Application Security Engineer (Pentester)
Kuala Lumpur, Malaysia
Crypto.com
Over 100 million users buy, sell, and trade Bitcoin, Ethereum, NFTs and more on Crypto.com. Join the World's leading crypto trading platform.Responsibilities
- Discover security vulnerabilities through design review, source code review and penetration testing, either manually or by using automated tools, and follow up on the remediation process
- Participant in relevant agile scrum meetings and provide professional recommendations on the design of security controls, libraries, and/or protocols
- Conduct security-related training sessions
- Implement various security control verification and risk detection through automated scripts
- Provide support on application-level security monitoring, intrusion detection, and incident response
Requirements
- OSCP (or equivalent, such as CREST) is a MUST.
- A deep understanding of OWASP Top 10 and the ability to detect and address logic flaws are highly desirable.
- Minimum four years of experience in Web API testing and proficiency in using BurpSuite is preferred.
- Experience with Mobile App testing, comprehension of jailbreaking/rooting a device, API hooking, reverse engineering, and de-obfuscation is highly beneficial
- Fluency in spoken and written English is essential, and proficiency in Mandarin would be advantageous.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
7
2
0
Categories:
AppSec Jobs
PenTesting Jobs
Security Engineering Jobs
Tags: Agile APIs Application security Burp Suite CREST Incident response Intrusion detection Monitoring OSCP OWASP Pentesting Reverse engineering Scrum Vulnerabilities
Region:
Asia/Pacific
Country:
Malaysia
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information Security Officer jobsInformation System Security Officer jobsSenior Security Analyst jobsSenior Cybersecurity Engineer jobsSenior Cloud Security Engineer jobsSystems Engineer jobsSystems Administrator jobsInformation Security Manager jobsSenior Information Security Analyst jobsSenior Network Security Engineer jobsIT Security Engineer jobsCyber Security Specialist jobsChief Information Security Officer jobsIT Security Analyst jobsSecurity Consultant jobsSecurity Specialist jobsInformation System Security Officer (ISSO) jobsSenior Cyber Security Engineer jobsInformation Systems Security Engineer jobsCyber Threat Intelligence Analyst jobsSenior Information Security Engineer jobsThreat Intelligence Analyst jobsCyber Security Architect jobsSecurity Operations Analyst jobsSenior Product Security Engineer jobs
GDPR jobsSaaS jobsEncryption jobsBash jobsSplunk jobsTop Secret jobsSQL jobsEDR jobsFinance jobsMalware jobsThreat detection jobsRMF jobsIDS jobsSDLC jobsForensics jobsIPS jobsITIL jobsTerraform jobsDocker jobsIntrusion detection jobsCompTIA jobsActive Directory jobsDoDD 8570 jobsSOC 2 jobsOWASP jobs
SAP jobsCRISC jobsGIAC jobsUNIX jobsSANS jobsHIPAA jobsAnsible jobsCCSP jobsOSCP jobsJira jobsBanking jobsSOX jobsVPN jobsTCP/IP jobsSOAR jobsIT infrastructure jobsMITRE ATT&CK jobsMachine Learning jobsJavaScript jobsClearance Required jobsVMware jobsData Analytics jobsIndustrial jobsCISO jobsNIST 800-53 jobs