Security Engineer (Pentesting, Incident Response & Investigations)
Job description
About the role
At Talkdesk, we are committed to transforming customer experience through innovative solutions. Our team embraces diversity and inclusivity, reflecting the communities we serve. We actively support our local communities through volunteer work and sustainability initiatives. Join us in delivering exceptional experiences that our clients and partners trust. You will own the security validation of our customer-facing platforms and internal tools by designing and executing comprehensive penetration tests. You will own the proactive discovery of weaknesses in our AI features and infrastructure before adversaries can exploit them. You will own the end-to-end management of security incidents, driving investigations from initial alert to full remediation and reporting. You will own the synthesis of complex technical findings into clear, actionable reports for both technical and executive audiences. You will own the continuous refinement of our security playbooks based on real-world attack scenarios and lessons learned. You will own the evaluation of emerging threats specific to AI and cloud-native environments to guide our defensive strategies. You will own collaboration with engineering squads to ensure that identified vulnerabilities are addressed effectively and securely. You will own the promotion of a security-first mindset across the organization through knowledge sharing and active participation in design discussions.
Key facts
What you'll do
- Execute both manual and automated penetration tests on web applications, APIs, cloud services, and AI/ML models.
- Assess the security of AI features, focusing on vulnerabilities such as prompt injection, data leaks, and adversarial threats.
- Investigate security incidents to determine root causes, attack vectors, and their impacts.
- Participate in incident response efforts, including detection, containment, eradication, and conducting post-incident reviews.
- Analyze logs, telemetry, and forensic data to assist in investigations and threat hunting.
- Evaluate and prioritize findings from internal and external penetration tests.
- Collaborate with engineering teams to clarify vulnerabilities, suggest practical remediation strategies, and confirm fixes.
- Contribute to the development and enhancement of incident response protocols and playbooks.
- Perform threat modeling (e.g., STRIDE) to identify plausible attack scenarios.
- Stay updated on emerging threats and attack methodologies, particularly in the context of AI.
- Serve as a security expert during incidents and high-stakes technical discussions.
- Enhance Talkdesk's security posture by applying lessons learned and conducting proactive tests.
- Validate the security of third-party integrations and dependencies within our ecosystem.
- Monitor industry trends and contribute to the security roadmap for the product and engineering teams.
Requirements
- In-depth understanding of application and system security.
- Familiarity with web technologies, networking, and prevalent attack vectors.
- Hands-on experience with penetration testing tools and methodologies.
- Knowledge of the OWASP Top 10 for LLMs and common AI exploitation techniques.
- Experience in conducting security investigations and incident response.
- Understanding of cryptographic principles and their applications.
- Proficiency in Linux/Unix environments.
- Experience in analyzing logs and security events.
- Coding or scripting skills in at least one general-purpose language (e.g., Python, Ruby, Java).
- Strong written and verbal communication skills, able to articulate complex security concepts clearly.
- Fluency in English (both written and spoken).
- Excellent analytical and critical thinking abilities.
- Ability to thrive in fast-paced and high-pressure environments.
Nice to have
- Experience with testing cloud-native environments, particularly AWS.
- Knowledge of microservices architecture and API security.
- Familiarity with web and mobile application security testing.
- Exposure to DAST, SAST, or IAST tools, either hands-on or in a triage capacity.
- Experience in conducting security reviews of application architectures.
- Awareness of security standards and frameworks (e.g., ISO 27001, NIST, CIS, OWASP, SANS).
- Relevant certifications such as OSCP, OSWE, GSEC, GCIA, CISSP, or CISM.
- Familiarity with technologies like Git, Ruby, Kotlin, RabbitMQ, Redis, MongoDB, or PostgreSQL.
Practical notes
We welcome candidates from diverse backgrounds and experiences. Talkdesk is dedicated to creating an inclusive environment where every team member can thrive. We offer competitive salaries and benefits, along with opportunities for professional growth.