TEKsystems
Sr. Information Security Analyst (Penetration Testing)
TEKsystems, New York, New York, us, 10261
Overview
Sr. Information Security Analyst (Penetration Testing) – TEKsystems Description: The Information Security Analyst will be responsible for monitoring the Firms security systems and performing penetration tests of the WLRK infrastructure. Key responsibilities include daily monitoring activities (SIEM and other security tools) and identification and mitigation of suspicious events, conducting controlled penetration tests, identifying vulnerabilities, and delivering reports with mitigation recommendations. The candidate will also support other Security Operations activities and assist in the deployment and operation of information security systems, and work on a diverse set of security-related projects and responsibilities. Responsibilities
Perform real-time security log and event analysis and take action to contain and mitigate information security threats. Sources include SIEM, DLP, IDS, IPS, antivirus, firewalls, system security logs and user reports. Conduct manual and automated penetration testing of web applications, APIs, networks, cloud environments, and mobile apps. Simulate real-world cyber-intrusion techniques to identify security vulnerabilities and validate practical exposures/risks. Develop automation workflows, routines and scripts to support advanced testing efforts and remediation validation. Contribute to red team engagements, threat modeling, and purple team exercises. Assist in maintaining existing security systems (IPS/IDS, Anti-Virus, EPO, SIEM, NAC) and assist with deployment, configuration, troubleshooting, maintenance, patching/upgrading and decommissioning of security technologies. Enhance existing monitoring and security operations and contribute to a Continuous Monitoring program framework. Collaborate across teams to achieve security program goals. Knowledge, Skills, and Abilities
Strong knowledge of network services, vulnerabilities, exploits and attack vectors and TTPs (Tactics, Techniques, and Procedures). Proven experience in penetration testing, ethical hacking, or purple teaming. Strong knowledge of OWASP Top 10, MITRE ATT&CK, CVSS, and common exploit techniques. Proficiency with tools like Burp Suite, Metasploit, Nmap, Nessus, Kali, Bloodhound, or similar. Familiarity with scripting (e.g., Python, PowerShell) for automation and vulnerability validation. Understanding of IT infrastructure, networking, system internals (Windows/Linux), and web/application security. SPLUNK Administrator or Power User considered a plus. Strong knowledge of server and desktop operating systems, routers, switches, firewalls and other network equipment. Experience with cloud environments (SaaS, IDP, AWS, Azure, GCP) and cloud security testing. Knowledge of mobile app security vulnerabilities (iOS, Android) and threat modeling a plus. Participation in Capture The Flag (CTF) events or offensive security challenges. Critical thinking, investigative mindset and ability to conduct root cause analysis. Detail-oriented and able to meet tight deadlines. Excellent written, verbal and interpersonal skills. Highly motivated self-starter with an inquisitive personality. Desire and ability to learn new skills and concepts. Education and Experience
Bachelor’s degree in related field or discipline. Minimum of 7 years of experience in information security. Certifications such as GPEN, OSCP, OSEP or similar are highly desirable. CISSP, CISA, CEH, GIAC and other industry certifications considered a plus. Pay, Benefits and Other Details
The pay range for this position is $170,000.00 - $185,000.00/yr. UnitedHealthcare Medical Insurance, MetLife Dental, EyeMed Vision. 401K with employer contributions; eligibility after service requirements. Discretionary firm contributions may apply and are subject to change. Hybrid position in New York, NY 10019. Application deadline: This position is anticipated to close on Oct 26, 2025. About TEKsystems
TEKsystems is an Allegis Group company. We are an equal opportunity employer. We partner in transformation, helping clients activate ideas and solutions across North America, Europe and Asia. TEKsystems and TEKsystems Global Services are Allegis Group companies.
#J-18808-Ljbffr
Sr. Information Security Analyst (Penetration Testing) – TEKsystems Description: The Information Security Analyst will be responsible for monitoring the Firms security systems and performing penetration tests of the WLRK infrastructure. Key responsibilities include daily monitoring activities (SIEM and other security tools) and identification and mitigation of suspicious events, conducting controlled penetration tests, identifying vulnerabilities, and delivering reports with mitigation recommendations. The candidate will also support other Security Operations activities and assist in the deployment and operation of information security systems, and work on a diverse set of security-related projects and responsibilities. Responsibilities
Perform real-time security log and event analysis and take action to contain and mitigate information security threats. Sources include SIEM, DLP, IDS, IPS, antivirus, firewalls, system security logs and user reports. Conduct manual and automated penetration testing of web applications, APIs, networks, cloud environments, and mobile apps. Simulate real-world cyber-intrusion techniques to identify security vulnerabilities and validate practical exposures/risks. Develop automation workflows, routines and scripts to support advanced testing efforts and remediation validation. Contribute to red team engagements, threat modeling, and purple team exercises. Assist in maintaining existing security systems (IPS/IDS, Anti-Virus, EPO, SIEM, NAC) and assist with deployment, configuration, troubleshooting, maintenance, patching/upgrading and decommissioning of security technologies. Enhance existing monitoring and security operations and contribute to a Continuous Monitoring program framework. Collaborate across teams to achieve security program goals. Knowledge, Skills, and Abilities
Strong knowledge of network services, vulnerabilities, exploits and attack vectors and TTPs (Tactics, Techniques, and Procedures). Proven experience in penetration testing, ethical hacking, or purple teaming. Strong knowledge of OWASP Top 10, MITRE ATT&CK, CVSS, and common exploit techniques. Proficiency with tools like Burp Suite, Metasploit, Nmap, Nessus, Kali, Bloodhound, or similar. Familiarity with scripting (e.g., Python, PowerShell) for automation and vulnerability validation. Understanding of IT infrastructure, networking, system internals (Windows/Linux), and web/application security. SPLUNK Administrator or Power User considered a plus. Strong knowledge of server and desktop operating systems, routers, switches, firewalls and other network equipment. Experience with cloud environments (SaaS, IDP, AWS, Azure, GCP) and cloud security testing. Knowledge of mobile app security vulnerabilities (iOS, Android) and threat modeling a plus. Participation in Capture The Flag (CTF) events or offensive security challenges. Critical thinking, investigative mindset and ability to conduct root cause analysis. Detail-oriented and able to meet tight deadlines. Excellent written, verbal and interpersonal skills. Highly motivated self-starter with an inquisitive personality. Desire and ability to learn new skills and concepts. Education and Experience
Bachelor’s degree in related field or discipline. Minimum of 7 years of experience in information security. Certifications such as GPEN, OSCP, OSEP or similar are highly desirable. CISSP, CISA, CEH, GIAC and other industry certifications considered a plus. Pay, Benefits and Other Details
The pay range for this position is $170,000.00 - $185,000.00/yr. UnitedHealthcare Medical Insurance, MetLife Dental, EyeMed Vision. 401K with employer contributions; eligibility after service requirements. Discretionary firm contributions may apply and are subject to change. Hybrid position in New York, NY 10019. Application deadline: This position is anticipated to close on Oct 26, 2025. About TEKsystems
TEKsystems is an Allegis Group company. We are an equal opportunity employer. We partner in transformation, helping clients activate ideas and solutions across North America, Europe and Asia. TEKsystems and TEKsystems Global Services are Allegis Group companies.
#J-18808-Ljbffr