Perform black-box penetration testing and code reviews of our flagship services, product offerings and partners apps.
Implement the technology organization's security and privacy initiatives by participating in design reviews and threat modeling.
Participate in our incident response and vulnerability remediation efforts.
Perform ground breaking applied research on new attacks and present new findings to both internal and external audiences.
Evaluate application security tools for internal consumption.
Develop new automation and tooling to improve our detection and prevention capabilities.
Develop secure code practices and provide hands-on training to developers and quality engineers.
Requirements
Strong background in Computer Science, Electrical Engineering, Cyber Security or related discipline
Must be located in North America
Basic knowledge of security concepts based on relevant courses, self-learning or past internships.
Familiarity with identifying and protecting against web application and web service security vulnerabilities including those found in the OWASP Top 10 and CWE Top 25.
Relevant development experience in several of these languages: Java, JavaScript / NodeJS, Ruby, .NET, C / Objective C, PHP, Python.
Familiarity with the browser security model, crypto, and network security.
Solid understanding of Application and Networking fundamentals
Attacker mentality: Passion for breaking all the things unbreakable.
Benefits
time off programs
medical
dental
vision
mental health support
paid parental leave
life and disability insurance
401(k)
employee stock purchasing program
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.