Pentest Product Associate

Wiz
Tel Aviv
Workplace: OnsiteFull timeFunction: Solutions Engineering & Sales EngineeringExperience: 2+ yearsSkills: ["Analytical thinking","Communication","Collaboration","Problem-solving","Critical thinking"]

Lead and operate the AI-driven Dynamic Application Security Testing (DAST) agent within Wiz's product team, defining the rules of engagement, overseeing security testing across customer environments, and translating advanced attack techniques into executable behaviors to improve the DAST engine and product capabilities.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Wiz
Wiz
7 months ago

Pentest Product Associate

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 8 hours agoStatus: Live

Job Summary

Lead and operate the AI-driven Dynamic Application Security Testing (DAST) agent within Wiz's product team, defining the rules of engagement, overseeing security testing across customer environments, and translating advanced attack techniques into executable behaviors to improve the DAST engine and product capabilities.
Location: Tel Aviv
Workplace: Onsite
Employment Type: Full time
Job Function: Solutions Engineering & Sales Engineering

Key Responsibilities

  • •Oversee the daily deployment, health, and operation of DAST and penetration testing capabilities to ensure optimal scanning across diverse customer environments.
  • •Develop and maintain attack policies and rules by creating and fine-tuning the logic that defines how the system identifies, prioritizes, and exploits vulnerabilities.
  • •Analyze and validate findings by reviewing complex attack paths to reduce false positives and improve the core logic's performance.
  • •Research novel attack vectors and emerging web/API threats to translate new techniques into executable behaviors for the DAST engine.
  • •Collaborate on product evolution with R&D and Product teams, using operational insights to drive feature requests and continuous improvement.

Key Requirements

  • •Over 2 years of DAST and penetration testing experience, with hands-on use of enterprise security tools such as Burp Suite, OWASP ZAP, or Acunetix.
  • •Experience in security rule and policy development, including writing custom scripts or signatures to translate vulnerability classes into detection rules.
  • •Strong technical proficiency with web protocols and API standards (HTTP/S, REST, GraphQL) and authentication methods (OAuth, SAML).
  • •Proficiency in scripting languages (Python, Go, or JavaScript) to automate tasks and interact with codebases.
  • •Analytical mindset with ability to diagnose complex logs and scans to distinguish tool failures from valid findings.
Experience:2+ yearsCybersecuritySaaS
Skills:Analytical thinkingCommunicationCollaborationProblem-solvingCritical thinking
Languages:English
Tech Stack:Burp SuiteOWASP ZAPAcunetixHTTP/SRESTGraphQLOAuthSAMLPythonGoJavaScript

Eligibility

Work Authorization:Authorization required. Sponsorship not provided.

Company Brief

Wiz
Provides cloud security platform that detects and prioritizes risks across cloud infrastructure, workloads, and identities, enabling organizations to proactively identify and remediate threats across multi-cloud environments.
Industry: Cybersecurity
Company Size: Enterprise (1,001+ employees)
Growth: Scaleup
Headquarters: New York, United States
Founded: 2020
WebsiteLinkedIn