Security Engineer

Дата размещения вакансии: 18.11.2024
Работодатель: Mayflower
Уровень зарплаты:
з/п не указана
Город:
Москва
Αρχιεπισκόπου Μακαρίου Γ'
Требуемый опыт работы:
От 3 до 6 лет

Experience: 5+ years
Work format: office, relocation to Cyprus, Limassol. (300 days of the sun on the island, Mediterranean coast, international job environment, and strong team).

Mayflower is a technology company that alters the entertainment industry to a new level of perception and engagement.

We are building the future of live entertainment. We believe that by providing people with the best and highest-quality live streaming experience in entertainment, we can tackle the world’s “problems” better, together!

Responsibilities:

  • Conduct comprehensive penetration tests on web applications, networks, APIs, and infrastructure to identify vulnerabilities;

  • Develop and execute exploitation techniques to demonstrate the impact of identified vulnerabilities;

  • Prepare detailed technical reports and executive summaries of assessment findings, including recommended remediation steps;

  • Collaborate with development and engineering teams to provide guidance on security best practices and remediation techniques;

  • Perform re-tests to validate that identified vulnerabilities have been successfully mitigated;

  • Stay current with emerging threats, attack techniques, and industry best practices;

  • Assist in threat modeling and risk assessment activities to identify areas of potential concern;

  • Develop and maintain custom scripts and tools to automate testing processes and improve efficiency.

Requirements:

  • Strong knowledge of common security standards, such as OWASP, SANS, and CIS;

  • Proficiency with penetration testing tools (e.g., Burp Suite, Metasploit, Nmap, Nessus);

  • Expertise in scripting or programming languages such as Python, JavaScript, Bash;

  • Minimum of 3 years of hands-on penetration testing experience;

  • Ability to document findings in a clear, concise manner, and provide actionable remediation recommendations;

  • Strong understanding of network protocols, system internals, and network security methodologies;

  • Experience with threat modeling and risk assessment techniques.

    Can be a plus:

  • Experience with mobile applications penetration test;

  • Knowledge of modern DevSecOps practices and secure coding principles;

  • Offensive Security Certified Professional (OSCP) or Offensive Security Certified Expert (OSCE). GIAC Penetration Tester (GPEN) or Certified Ethical Hacker (CEH).

Conditions:

  • A steep springboard for personal and professional growth;

  • Employment contract under EU law, fully white salary, work visa for 3 years, company support in obtaining work visas for family members;

  • Full relocation package (tickets to Limassol for you and your family, taxi to the office, apartments for the first month at our expense);

  • Developing your professional competencies through courses and/or conferences;

  • Language courses, mindfulness webinars, corporate discounts on Coursera and other platforms, corporate incentive programs;

  • Free catering in the office, and a free cafeteria with a health bar;

  • The equipped office in the center of the city;

  • Medical insurance for the whole family, mobile package, support with the purchase of a car, and covering of school/kindergartens expenses;

  • New MacBook / iMac;

  • The possibility of self-realization, and the possibility to influence technical decisions making;

  • Big friendly community, IT international teams, corporate events, team buildings, and hackathons.

​​​​​​​​​​​​​​​​​​​​​