Crypto.com

Application Security Engineer (Pentester)

Taipei, Taiwan

Not SpecifiedCompensation
Mid-level (3 to 4 years)Experience Level
Full TimeJob Type
UnknownVisa
Cybersecurity, Fintech, Crypto & Web3Industries

Requirements

Candidates must possess an OSCP (or equivalent, such as CREST) certification, demonstrating a deep understanding of security vulnerabilities and penetration testing methodologies. A strong knowledge of the OWASP Top 10 and the ability to detect and address logic flaws is highly desirable, along with minimum four years of experience in Web API testing and proficiency in using BurpSuite. Experience with Mobile App testing, comprehension of jailbreaking/rooting a device, API hooking, reverse engineering, and de-obfuscation is also beneficial.

Responsibilities

The Application Security Engineer (Pentester) will discover security vulnerabilities through design review, source code review, and penetration testing, either manually or by using automated tools, and follow up on the remediation process. They will participate in relevant agile scrum meetings and provide professional recommendations on the design of security controls, libraries, and/or protocols. The role also involves conducting security-related training sessions, implementing various security control verification and risk detection through automated scripts, and providing support on application-level security monitoring, intrusion detection, and incident response.

Skills

OSCP
CREST
OWASP Top 10
BurpSuite
Web API testing
Mobile App testing
Jailbreaking
Rooting
API hooking
Reverse engineering
De-obfuscation
Penetration testing
Source code review
Design review
Automated scripts
Intrusion detection
Incident response

Crypto.com

Cryptocurrency trading and financial services platform

About Crypto.com

Crypto.com provides a platform for trading and managing cryptocurrencies, catering to over 100 million customers worldwide. Users can buy, sell, and store various cryptocurrencies while benefiting from services like transaction processing and card issuance. The platform generates revenue primarily through transaction fees and premium services, ensuring a secure and user-friendly experience. What sets Crypto.com apart from its competitors is its strong focus on regulatory compliance, security, and privacy certifications, which builds trust among users. The company's goal is to accelerate cryptocurrency adoption, aiming to have 'Cryptocurrency in Every Wallet™' and to support builders and entrepreneurs in creating a more equitable digital ecosystem.

Key Metrics

Central and Western District, Hong KongHeadquarters
2016Year Founded
$24.3MTotal Funding
SERIES_ACompany Stage
Fintech, Crypto & Web3Industries
5,001-10,000Employees

Benefits

Competitive compensation package.
Huge responsibilities from Day 1: Be the owner of your own learning curve. The possibilities are limitless and depend on you
International company and team

Risks

Regulatory challenges in South Korea could pose compliance risks.
Integration of traditional financial instruments may expose new regulatory risks.
Expansion into Dubai involves navigating complex regulatory landscapes.

Differentiation

Crypto.com offers the world's largest crypto card program with Visa.
The company integrates traditional finance with crypto through strategic acquisitions.
Crypto.com is a leader in regulatory compliance, security, and privacy certifications.

Upsides

Acquisition of Orion expands product offerings in the UAE's crypto-friendly environment.
Growing interest in crypto-based loyalty programs enhances Visa card offerings.
Eco-friendly blockchain solutions align with Crypto.com's sustainability goals.

Land your dream remote job 3x faster with AI