Web Security Consultant – Trung tâm đào tạo Toidayhoc

Web Security Consultant

Công ty: ECQ

Địa chỉ: 8Bis Hoàng Hoa Thám, Phường 07, Quận Bình Thạnh, Thành phố Hồ Chí Minh

Your role & responsibilities

  1. Perform security assessment of Web Application via security audit, vulnerability assessment, penetration testing, application vulnerability analysis and source code reviewing. 
  2. Research new attacking techniques and cutting edge security topics. 
  3. Develop/Write exploit or use public exploit to gain access to the web application and the system. 
  4. Sharing knowledge with internal team. 
  5. Document technical issues and findings identified during the security assessment. 
  6. Deliver professional onsite and remote briefings to clients based on results of security assessments. 
  7. Deliver presentation and training to both technical and non-technical audiences. 
  8. Assist clients with questions regarding vulnerabilities and the remediation efforts involved in eliminating them. 
  9. Improve customer deliverable through report template and procedural updates. 
  10. Write scripts to automate assessment tasks and improve work efficiency. 
  11. Improve knowledge and skill to become a red teamer.

Your skills & qualifications

Technical skills and Experience:

  1. Minimum 2 years of direct security experience. Fresh graduates are welcomed if the answers are Yes to following items. 
  2. Strong knowledge in web application architecture (including component, model, framework, library, …) 
  3. Strong knowledge in web application attack tactics/techniques/procedures. 
  4. Knowledge in web application defenses, best practice in security. 
  5. Familiar with various security scanners including port scanner, directory scanner, vulnerability scanner 
  6. Familiar with Using security pen-test tools such as Burp Suite, Nuclei …
  7. Familiar with Writing security template scan such as Bcheck, Nuclei …. Templates.
  8. Proficient in at least one of the following programming/scripting languages: Python, Golang, Perl, PHP, C#, Java, JavaScript and Bash. Other programming languages can be considered. 
  9. Practical knowledge in exploit writing/development.

General skill:

  1. Self-Learn.
  2. English (at least reading and writing skill).
  3. Presentation.

Benefits for you