Security Researcher - Database Security
Trustwave
Date: 5 days ago
City: Remote
Contract type: Full time
Remote
About Trustwave
Trustwave is a leading cybersecurity and managed security services provider focused on threat detection and response. We uncover threats that others can’t and respond quicker than others can to protect against the devastating impacts of cyberattacks. We’re a world-class team of cyber consultants, threat hunters and researchers serving clients in 96 countries. At Trustwave, you can learn alongside the best, make a personal impact on a global scale, and solve new challenges every day. Learn more about us at https://www.trustwave.com.
Security Researcher – Database Security. The role is open to remote (Philippines based).
We are currently looking for a talented, highly motivated Security Researcher for our Database Security Research Team. The position will be a key team member of the team whose focus is to research and develop database vulnerability and security configuration detections for our DbProtect and AppDetective Pro database products.
Responsibilities
Trustwave is an Equal Opportunity Employer of Minorities, Females, Protected Veterans, and Individuals with Disabilities
To All Agencies
Please, no phone calls or emails to any employee of Trustwave outside of the Talent Acquisition team. Trustwave’s policy is to only accept resumes from agencies via the Trustwave Agency Portal. Agencies must have a valid fee agreement in place and they must have been assigned the specific requisition to which they submit resumes, by the Talent Acquisition team. Any resume submitted outside of this process will be deemed the sole property of Trustwave and in the event a candidate is submitted outside of this policy is hired, no fee or payment of any kind will be paid.
Trustwave is a leading cybersecurity and managed security services provider focused on threat detection and response. We uncover threats that others can’t and respond quicker than others can to protect against the devastating impacts of cyberattacks. We’re a world-class team of cyber consultants, threat hunters and researchers serving clients in 96 countries. At Trustwave, you can learn alongside the best, make a personal impact on a global scale, and solve new challenges every day. Learn more about us at https://www.trustwave.com.
Security Researcher – Database Security. The role is open to remote (Philippines based).
We are currently looking for a talented, highly motivated Security Researcher for our Database Security Research Team. The position will be a key team member of the team whose focus is to research and develop database vulnerability and security configuration detections for our DbProtect and AppDetective Pro database products.
Responsibilities
- Conduct security research on relational as well as no-sql database applications
- Research and implement detections for our database security scanning platform
- Participate in peer code reviews
- Author knowledgebase descriptions for our detections and maintain related meta data
- Share your research with the community via blogs, etc.
- Improve our team's processes and efficiency with your ideas
- Improve our Test Lab infrastructure
- Develop tools to assist with our SDLC
- Expertise in the software security field
- Experience in vulnerabilities research
- Experience writing vulnerability detection and software configuration signatures
- Programming skills in languages like: Python, Java, or C#
- Database skills: SQL and administration skills for at least one major database e.g. Oracle, MSSQL, IBM DB2, Sybase, PostgreSQL or MySQL
- Ability to work under tight deadlines with creativity
- Self-motivated, independent and able to quickly assess and understand complex systems
- Be a team player
- Must possess strong written and verbal communication skills
- Experience with AWS, Azure or other cloud platforms
- Experience with installing/deploying databases inside Unix/Windows platforms
- Advanced Linux / Unix knowledge
- Experience with regular expressions
- Familiarity with compliance regulations and standard frameworks like DISA-STIG, CIS, etc.
- Experience with vulnerability discovery and disclosure, as well as proof-of-concept exploit development
- Experience with source code management tools such as git or Subversion.
- Experience and/or willingness to present at security conferences like DEFCON, BlackHat, etc.
- Experience and/or willingness to write technical blog posts (See https://www.trustwave.com/en-us/resources/blogs/spiderlabs-blog/)
- Experience with CI/CD environments
- Experience with Terraform or other infrastructure as code frameworks
- A high school diploma or equivalent is required; a college or university degree is a plus.
Trustwave is an Equal Opportunity Employer of Minorities, Females, Protected Veterans, and Individuals with Disabilities
To All Agencies
Please, no phone calls or emails to any employee of Trustwave outside of the Talent Acquisition team. Trustwave’s policy is to only accept resumes from agencies via the Trustwave Agency Portal. Agencies must have a valid fee agreement in place and they must have been assigned the specific requisition to which they submit resumes, by the Talent Acquisition team. Any resume submitted outside of this process will be deemed the sole property of Trustwave and in the event a candidate is submitted outside of this policy is hired, no fee or payment of any kind will be paid.
How to apply
To apply for this job you need to authorize on our website. If you don't have an account yet, please register.
Post a resumeSimilar jobs
People Services Specialist
Zendesk,
Remote
4 days ago
Job DescriptionLove helping people build better relationships and passionate about delivering excellent service and believe that there’s a better way to scale and grow a business? We have just the role for you! Zendesk is looking for a People Services Specialist. You are genuine, listen to your customers, and you strive to make things appealingly simple. You consistently make the...
Sr. Project Manager, GBS-1
IFF,
Remote
5 days ago
Job SummaryThe Sr. Project Manager is responsible for standardizing the methodology for implementation and management of large GBS and Corporate initiatives. This includes developing standard tools, templates, methodologies and documentation of initiatives, from ideation to timely conclusion, including the control phase. This individual will be responsible to discuss with different business units and teams to ensure the inclusion of the...
IT Support Engineer
Collective,
Remote
1 week ago
About Collective:Collective is on a mission to redefine the way businesses-of-one work. Collective's technology and team of trusted advisors enables our members to achieve financial independence by taking care of everything from business incorporation to accounting, bookkeeping, tax services and access to a thriving community, all in one integrated platform. We believe in empowering self-employed people to enjoy the same...