General Information
Ref #:
Travel Amount Required:
Job Type:
Location:
Description & Qualifications
Description
UKG is seeking talented penetration testers and reverse engineers to join our internal red team chartered to identify and exploit application security vulnerabilities within UKG. The goal of this team is to validate that our enterprise is secure.This is an exciting opportunity for you to join UKG’s Ethical Hacking team. You will be working alongside highly skilled team members with endless opportunities to further develop skillsets and grow.
Qualifications
Required Qualifications:Experience identifying and exploiting common web-application vulnerabilities, such as: SQL Injection, DOM Manipulation, Authorization System Bypass, Design Logic issues, bounds checking, role & access validation, and filter evasion.
Experience with red team operations - exploitation, persistence, and evasion
Evidence of broad knowledge of data manipulation techniques and encoding/encapsulation formats
Experience handcrafting/dissecting HTTP conversations
Ability to create and share exploits
Understanding of the applicability of software vulnerabilities, such as the OWASP Top 10 threats and Common Weakness Enumeration (CWE)
Excellent written and oral communications - delivering high quality reporting and collaboration with stakeholders.
Ability to lead engagements and provide guidance to team members and external stakeholders
Ability to present technical topics to business decision makers and collaborate with blue team operations.
Preferred Qualifications:
Familiarity with various programming languages such as Python, Ruby, and Rails are a plus
Experience in web programming (Java, ASP, ASP.NET, HTML, JavaScript)
Experience with cloud-based environments (GCP, Azure, AWS, etc.)
Market relevant certifications such as CREST/OSCP/OSCE/OSWP a plus
Demonstrated rapid tool development & automation experience
Regular Expressions (RegEx)
Knowledge of SQL Server, SQL Client Tools, and T-SQL Stored Procedures
Understanding of Web Application Firewalls
Reverse engineering
#LI-Hybrid
Company Overview
EEO Statement
Equal Opportunity Employer
Ultimate Kronos Group is proud to be an equal opportunity employer and is committed to maintaining a diverse and inclusive work environment. All qualified applicants will receive considerations for employment without regard to race, color, religion, sex, age, disability, marital status, familial status, sexual orientation, pregnancy, genetic information, gender identity, gender expression, national origin, ancestry, citizenship status, veteran status, and any other legally protected status under federal, state, or local anti-discrimination laws.
View The EEO Know Your Rights poster and its supplement.
View the Pay Transparency Nondiscrimination Provision
UKG participates in E-Verify. View the E-Verify posters here.
Disability Accommodation
For individuals with disabilities that need additional assistance at any point in the application and interview process, please email UKGCareers@ukg.com.