Full-Time

Information Security Engineer Lead

Red Team

Confirmed live in the last 24 hours

Netskope

Netskope

1,001-5,000 employees

Cloud security solutions for enterprises

Cybersecurity

Senior

St. Louis, MO, USA

Category
Cybersecurity
IT & Security
Required Skills
TCP/IP
Kubernetes
Python
AWS
Google Cloud Platform
Requirements
  • 6+ years of penetration testing, application security, red team experience in highly diversified and high growth organizations.
  • Understanding of application frameworks and how to approach security as well as security pitfalls with them.
  • Proven expertise & track record in web and mobile application penetration testing (Web, Mobile, API/Web Services) - DAST and SAST.
  • Experience in leading the team of 3-5 members in security testing domain.
  • Should have experience with tools Burp suite professional, Metasploit, Tenable, SQL Map and Nmap.
  • Experience in regulatory compliance like FedRAMP and PBMM.
  • Have experience in developing exploits and tooling from vulnerabilities both pre and post exploitation and lateral movement.
  • In-depth knowledge of OWASP Web and Mobile Top 10 vulnerabilities, identifying, exploiting and remediation of them.
  • Good knowledge of TCP/IP and other application and network level protocols.
  • Be able to author and issue reports on assigned application and system scan.
  • Good exposure to cloud service providers like AWS, GCP and other SaaS applications.
  • Experience in automating security tasks using Python or any other scripting language.
  • Should be able to think 'Out of the box'. Possess ability to think and implement new attack approaches/vectors.
  • Should possess relevant university degree and/or professional qualifications/certification (e.g. CEH, OSCP, CISSP).
  • Excellent written and verbal communication skills.
  • Self-motivated, curious, knowledgeable pertaining to news and current events.
Responsibilities
  • Act as a SME for offensive security technical areas
  • Perform comprehensive security assessment of, but not limited to, web & mobile application, containers, k8s, thick client, cloud environments
  • Perform triage and implement SAST, DAST and SCA process
  • Communicate and collaborate with multiple stakeholders like engineering, SRE, QA for security initiatives
  • Providing assistance in regulatory compliance like FedRAMP and PBMM
  • Support junior team members in their authoring of reports and issues and help in day-to-day operations
  • Support and recreate proofs of concept from security reports
  • Support the PSIRT (Product Security Incident Response Team)
  • Automate day-to-day red team tasks

Netskope provides cloud security solutions specifically designed for large enterprises that are transitioning to cloud-based operations. Their products focus on securing data and protecting against threats in cloud environments. The main offerings include real-time data protection, secure access service edge (SASE) solutions, and advanced threat detection and response capabilities. Unlike many competitors, Netskope emphasizes a data-centric approach, prioritizing the protection of data itself rather than just the network or devices. The company operates on a subscription model, allowing clients to access their suite of tools and services, which helps organizations manage their digital security effectively. The goal of Netskope is to assist large enterprises in securely navigating their digital transformation journeys.

Company Stage

N/A

Total Funding

$1.4B

Headquarters

Santa Clara, California

Founded

2012

Growth & Insights
Headcount

6 month growth

-1%

1 year growth

12%

2 year growth

21%
Simplify Jobs

Simplify's Take

What believers are saying

  • Netskope's recognition as a leader in both the SSE and Single-Vendor SASE Magic Quadrants by Gartner underscores its market leadership and growth potential.
  • The company's continuous innovation, such as the introduction of SaaS security enhancements for generative AI, positions it at the forefront of addressing emerging cybersecurity threats.
  • Netskope's strong financial performance, surpassing $500 million in annual recurring revenue, indicates robust business health and stability.

What critics are saying

  • The rapid adoption of generative AI and the associated data security risks could overwhelm Netskope's current capabilities, leading to potential vulnerabilities.
  • Tensions between CISOs and other C-suite executives regarding risk appetite may create internal conflicts, affecting strategic decision-making and operational efficiency.

What makes Netskope unique

  • Netskope's data-centric approach to cloud security, focusing on protecting data itself rather than just networks or devices, sets it apart from traditional cybersecurity solutions.
  • Being the only vendor ranked among the top three in all use cases in Gartner's 2024 Critical Capabilities for Single-Vendor SASE report highlights Netskope's comprehensive and effective solutions.
  • Netskope's integration of generative AI into its security platform enhances its ability to address modern data security challenges, distinguishing it from competitors.

Help us improve and share your feedback! Did you find this helpful?