Application Security Engineer (Pentester)
Status
Kuala Lumpur, Malaysia
Full time
Hybrid
Compensation is not specified
Role
Security Engineer
Description
Responsibilities
- Discover security vulnerabilities by conducting design reviews, source code reviews, and penetration testing either manually or using automated tools. Follow up on remediation processes.
- Participate in agile scrum meetings and offer professional advice on designing security controls, libraries, and protocols.
- Conduct security training sessions for relevant teams.
- Implement security control verification and risk detection through automated scripts.
- Provide support for application-level security monitoring, intrusion detection, and incident response.
Requirements
- Possession of OSCP (or equivalent like CREST) is mandatory.
- Strong understanding of OWASP Top 10 and the ability to detect and address logic flaws are highly preferred.
- Minimum of four years of experience in Web API testing with proficiency in using BurpSuite.
- Experience in Mobile App testing, including knowledge of jailbreaking/rooting a device, API hooking, reverse engineering, and de-obfuscation, is highly advantageous.
- Fluency in verbal and written English is required, proficiency in Mandarin is a plus.
Skills Required

Сrypto.com
Website
Сrypto.comCompany size
Not specified
Location
United States
Description
Not specified
Status