Information Protection Senior Analyst - HIH - Evernorth

3 - 5 years

5 - 7 Lacs

Posted:1 day ago| Platform: Naukri logo

Apply

Work Mode

Work from Office

Job Type

Full Time

Job Description

Job Description Summary
The Information Protection Senior Analyst - Penetration Testing, is responsible for conducting vulnerability assessments, threat modeling, penetration tests of Cigna IT infrastructure and applications. This role will work closely with the Information Protection Senior Manager to identify, evaluate, and remediate potential weaknesses in Cigna systems, using both manual and automated methods.

Responsibilities
  • Execute internal and external penetration tests against corporate web applications, APIs, networks, infrastructure and operating systems in order to discover vulnerabilities.
  • Execute mobile application penetration tests for both Android and iOS based devices.
  • Execute penetration tests in cloud-hosted environments.
  • Create comprehensive and accurate penetration testing reports with recommendations for appropriate remediation, and communicate risk findings with development and infrastructure teams.
  • Develop scripts, tools, or methodologies to enhance Cigna penetration testing processes.
  • Work as part of a team to identify risks, communicate to key stakeholders, and provide value to the organization.
Skills required
  • Demonstrated ability to work as both an individual contributor and a team player in a fast paced environment.
  • Coordinate with people and teams to forecast activity completion and the ability to work in a team environment, sharing workloads and responsibilities.
  • Knowledge of Windows and *nix-based operating systems.
  • Understanding of core Internet protocols (e.g. TCP, UDP, DNS, HTTP, TLS, IPsec) and the OSI model.
  • Understanding of encryption fundamentals (symmetric/asymmetric, ECB/CBC operations, AES, etc.).
  • Understanding of Cloud environments such as SaaS, PaaS and IaaS.
  • Basic exploit development and validation skills.
  • Proficiency in application vulnerability assessment tools (e.g. Burp, Checkmarx, AppScan, WebInspect, Cenzic, etc.).
  • Proficiency in network and server assessment tools (e.g. Nessus, metasploit, nmap, nikto, etc.)
  • Understanding of web application frameworks (React, Springboot, Ruby on Rails, J2EE, PHP, ASP.NET).
  • Proficiency in manual and automated techniques for penetration testing and executing vulnerability assessments.
  • Knowledge of networking fundamentals and common attacks.
  • Coding/scripting experience in modern scripting languages (e.g. Python, Ruby, PowerShell.)
  • Mobile application coding experience with Android/iOS based platforms (e.g. Java, Swift, Objective C).
  • Ability to analyze vulnerabilities and misconfigurations, appropriately characterize threats, and provide remediation recommendations.

Qualifications
  • High School diploma; Bachelors degree preferred.
  • 3-5 years or more of penetration testing experience.
  • Passionate about security and finding new ways to break into systems, as well as defend them.
  • Strong analytical and problem solving skills, with the ability to think outside the box.
  • Ability to work in a flexible environment where requirements and procedures continuously evolve.
  • Strong oral and written communication skills, including a demonstrated ability to prepare documentation and presentations for technical and non-technical audiences.

Mock Interview

Practice Video Interview with JobPe AI

Start PHP Interview
cta

Start Your Job Search Today

Browse through a variety of job opportunities tailored to your skills and preferences. Filter by location, experience, salary, and more to find your perfect fit.

Job Application AI Bot

Job Application AI Bot

Apply to 20+ Portals in one click

Download Now

Download the Mobile App

Instantly access job listings, apply easily, and track applications.

coding practice

Enhance Your Python Skills

Practice Python coding challenges to boost your skills

Start Practicing Python Now

RecommendedJobs for You