Senior Offensive Security Specialist

Bullish

Hong Kong, Hong Kong
Web application penetration testing
Source code reviews
Cloud penetration testing
The OSVM team provides Bullish Global with the capabilities to ensure that our products and services are secure and meet the security obligations expected by our customers and regulators

Job Summary

  • The OSVM team provides Bullish Global with the capabilities to ensure that our products and services are secure and meet the security obligations expected by our customers and regulators.
  • This role will work closely with product and engineering teams to deliver secure software, including delivering a wide range of security capabilities across a modern technology stack.
  • We are seeking a Senior Offensive Security Specialist to join our Offensive Security team to help secure Bullish Global, a key player within an elite security team delivering industry-leading Crypto services.

Matching Summary

The OSVM team provides Bullish Global with the capabilities to ensure that our products and services are secure and meet the security obligations expected by our customers and regulators.

Skills & Requirements

Must-have

  • Web application penetration testing
  • Source code reviews
  • Cloud penetration testing
  • Mobile and API penetration testing
  • Red-teaming activities
  • Exploit vulnerabilities
  • Develop security tools and automation

Nice-to-have

  • Strong self-starter
  • Ability to operate independently
  • Desire to break into things
  • External communications experience
  • Conference presentations

Key Requirements

  • 7+ years of relevant experience
  • Senior-level penetration testing experience
  • Application security assessments
  • Conducting design code reviews
  • Offensive security methodologies
  • Familiarity with attack tools
  • Knowledge of OWASP Top 10 and SANS CWE 25
  • Mobile application assessments (iOS and Android)
  • Web Services API assessments
  • Proficiency in multiple programming languages
  • Solid understanding of network and protocol basics
  • Familiarity with basic cryptographic concepts
  • Experience with software development practices
  • Experience with public cloud concepts
  • Proficiency with basic Linux systems
  • OSCP, OSCE or OSWE certifications

Work Rights

Not specified

Tailored Resume

Cover Letter