Penetration testing web applications, apis, thick client
Analyze penetration test reports
Develop remediation guidance and blueprints
LSEG is seeking a Senior Vulnerability Management Engineer to enhance their internal offensive security team, focusing on addressing penetration testing findings. The ideal candidate will have a strong background in penetration testing, remediation experience, and the capability to collaborate effectively across teams
Job Summary
This role bridges offensive security and engineering by translating penetration test results into clear, actionable remediation guidance and partnering with application and platform teams to implement secure fixes.
The successful candidate has a strong penetration testing or application security background, hands on remediation experience, and the ability to coordinate multiple collaborators to reduce risk at scale.
Contribute to continuous improvement of the pentest-to-remediation lifecycle, including automation, standardization and integration with SDLC/DevSecOps pipelines.
Matching Summary
Match Score: 85
LSEG is seeking a Senior Vulnerability Management Engineer to enhance their internal offensive security team, focusing on addressing penetration testing findings. The ideal candidate will have a strong background in penetration testing, remediation experience, and the capability to collaborate effectively across teams.
Skills & Requirements
Must-have
Penetration testing web applications, APIs, thick client
Analyze penetration test reports
Develop remediation guidance and blueprints
Coordinate remediation activities across teams
Validate fixes by retesting vulnerabilities
Proficiency with Burp Suite and scripting
Experience with cloud platforms (AWS, Azure, GCP)
Nice-to-have
Threat modelling experience
Engagement with security community
Continuous improvement of pentest lifecycle
Emerging threats and offensive security techniques
Key Requirements
Proven hands-on experience in penetration testing
Experience with cloud platforms (AWS, Azure, GCP)
Solid understanding of OWASP Top 10
Experience working in large, complex enterprise environments