Open Role | Cyber Security Analyst

Cyber Security Analyst II

Cyber Security Analyst II

Dara Security seeks a full-time experienced Cyber Security Analyst who will conduct authorized offensive security penetration tests against our clients to simulate an advanced persistent threat (APT). The Analyst will be responsible for both technical and non-technical duties, which include performing network and web application penetration testing, social engineering exercises, developing detailed reports of their findings along with customized remediation steps, and effectively communicating these findings to clients of varying technical knowledge. 

Most assessments and work will be conducted remotely; however, some travel may be required for various penetration tests. Hours of work may vary and are highly dependent on the current project assigned to the analyst.

Dara Security was founded in 2014 and works with retail organizations, e-Commerce sites, payment application software vendors, financial institutions, medical organizations, and other organizations ranging from $250K to over $300B in assets. Dara offers healthcare benefits (medical, dental, vision) , a 401k retirement plan, opportunities to earn top-level industry certifications, and various perks (certification bonus, well-being program, personal days off in addition to Paid Time Off).

Work Location:

This position is a remote/work from home position. The position will sometimes require travel to remote client locations both within and outside of the United States.

Required Qualifications:

  • Bachelor’s Degree or higher in Computer Science or related field OR equivalent work experience in the cybersecurity industry
  • At least 3 years of pentesting experience
  • At least 1 pentesting certification
  • Strong verbal and written communication skills
  • Basic experience with scripting/programming in Python, Bash, C/C#, PHP, PowerShell or similar
  • Knowledge of popular Linux distros and command line usage
  • Knowledge of computer networking (IPv4 / IPv6 addressing, routing, etc.)
  • Basic understanding of how malicious software works (malware, trojans, rootkits, etc.)
  • Experience creating reports and presentations using Microsoft Office or Google Docs

Desired, but not required:

  • Certifications such as CISSP, SANS GSEC / GPEN / GWAPT, CEH, OSCP
  • Knowledge of commercial or open-source security assessment tools such as Kali Linux, Nexpose,Nessus, Metasploit, Burp Suite or Nmap
  • Understanding of defensive controls and how to bypass/evade them
  • Computer network, application, database, and web exploitation techniques
  • Experience with Cloud environments (AWS, Azure, Google Cloud)
  • Active Directory and enterprise network knowledge 

Connect with Dara Security

Thank you for your interest in Dara Security. We look forward to helping you secure your data and achieve compliance.