Application Security Engineer (Pentester)

Responsibilities
  • Discover security vulnerabilities through design review, source code review and penetration testing, either manually or by using automated tools, and follow up on the remediation process
  • Participant in relevant agile scrum meetings and provide professional recommendations on the design of security controls, libraries, and/or protocols
  • Conduct security-related training sessions
  • Implement various security control verification and risk detection through automated scripts
  • Provide support on application-level security monitoring, intrusion detection, and incident response

  • Requirements
  • OSCP (or equivalent, such as CREST) is a MUST. 
  • A deep understanding of OWASP Top 10 and the ability to detect and address logic flaws are highly desirable. 
  • Minimum four years of experience in Web API testing and proficiency in using BurpSuite is preferred. 
  • Experience with Mobile App testing, comprehension of jailbreaking/rooting a device, API hooking, reverse engineering, and de-obfuscation is highly beneficial
  • Fluency in spoken and written English is essential, and proficiency in Mandarin would be advantageous.

  • Crypto.com is on a mission to accelerate the world’s transition to cryptocurrency. Through the Crypto.com Mobile App and Exchange, you can buy 250+ cryptocurrencies and stablecoins, such as Bitcoin (BTC), Ethereum (ETH), Cardano (ADA), Solana (SOL) and...

    View all jobs
    Get hired quicker

    Be the first to apply. Receive an email whenever similar jobs are posted.

    Ace your job interview

    Understand the required skills and qualifications, anticipate the questions you may be asked, and study well-prepared answers using our sample responses.

    Application Security Engineer Q&A's
    Report this job
    Apply for this job