TP-Link Systems Inc. logo
TP-Link Systems Inc.
Verified live 1d ago

Penetration Tester, Embedded Devices

Brief overview

Irvine, CAIn-person
UndergradOr in progress
$80k–$132k/yrStated range
1+ yrsMinimum
Penetration testingThreat modelingIncident responseProtocol security designCryptographySecurity frameworksCommon vulnerabilitiesPenetration testing tool optimizationFuzzing strategiesSAST results analysisBasic reverse engineeringProgramming (C/C++, Python, Bash, PowerShell)Communication and interpersonal skillsCross-functional collaborationSDLC security integrationCybersecurity standards interpretation

Job description

Summary

TP-Link Systems Inc. is a global provider of reliable networking devices and smart home products, consistently ranked as the world's top provider of Wi-Fi devices. They are seeking a skilled and proactive Penetration Testing Engineer for Embedded Devices to support security activities including penetration testing, threat modeling, and incident response for their embedded product projects.

Responsibilities

  • Perform penetration testing on embedded products to identify vulnerabilities
  • Provide remediation recommendations and write detailed penetration test reports
  • Perform threat modeling to identify and evaluate potential risks for specific modules
  • Responsible for specific area's incident response, including investigation, containment, remediation, and post-incident analysis
  • Coordinate with cross-functional teams to ensure effective resolution
  • Analyze specific product security certification requirements and collaborate with cross-functional teams to achieve product security certification
  • Assist in developing various pen-testing tools, automated testing platforms, and scripts to enhance testing efficiency and accuracy
  • Participate in the development and improvement of the company's SDLC processes, ensuring security considerations are embedded during development
  • Interpret global cybersecurity standards and regulatory requirements, supporting implementation of security requirements

Skills

  • Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent work experience)
  • Proven 1-3 years' experience as a Security Engineer (Embedded devices) or in a similar role
  • Strong knowledge of protocol security design, cryptography, security frameworks and common vulnerabilities
  • Experience with security tools such as Burpsuite, Nmap, Kali, Nessus, Metasploit, IDA, Ghidra, etc
  • Capability to optimize penetration testing tools and Fuzzing strategies
  • Ability to analyze SAST results, conduct basic reverse engineering
  • Proficient in at least one programming language (e.g., C/C++, Python, Bash, or PowerShell)
  • Strong communication and interpersonal skills
  • Ability to work independently as well as collaborate with cross-functional teams
  • Strong willingness to learn, able to work under guidance and take constructive feedback
  • Team-oriented mindset, with the ability to follow technical direction and contribute constructively to group tasks
  • Relevant advanced security certifications (e.g., OSWP, etc.) are highly preferred
  • Published CVEs are highly preferred

Qualifications

Must Haves

  • Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent work experience)
  • Proven 1-3 years' experience as a Security Engineer (Embedded devices) or in a similar role
  • Strong knowledge of protocol security design, cryptography, security frameworks and common vulnerabilities
  • Experience with security tools such as Burpsuite, Nmap, Kali, Nessus, Metasploit, IDA, Ghidra, etc
  • Capability to optimize penetration testing tools and Fuzzing strategies
  • Ability to analyze SAST results, conduct basic reverse engineering
  • Proficient in at least one programming language (e.g., C/C++, Python, Bash, or PowerShell)
  • Strong communication and interpersonal skills
  • Ability to work independently as well as collaborate with cross-functional teams
  • Strong willingness to learn, able to work under guidance and take constructive feedback
  • Team-oriented mindset, with the ability to follow technical direction and contribute constructively to group tasks

Nice to Haves

  • Relevant advanced security certifications (e.g., OSWP, etc.) are highly preferred
  • Published CVEs are highly preferred

Benefits

  • Fully paid medical, dental, and vision insurance (partial premium coverage for dependents)
  • Employer quarterly contributions to 401k funds
  • 15 days accrued vacation
  • 11 paid holidays
  • Bi-annual reviews, and annual pay increases
  • Health and wellness benefits, including free gym membership
  • Quarterly team-building event

More jobs like this