Find Jobs
Find Jobs Near You – Available Work in Your Location
Cyber Defense, Adversary Emulation Director
Career Insights for Vulnerability Analyst / Penetration Tester
See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.
Scorecard
Based on New Jersey data
Review key factors to help you decide if this role fits your goals. How is this calculated?
What they do
A Vulnerability Analyst or Penetration Tester probes for and exploits security vulnerabilities in web-based applications, networks and systems. Penetration Tests are designed to achieve a specific, attacker-simulated goal and should be requested by customers who are already at their desired security posture. A typical goal could be to access the contents of the prized customer database on the internal network, or to modify a record in an HR system. Vulnerability Assessments are designed to yield a prioritized list of vulnerabilities and are generally for clients who already understand they are not where they want to be in terms of security. The customer already knows they have issues and simply need help identifying and prioritizing them.
$124,644 / year median in New Jersey
+3% projected growth
Job Description
MITRE ATT&CK.
Demonstrated threat hunting experience across endpoint, network, and cloud telemetry to proactively detect malicious activity and systemic weaknesses. Strong hands-on scripting skills (Python, PowerShell, or similar) to support testing, analysis, and automation of offensive and proactive security workflows. Strong understanding of offensive security tooling and techniques, such as command-and-control (C2) frameworks, exploitation, penetration testing methodologies, and adversary TTP emulation. Strong understanding of cybersecurity operations, threat detection, incident response, vulnerability management, cloud security, and security monitoring concepts. Familiarity with governance models, control requirements, auditability, and risk management practices applicable to automation in a regulated environment. Ability to collaborate with security engineers, analysts, architects, and business stakeholders to drive prioritized remediation and risk reduction aligned to operational priorities. Strong written and verbal communication skills, with the ability to explain technical concepts, threats, risks, and remediation priorities to both technical and non-technical audiences. Educational background with a BS/MS in Information Technology, Computer Science, Engineering, Cybersecurity, or a related field, or equivalent practical experience. Additional Qualifications Hands-on experience with vulnerability management platforms, SIEM, EDR/XDR, threat intelligence platforms, and offensive security tooling (e.g., Cobalt Strike, Metasploit, BloodHound, Nmap, Burp Suite). Experience applying AI or LLM-based tooling to security workflows — such as automated triage, enrichment, or human-in-the-loop analysis — as a supplement to core offensive and threat capabilities. Experience assessing cloud security, containerization, and infrastructure as code from an offensive or adversarial perspective. Relevant certifications such as OSCP, OSEP, GXPN, GPEN, GCIH, GCTI, GREM, CISSP, or CISM. Experience working in financial services, banking, or another highly regulated environment. Demonstrated ability to build playbooks, documentation, standards, and shared practices across proactive and offensive security teams. The expected base salary ranges from $150,000 - $250,000. Salary offers are based on a wide range of factors including relevant skills, training, experience, education, and, where applicable, certifications and licenses obtained. Market and organizational factors are also considered. In addition to salary and a generous employee benefits package, including Medical, Dental and 401K plans, successful candidates are also eligible to receive a discretionary bonus. #LI-Hybrid Other requirements Mizuho has in place a hybrid working program, with varying opportunities for remote work depending on the nature of the role, needs of your department, as well as local laws and regulatory obligations. Roles in some of our departments have greater in-office requirements that will be communicated to you as part of the recruitment process . Company Overview Mizuho Financial Group, Inc. is the 15th largest bank in the world as measured by total assets of ~$2 trillion. Mizuho's 60,000 employees worldwide offer comprehensive financial services to clients in 35 countries and 800 offices throughout the Americas, EMEA and Asia. Mizuho Americas is a leading provider of corporate and investment banking services to clients in the US, Canada, and Latin America. Through its acquisition of Greenhill, Mizuho provides M&A, restructuring and private capital advisory capabilities across Americas, Europe and Asia. Mizuho Americas employs approximately 3,500 professionals, and its capabilities span corporate and investment banking, capital markets, equity and fixed income sales & trading, derivatives, FX, custody and research. Visit www.mizuhoamericas.com . Mizuho Americas offers a competitive total rewards package. We are an EEO/AA Employer - M/F/Disability/Veteran. We participate in the E-Verify program. We maintain a drug-free workplace and reserve the right to require pre- and post-hire drug testing as permitted by applicable law. #LI-MIZUHOBenefits
- 401(k) Plans
- Health Insurance
- Dental Insurance