We are looking for a part time security expert to review web and mobile applications.
Responsibilities:
Perform penetration tests and security reviews for core applications and APIs
Hunt for security flaws in web and mobile software
Develop custom software to test, monitor and enforce security across our applications
Research security vulnerability disclosures and design and propose appropriate mitigations
Requirements:
A great candidate will have many of the following:
Experience with threat modeling and web application security assessments
Experience applying security engineering practices
Experience with a variety of security testing methodologies, including fuzzing and source code analysis
Experience with secure networking best practices
Knowledge of web application vulnerabilities and attack methods including CSRF, XSS, SQL Injection etc.
Experience with high throughput real-time systems and/or content delivery networks preferred
Development experience using Python, Go, Ruby or C/C++ a huge plus
Extra tags: infosec, analyst

