Attack Surface Management (ASM) Cybersecurity Analyst

Remote Full-time
Black Lantern Security is a Services Oriented Company
• Black Lantern Security is built around the ingenuity, passion, and determination of our Operators and Analysts
• No one "mastermind"
• No "cult of personality"
• Competitive compensation and benefits
• Healthy work-life balance
• Project-based engagements that play to the team's strengths

Attack Surface Management (ASM) Cybersecurity Analyst

Location: Remote
Travel: Up to 10% travel possible, both domestically and internationally
Experience Level: Entry - Mid Level

Responsibilities:
• Perform data collection in support of ASM
• Identify vulnerabilities, communicate risk, and verify root cause
• Perform verification/validation testing for vulnerabilities in external-facing web sites, web applications, and services; demonstrate exploitation steps and verify remediation/fixes
• Develop custom tools and small utilities
• Generate comprehensive reports, including detailed findings, exploitation procedures, and mitigation techniques

Preferences:
• Strong understanding of OWASP common vulnerabilities and testing methodologies
• Ability to communicate risks caused by web-based application vulnerabilities
• Possess basic cybersecurity professional certifications (Security+, GSEC, SSCP)
• Experience with ASM/OSINT tools and utilities (BurpSuite, AMASS, PassiveTotal, SecurityTrails, Nuclei, Recon-NG, GoWitness, MassDNS, Masscan, Censys.io, etc.)

Requirements:
• Must be US citizen (must be willing to submit to federal, state, and local background checks as well as other requirements)
• Familiarity with common web vulnerabilities including: XSS, XXE, SQL Injection, Deserialization Attacks, Path Traversal Attacks, Remote Execution Flaws, and Authentication Flaws
• Understanding of common web application frameworks and web-based APIs
• Experience with one or more scripting languages such as Bash, Python, Perl, PowerShell, etc.
• Solid understanding of Open-Source Intelligence (OSINT) gathering techniques in support of ASM (subdomain discovery/enumeration, service and application enumeration, and content discovery, etc.)
• Ability to manage, organize, analyze, and present substantial amounts of data
• Strong written and verbal English language skills
• Capable of working effectively and efficiently with minimal supervision

Apply tot his job

Apply To this Job
Apply Now →

Similar Jobs

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote

USPS Office Helper

Remote

Legal Counsel - Platform Liability

Remote

[Remote] Inside Sales Representative

Remote

Collections Manager

Remote

Financial Institutions - Analyst (MD / NY / Chicago)

Remote

Director - Strategic Advisory

Remote

Senior Program Manager - Work at Home - Ohio

Remote

Marine Designer - 100% Remote Opportunity - Full-time

Remote

**Experienced Data Entry Specialist – Designing Data-Driven Solutions for a Global Entertainment Leader**

Remote

**Experienced Entry-Level Data Entry Specialist – Virtual Opportunity at arenaflex**

Remote

Remote Sales Leader – Lead From Anywhere

Remote
← Back