Please support the management of the inbound PSIRT Queue, allocating tickets to engineers, and making sure the tickets are handled quickly.
Triage incidents, answer questions they may raise, test for vulnerabilities they may signal, investigate source code and create (then follow up on) Incidents on the Incident Management System when necessary.
Escalate to senior analyst when incident falls out of the field of competence/knowledge.
Find and report unknown vulnerabilities in Fortinet products via black box analysis, fuzzing, and source code auditing.
We Are Looking For:
A good understanding of the Fortinet products line-up would be advantageous along with a solid security background/experience.
Understanding of asymmetric cryptography, scripting knowledge, high proficiency in C language, must be detail-oriented and able to follow processes thoroughly.
Good understanding of vulnerabilities at a source-code level and some experience in vulnerability scanning tools. Experience in pen-testing methodologies and/or fuzzing tools is a plus.