bash to automate security tasks.

  • Comprehensive knowledge of network protocols and security concepts including TCP/IP DNS HTTP/S TLS and IPSEC.

  • Strong experience with security testing tools (e.g.BurpSuiteEnterprise SAST DAST and IAST).

  • Working knowledge of OWASP security fundamentals and API identity/access management (OAuth 2.0 OIDC JWT).

  • Ability to work with high autonomy and communicate technical security findings clearly to both technical and non-technical audiences.

  • Relevant information security certification(s) such as OSCP CEH OSWE or CISSP.

Bonus Qualifications

  • Direct experience managing or triaging a public bug bounty program (e.g.HackerOneBugCrowd).

  • ExperienceleveragingSlack/ChatOpsto automate security tasks or reporting.

  • Experience with cloud orchestration and Infrastructure as Code (e.g. Terraform Google Deployment Manager).

  • Familiarity with containerization and orchestration tooling like Docker and Kubernetes.

  • Knowledge of compliance frameworks such as ISO 27001 PCI DSS SOC2 or CCPA.

Know More About Us here:

About UsAs a Fortune 50 company with more than 400000 team members worldwide Target is an iconic brand and one of Americas leading Target means promoting a culture of mutual care and respect and striving to make the most meaningful and positive impact. Becoming a Target team member means joining a ...

About Company

Target

1234 employees

Company Logo

Target Corporation is an American retail corporation. The eighth-largest retailer in the United States, it is a component of the S&P 500 Index.

View Profile View Profile