Application Security Engineer (Pentester)
Chengdu, China +4
Full time
Hybrid
Compensation is not specified
Role
Security Engineer
Description
Responsibilities
- Identify security vulnerabilities through examinations such as design review, source code review, and penetration testing, manually or using automated tools, and oversee the resolution process
- Actively participate in agile scrum meetings and offer expert advice on security control design, libraries, and protocols
- Conduct training sessions focused on security-related topics
- Execute security control verification and risk assessment through automated scripts
- Assist in application-level security monitoring, intrusion detection, and incident response
Requirements
- Possession of OSCP certification (or equivalent like CREST) is a strict requirement.
- Profound knowledge of OWASP Top 10 and the capability to identify and resolve logic flaws are highly sought after.
- At least four years of Web API testing experience and proficiency in utilizing BurpSuite is preferred.
- Background in Mobile App testing, understanding of jailbreaking/rooting devices, API hooking, reverse engineering, and de-obfuscation is highly advantageous
- Fluency in spoken and written English is necessary, while proficiency in Mandarin is a plus.
We may utilize artificial intelligence tools for Resume/CV analysis aligned with the job requirements. These tools aide our recruitment team in assessing applications more efficiently but do not replace human judgment. Final hiring decisions are made by humans evaluating tool insights and other pertinent information. For more information on how your personal data is processed, please contact us.
Skills Required

Сrypto.com
Website
Сrypto.comCompany size
Not specified
Location
United States
Description
Not specified