Application Security Engineer (Pentester)
At Crypto.com, the Security Team is dedicated to ensuring user security, led by a team of experienced cybersecurity professionals who oversee Security, Privacy, and Security Compliance initiatives. The team comprises cybersecurity experts with international patents for technologies incorporated into the security architecture. Reporting to a distinguished CISO recognized by Forbes Technology Council, the team upholds industry standards with certifications including ISO27001, ISO27701, ISO22301, PCI:DSS 3.2.1 (Level 1), NIST Tier 4, and SOC 2 Type II, and holds the MPI License from Singapore MAS. The Chief Information Security Officer reports directly to the CEO, emphasizing security's importance within the organization's structure.
The Security Team values both qualifications and experience, prioritizing hands-on experience, quick thinking, and ongoing learning to meet the evolving challenges in cryptocurrency. The team is focused on adaptability and teamwork to anticipate threats and protect the user base proactively.
Responsibilities:
- Identify security vulnerabilities through design review, manual code review, and overseeing remediation processes
- Utilize automated tools for identifying security flaws in code/system
- Participate in agile scrum meetings to provide security control design recommendations
- Conduct secure coding training
- Develop automated systems for security control verification and risk detection
- Implement security-related libraries for internal use
- Support application-level security monitoring, intrusion detection, and incident response
Requirements:
- 1-4 years of software development experience in Server-Side development OR in web-API and mobile app penetration
- Strong understanding of OWASP Top 10 and ability to address logic flaws
- Knowledge of software development lifecycle, CI/CD tools, cloud, Kubernetes, and various technology stacks
- Preferred security certificates such as OSCP, CREST, CISSP, and CLSSP
- Proficiency in spoken and written English, with Mandarin language skills as a bonus
Life at Crypto.com:
- Encouragement to think big and explore new opportunities within a supportive team
- Proactive and transformational work environment fostering innovative solutions
- Focus on personal and professional growth with internal skill development opportunities
- Collaborative culture where colleagues support each other and work towards common goals
Benefits:
- Competitive salary
- Comprehensive medical insurance with coverage for dependents
- Generous annual leave, including birthday and work anniversary allowances
- Flexibility in work arrangements with hybrid or remote setups
- Internal mobility program for career advancement opportunities
- Special work perks upon joining Crypto.com
About Crypto.com:
Crypto.com, established in 2016, serves millions of customers globally and aims to make cryptocurrency accessible to all through innovation and a secure environment. With a commitment to privacy, security, and compliance, Crypto.com is dedicated to empowering individuals and businesses in the digital ecosystem.
Note: Crypto.com is an equal opportunities employer that values diversity, inclusion, and transparency in its recruitment process. Personal data provided by applicants will be used solely for recruitment purposes. Only shortlisted candidates will be contacted.
