[Remote] セキュリティエンジニア(レッドチーム) at PayPal

Remote

PayPal Logo
Not SpecifiedCompensation
Mid-level (3 to 4 years)Experience Level
Full TimeJob Type
UnknownVisa
Fintech, SoftwareIndustries

Requirements

  • いずれか2つ以上の経験がある方:セキュリティベンダー等での脆弱性診断/ペネトレーションテストに関する3年以上の業務経験
  • 下記システムに対するツールおよび手動による脆弱性診断/ペネトレーションテスト経験、および技術的なコンサルティング経験(監査除く):Webアプリケーション、プラットフォーム(主にAWS)、スマートフォンアプリケーション(iOS/Android/watchOS)
  • システム開発経験、およびシステムもしくは、インフラにおけるセキュリティ対策実装経験
  • クラウドサービス(AWS、GCP など)に関する理解、構築/運用経験
  • プログラミング言語を詳しく理解(プログラミング言語内部の特徴を突いたような高度な脆弱性などを理解するための知識)している場合、診断の経験が少なくてもスキルを身に付ける希望があれば歓迎
  • 日本語ネイティブ同等のレベル
  • セキュアコーディングの知識・実装経験 (あると望ましい)
  • ペネトレーションテスト技術に関する資格の保有(GIAC、OSCP 等)(あると望ましい)
  • CTFの参加/ランキングの実績、脆弱性研究 (あると望ましい)
  • NIST サイバーセキュリティフレームワークに関する知見 (あると望ましい)
  • 英語力(主に日常会話レベルの読み書き。会話力も高ければ活躍する機会はあります。)(あると望ましい)

Responsibilities

  • 手動を含めた高度な脆弱性診断、ペネトレーションテスト
  • サイバー脅威シナリオの作成、シナリオに基づくレッドチーム演習の計画立案/実施/評価、各種レポート作成
  • 攻撃/脆弱性の研究、脅威インテリジェンスを活用したサイバーレジリエンス強化
  • 社内セキュリティ/製品セキュリティのルール策定、評価、改善
  • 脆弱性マネジメント(対策支援、修正確認、危険度デモンストレーション、修正トラッキング等)
  • 技術的なセキュリティ施策、設計のコンサルテーション、提案、分析、立案
  • サービスやキャンペーンにおけるセキュリティ評価

Skills

Key technologies and capabilities for this role

Vulnerability AssessmentPenetration TestingCyber Threat IntelligenceAWSiOSAndroidSecurity ArchitectureSecure CodingNIST Cybersecurity Framework

Questions & Answers

Common questions about this position

What is the work arrangement for this position?

The position offers a Hybrid Workstyle, allowing work from the office, home, or satellite office, subject to the organization's rules and business instructions.

What are the required experience and skills for this role?

Candidates need at least 2 of the following: 3+ years in vulnerability assessment/penetration testing at a security vendor, experience with Web apps, AWS platforms, or mobile apps (iOS/Android/watchOS) including manual testing and consulting, system development with security implementation, or cloud service (AWS/GCP) understanding and operations. Japanese at native level is required, and deep programming language knowledge is welcomed even with less testing experience.

What is the compensation structure?

The position is year-based salary (including some fixed overtime), determined by experience, skills, performance, and contribution per company regulations, with annual review and special one-time incentives based on company performance and individual contribution.

What benefits are offered?

Benefits include social insurance (health, pension, employment, workers' compensation), corporate defined contribution pension plan, 14 days annual paid leave (pro-rated first year, usable from start date), and 5 personal leave days annually (3-5 first year) for personal, family, or pet needs.

What makes a strong candidate for this security engineer role?

Strong candidates have 2+ required experiences like penetration testing or cloud security, plus desirable skills such as secure coding, certifications (GIAC/OSCP), CTF experience, NIST framework knowledge, or English proficiency, and align with PayPay's 5 senses values.

PayPal

Digital payments platform for various clients

About PayPal

PayPal offers a digital payments platform that allows users to conduct online transactions, mobile payments, and peer-to-peer transfers. It generates revenue primarily through transaction fees charged to merchants and provides various services for individual consumers, small to medium-sized businesses, and large enterprises. PayPal distinguishes itself from competitors by offering a wide range of secure financial services tailored to different client needs. The company's goal is to create a convenient and secure digital payments experience for all users.

San Jose, CaliforniaHeadquarters
1998Year Founded
$188.7MTotal Funding
IPOCompany Stage
Fintech, Financial ServicesIndustries
10,001+Employees

Benefits

A Stanford Navigator helps employees research providers and health conditions, and make informed decisions about health care
Advance Medical is available for all employees who are looking for a world-class specialist to provide an expert medical opinion for treatment plans
Stock Purchase Plans
Retirement Savings and Pension Plans
Stock Awards
Life Insurance and Disability Benefits
Paid Time Off
Four Weeks Paid Sabbatical for every Five Years of Service
Educational and Professional Development benefits
Matching Gifts & Volunteerism Opportunities
Matching Gifts
Skills-Based Volunteering
Green Teams
GIVE Teams

Risks

Lawsuits over Honey's practices could damage PayPal's reputation.
Allegations of racial discrimination may lead to legal challenges.
Stablecoin expansion may expose PayPal to regulatory scrutiny.

Differentiation

PayPal Ventures accelerates market entry for innovative financial solutions.
PayPal offers a versatile platform for diverse clients, from individuals to large enterprises.
PayPal's revenue model includes transaction fees, currency conversion, and financial services.

Upsides

Increased stablecoin adoption enhances PayPal's digital payment capabilities.
Growing DeFi interest boosts PayPal's integration with blockchain systems.
New 'Money Pooling' feature taps into the expanding split payments market.

Land your dream remote job 3x faster with AI