Application Security Engineer (Pentester)
Status
Singapore
Full time
Hybrid
Compensation is not specified
Role
Security Engineer
Description
Responsibilities
- Identify security vulnerabilities by conducting design reviews, source code reviews, and penetration testing, manually or utilizing automated tools, and oversee the mitigation process
- Participate in agile scrum meetings and offer expert insights on security control design, libraries, and protocols
- Deliver security-related training sessions
- Develop and implement security control verification and risk detection processes using automated scripts
- Assist in application-level security monitoring, intrusion detection, and incident response
Requirements
- Mandatory requirement: OSCP certification (or equivalent like CREST)
- Thorough understanding of OWASP Top 10 with the ability to identify and address logic flaws is highly regarded
- At least four years of experience in Web API testing and proficiency in utilizing BurpSuite is preferred
- Experience in Mobile App testing, understanding of jailbreaking/rooting a device, API hooking, reverse engineering, and de-obfuscation would be advantageous
- Proficiency in spoken and written English is essential; proficiency in Mandarin is considered beneficial
Skills Required

Сrypto.com
Website
Сrypto.comCompany size
Not specified
Location
United States
Description
Not specified
Status