Senior Security Engineer (AppSec)
HelloFreshabout 4 hours ago
Warsaw, Poland
Senior / Mid Level
Responsibilities
- Perform network and cloud penetration testing, web and mobile application security assessments, and source code reviews.
- Conduct specialized threat analysis, wireless network assessments, and social-engineering simulations.
- Develop comprehensive technical reports and presentations for technical stakeholders and executive leadership.
- Communicate findings and remediation strategies effectively to primary stakeholders.
- Utilize formal project management methodologies for planning, tracking, and reporting.
- Safely employ attacker tools, tactics, and procedures to identify vulnerabilities.
- Develop custom scripts, tools, and methodologies to enhance the Vulnerability Management Program.
Requirements
- 4-7 years of professional experience in security assessments and offensive security.
- Thorough technical understanding of network protocols, application architecture, and security flaws.
- Proficiency in a modern scripting language such as Python or Go.
- Relevant offensive security certifications like OSWE or GWAPT.
- Active participation in web hacking challenges or public bug bounty programs.
- Experience in developing tools or plugins for security testing.
- Ability to develop or modify exploits and associated tools.
- Expertise in performing source code reviews for security flaws.
- Strong command of industry-standard security testing tools.
Benefits
- Collaborate with experienced engineers and product partners across international teams.
- Build and operate modern systems at a global scale impacting millions of customers.
- Drive best practices and influence architecture/design in a product-led setup.
- Engage in end-to-end development and delivery from problem definition to production.
- Access to a modern workspace with facilities including showers and refreshments.
Tech Stack
GoPython
Categories
Security