Application Security Engineer / Code Reviewer
At Crypto.com, our commitment to user security is led by a well-experienced Security Team, consisting of skilled cybersecurity professionals from around the world. The team is responsible for overseeing the Security, Privacy, and Security Compliance initiatives of the company.
The team has members who hold international patents for technologies incorporated into our security framework. Guided by a distinguished CISO, recognized in the Forbes Technology Council and listed among the Global Top 100 CISOs, our team upholds industry standards with certifications like ISO27001, ISO27701, ISO22301, PCI:DSS 3.2.1 (Level 1), NIST Tier 4, SOC 2 Type II, and the MPI License from Singapore MAS. Reporting directly to the CEO, the Chief Information Security Officer highlights the significance of security within our organizational structure.
Our Security Team prizes both qualifications and hands-on experience, valuing quick adaptability and teamwork to proactively address evolving challenges in the crypto world. As a highly targeted company for hackers worldwide, especially in the realm of cryptocurrency, keeping our systems secure and protected is of utmost importance.
To match the rapid pace of software development, our company is expanding its Application Security and DevSecOps team and seeking talented security professionals to join us in safeguarding the company.
Responsibilities
- Identify security vulnerabilities through design reviews, manual code reviews, and overseeing the remediation process
- Utilize automated tools to pinpoint security vulnerabilities in code and systems
- Participate in agile scrum meetings and offer expert insights on security controls, libraries, and protocols
- Conduct sessions on secure coding training
- Develop and implement security control verification, risk detection automation systems, and internal security libraries
- Provide assistance in application-level security monitoring, intrusion detection, and incident responses
Requirements
- Minimum 5 years of software development expertise, focusing on either Server-Side Java or Rails
- Experience in mobile app development is advantageous
- Solid background in either security code review or software development; additional consideration for more experienced candidates
- Proficient in the software development lifecycle, CI/CD tools, cloud, Kubernetes, and various tech stacks
- Preferably holding certifications such as CISSP, CSSLP, OSWE, familiar with OWASP Top 10
- Strong proficiency in spoken and written English, Mandarin language skills are a plus
Benefits
- Work in a well-structured team environment conducive to learning how to protect an enterprise and deliver secure applications promptly
- Encounter new challenges daily while promoting work-life balance
- Gain exposure to cutting-edge industry technologies
- Flexible work settings with adaptable remote working arrangements
Life @ Crypto.com
- Encouraged to pursue significant opportunities within a dynamic and supportive team
- Transformational work environment that encourages innovative solutions
- Internal growth opportunities focusing on personal and professional development
- Collaborative culture aimed at achieving the common objective of cryptocurrency accessibility
If you are prepared to embark on your future path with us, we welcome your application.
Additional Benefits
- Competitive salary and comprehensive medical insurance
- Generous annual leave entitlement and work flexibility policies
- Career advancement opportunities through internal mobility programs
- Work perks including company-issued visa card and various regional benefit packages
Learn more about Crypto.com, a leading global cryptocurrency platform founded in 2016. We are committed to equal opportunities, promoting diversity and inclusion within our workplace. Personal data provided by applicants will solely be used for recruitment purposes.
Kindly note that only shortlisted candidates will be contacted.