TL;DR
Application Security Engineer: Conducting security-focused code reviews using the hirify.global Platform and supporting customer's AppSec and Dev Teams with mitigation advice for identified vulnerabilities. Focus on researching and creating proof-of-concept based on identified vector attacks and analyzing applications.
Location: Work from office/home. Some international travel required (less than 10%)
Company
hirify.global is the leader in application security and ensures that enterprises worldwide can secure their application development from code to cloud.
What you will do
- Conduct security-focused static code and software composition analysis on top of a broad range of development languages and open-source libraries.
- Support customer AppSec/Dev teams with mitigation strategy/advice for identified vulnerabilities.
- Create proofs-of-concept that can illustrate a given vulnerability exploitability.
- Support AppSec/Dev teams in analyzing applications.
Requirements
- Bachelor's degree in computer science or another highly technical scientific discipline.
- Experience in one or more high-level programming languages like Java, .Net, Go, Python, etc.
- Firm understanding of large enterprise-grade systems and architectures, as also as modern development paradigms.
- Experience in security-testing applications covering some market standards AppSec Frameworks like OWASP Web/API/Mobile Top 10, PCI-SSD, etc.
- A proactive approach to spotting problems, areas for improvement, and performance bottlenecks.
- Fluent in English (++ for other languages).
Culture & Benefits
- Great work environment and professional development.
- Challenging careers and competitive compensation.
- Great work-life balance.
- Great benefits and perks throughout the year.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →