Product Security Engineer/Pentester

Deadline: 11 December 2021

Employment term: Permanent

Category: IT security/Networks

Job type: Full time

Location: Yerevan

Job description:

We are looking for an midlevel Product Security Engineer/Pentester.

The successful candidate will have an essential contribution in making 10Web's products and infrastructure reach and sustain top-level secure. Your deep knowledge of cutting-edge technologies, web applications, vulnerabilities, and exploits will help you work with the information security, engineering and product teams as well as external partners.

Job responsibilities

  • Regularly scan 10Web infrastructure, applications and products for vulnerabilities and provide their solutions in close collaboration with the engineering team.

  • Analyze and validate security reports, assess impacts of vulnerabilities and their priorities and own their fixing processes. Work with external reporters and third-party partners on their findings.

  • Research, identify, evaluate and come up with the best solutions for security findings for 10Web environments.

  • Work closely with engineering teams by performing security design reviews, threat modeling and penetration tests.

  • Regularly scan 10Web infrastructure, applications and products for vulnerabilities and provide their solutions in close collaboration with the engineering team.

  • Build and implement tools and services to automate detection of security issues.

  • Investigate abnormal activities in production.

  • Provide security reports on a regular basis to the company stakeholders.

  • Contribute to developing policies, processes and trainings for engineers and other team members.

Required qualifications

  • BS in Mathematics, Computer Science, Software Engineering or a related field

  • Strong knowledge of and experience with databases, operating systems, web applications and browsers.

  • Good knowledge of at least one programming language.

  • Strong knowledge of vulnerabilities, exploits, their databases and analytical tools.

  • Strong knowledge of authentication and authorization mechanisms and their practical implementation.

  • Good knowledge and experience in penetration testing and vulnerability scanning tools.

  • Familiarity with impact of security and privacy issues in a broader context of application architecture, product management and business development.

  • Familiarity with security- and privacy-related legislation.

  • Good knowledge of written English language

Additional Desired Qualifications:

  • Proven working experience as an IT security engineer.

  • Advanced knowledge of programming languages.

Required candidate level: Mid level

Additional information

Interested individuals are requested to send their CV to [email protected]. Please, clearly mention in the subject line: "Product Security Engineer". Only shortlisted candidates will be considered․ Thanks.  

Please clearly mention that you have heard of this job opportunity on staff.am

Professional skills

ASP.NET MVC

Share this job via your favorite social media channel.

10Web Working Principles

At 10Web, we follow 7 working principles that ensure a productive and inspiring working environment for our team as well as an incredible experience for our customers.

WEAR THE CUSTOMER'S SHOES

We trust that our customers know their needs best, so we set and accomplish goals with their perspective in mind.

MAKE IT FAST

We know customers don’t like waiting too long, so we deliver high-quality products really fast.

MAGIC IN USE

Every detail matters. It’s the attention to every potion ingredient that makes magic happen!

PROGRESS IS BETTER THAN PERFECTION

We’re not afraid of making mistakes. Instead, we move forward, innovate, experiment, and continuously learn and apply. 

HAVE A POINT OF VIEW

Having a point of view about the things that matter and expressing it increases the chance of creating meaningful and impactful change exponentially.

BE HONEST IN OUR DECISIONS

Data and facts drive our actions. We take the news as it is, regardless of whether it’s good or bad.  

BE A TEAM PLAYER

Share experience and knowledge to empower each team member, ultimately making them better at what they do. 

 

View more

View Less

10WEB AUTOMATED WORDPRESS PLATFORM

Introducing 10Web, an Automated WordPress Platform powered by Google Cloud. At 10Web we believe everyonewhether they’re a tech expert or a newbie, has the right to host, build, and manage professional websites, and we empower them to do just that.

 

View more

View Less

#WorkFromHome. The Best Experience of 10Web

The reaction of 10Web to COVID19

 

2020 changed the world, and 10Web changed with it. Learn how we adapted to the new reality by implementing big changes in our workplace, while still keeping our team motivated, productive, and empowered.

 

View more

View Less

Benefits

Medical insurance
Teambuilding and corporate events
Family medical insurance
Local and online training package
Complimentary tea, coffee and refreshments
Lucky Carrot
Flexible working schedule
Stock options
"Baby born" package
Day off
Happy Hour
Sport package
Special day-offs
Gamezone or fun activities

Testimonials

Contact details

Website https://10web.io/

Address: 30/3 Gyulbenkyan st., Yerevan, Armenia

Find 10Web on social media