Equinix is the world’s digital infrastructure company, operating 220+ data centers across the globe and providing interconnections to all the key clouds and networks. Businesses need one place to simplify and bring together fragmented, complex infrastructure that spans private and public cloud environments. Our global platform allows customers to place infrastructure wherever they need it and connect it to everything they need to succeed.
We are a fast-growing global company with 71+ consecutive quarters of growth. Through our innovative portfolio of high-performance products and services, we have created the largest, most active global ecosystem of nearly 10,000 companies, including 1,800+ networks and 2,900+ cloud and IT service providers in over 26 countries spanning five continents.
At Equinix, we make the internet work faster, better, and more reliably. We hire talented people who flourish solving hard problems and give them opportunities to hone new skills, try new approaches, and grow in new directions. Our culture is at the heart of our success and it’s our authentic, humble, gritty people who create The Magic of Equinix. We share a real passion for winning and put the customer at the center of everything we do.
A Penetration Tester (Pen Tester) is responsible for securing Equinix’s digital assets, through active hunting and identification of threats and vulnerabilities, in our environment, that are not detected by traditional vulnerability scanning. The Pen Tester should possess a deep understanding of both information security and computer science. They should understand basic concepts such as networking, applications and operating system functionalities, and be able to learn advanced concepts such as application manipulation, exploit development, and stealthy operations.
What you will be doing
- Perform network penetration, web, mobile and business application testing, source code reviews, threat analysis, wireless network assessments, OT/IoT security assessments, and social-engineering assessments
- Develop comprehensive and accurate reports and presentations for both technical and executive audiences
- Effectively communicate findings and remediation strategies to business partners including technical staff, executive leadership, and legal counsel
- Recognize and safely utilize attacker tools, tactics, and procedures
- Develop scripts, tools, or methodologies to improve Equinix’s red teaming processes
What you should have
- Bachelor's degree in Computer Science, MIS, or related degree preferred
- Experience in at least three of the following:
- Network penetration testing and manipulation of network infrastructure
- Web, mobile and/or business application assessments
- OT/IoT security assessments
- Email, phone or physical social-engineering assessments
- Shell scripting or automation of simple tasks using Perl, Python or Ruby
- Developing, extending, or modifying exploits, shellcode or exploit tools
- Developing applications in C#, ASP, .NET, ObjectiveC, or Java (J2EE)
- Reverse engineering malware, data obfuscators, or ciphers
- Source code review for control flow and security flaws
- Kali Linux, Cobalt Strike, Burp Suite working knowledge
- Advanced English
What is a differential if you have
- Tools used for wireless, web application, IoT/OT and network security testing
- Network protocols, ICS/SCADA/Bacnet protocols, data on the wire, and covert channels
- Unix/Linux/Mac/Windows operating systems, including bash and Powershell
- Security controls and services in AWS, GCP and Azure cloud platforms
- General security concepts, such as defense-in-depth, MITRE ATT&CK framework, and security architectures
- Preferred certifications: OSCP, OSWP, GPEN, GWAPT, OSCE, OSEE, GXPN
Why Equinix
The opportunity to be part of the digital transformation in the world in a company that was elected by the employees as the best places to work by Glassdoor and it´s is GPTW for several consecutive years.
Equinix is an equal opportunity employer. All applicants will receive consideration for employment without regard to race, religion, color, national origin, sex, sexual orientation, gender identity, age, status as a protected veteran, or status as a qualified individual with disability.