Intermediate Vulnerability Research Engineer, Application Security Testing:Vulnerability Research

vor 1 Tag


Central Coast, Österreich Tbwa ChiatDay Inc Vollzeit

Intermediate Vulnerability Research Engineer, Application Security Testing: Vulnerability ResearchRemoteGitLab is an open core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more than 100,000 organizations.
Our mission is to enable everyone to contribute to and co-create the software that powers our world.
When everyone can contribute, consumers become contributors, significantly accelerating the rate of human progress.
This mission is integral to our culture, influencing how we hire, build products, and lead our industry.
We make this possible at GitLab by running our operations on our product and staying aligned with our values.An overview of this roleYou'll be at the forefront of our R&D efforts within our Engineering department in this role.
You'll be expected to focus on improving GitLab's security detection capabilities in our Application Security Testing stage groups.
This includes SAST, DAST, Secret Detection and Composition Analysis, and future products.Vulnerability Research Engineers perform research to analyze software vulnerabilities, exploitation methods, track new vectors, discover novel methods and approaches in software security, and apply this knowledge to the security products and GitLab itself.What You'll DoCarry out research and come up with proofs of concepts that affect the security products and GitLab, including SAST, DAST, Secret Detection and Composition Analysis.Curate advisory databases for dependency scanning.
This is a semi-automatic task that includes auditing/reviewing, editing existing and adding new advisories to the database while, at the same time, trying to automate repetitive tasks away as much as possible.Build/develop benchmarks to test the efficacy of scanning and detection products to constantly improve quality of results.Measure and improve the efficacy of scanning and detection products over time.Write detailed technical reports.Assess security product output results and conduct root cause analysis to improve efficacy.Respond to internal and external customer inquiries on vulnerabilities and related topics.What You'll Bring3+ years of direct experience in developing and improving vulnerability detection products in the context of web security.Knowledge of the vulnerability management process.Knowledge of software composition analysis (SCA) and software supply chain ecosystems.Experience with source code analysis, static application security testing (SAST), and dynamic application security testing (DAST) along with benchmarking experience testing the efficacy of these products.Knowledge about compilers, compiler design and construction.Experience developing automated web security testing/analysis tools.You have a passion for security and open source, and enjoy collaborating with cross-functional teams.Salary Range: $98,000 - $210,000 USDCountry Hiring Guidelines: GitLab hires new team members in countries around the world.
All of our roles are remote; however, some roles may carry specific location-based eligibility requirements.GitLab is proud to be an equal opportunity workplace and is an affirmative action employer.
GitLab's policies and practices relating to recruitment, employment, career development and advancement, promotion, and retirement are based solely on merit, regardless of race, color, religion, ancestry, sex (including pregnancy, lactation, sexual orientation, gender identity, or gender expression), national origin, age, citizenship, marital status, mental or physical disability, genetic information (including family medical history), discharge status from the military, protected veteran status (which includes disabled veterans, recently separated veterans, active duty wartime or campaign badge veterans, and Armed Forces service medal veterans), or any other basis protected by law.
GitLab will not tolerate discrimination or harassment based on any of these characteristics.#J-18808-Ljbffr



  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    Intermediate Vulnerability Research Engineer, Application Security Testing: Vulnerability Research Remote GitLab is an open core software company that develops the most comprehensive AI-powered DevSecOps Platform, used by more than 100,000 organizations.Our mission is to enable everyone to contribute to and co-create the software that powers our world.When...


  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    Vulnerability Researcher Location: Canberra / Sydney - Hybrid Salary: $200k - $250k+ Super Our client is responsible for devising and implementing a sophisticated commercial cyber toolkit, reverse engineering, bug detection, and cracking exploits in devices / operating systems.Essential Functions: AU Citizenship - Ability to obtain a Security...


  • Central Coast, Österreich Buscojobs Vollzeit

    Security Engineer II, Amazon Security, Vulnerability Management and Remediation OperationsJob ID : 2858551 | Amazon Support Services Pty Ltd Embark on a Mission to Fortify Amazon's Defenses as a Security Engineer with the Vulnerability Management & Remediation Operations team!Amazon Security is seeking a Security Engineer to join our Vulnerability Management...


  • Central Coast, Österreich Asbestos And Dust Diseases Research Institute Vollzeit

    Over the past decade, Australia has experienced a troubling increase in silicosis cases, particularly among workers involved in kitchen benchtop fabrication, as well as miners and tunnel builders.Inhalation of silica dust particles can lead to lung scarring, known as silicosis, which may necessitate lung transplants or even result in premature...


  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    Security Engineer II, Amazon Security, Vulnerability Management and Remediation Operations Job ID : 2858551 | Amazon Support Services Pty Ltd Embark on a Mission to Fortify Amazon's Defenses as a Security Engineer with the Vulnerability Management & Remediation Operations team!Amazon Security is seeking a Security Engineer to join our Vulnerability...


  • Central Coast, Österreich Buscojobs Vollzeit

    DESCRIPTIONEmbark on a Mission to Fortify Amazon's Defenses as a Security Engineer with the Vulnerability Management & Remediation Operations team!Amazon Security is seeking a Security Engineer to join our Vulnerability Management and Remediation Operations (VMRO) team in Crystal City, Virginia.The VMRO team is responsible for discovering, assessing,...


  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    This job offer is not available in your country.About us We are Protecht - a fast growth Governance, Risk & Compliance (GRC) SaaS business.We provide world-class enterprise risk management, compliance, training, and advisory services to over 350 customers across various industry sectors through our offices across APAC, USA & Europe.Our cloud-based SaaS...


  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    Protecht We offer enterprise risk management (ERM, GRC) software to help your organisation achieve its objectives.Contact us to learn more about our solutions.About usWe are Protecht - a fast growth Governance, Risk & Compliance (GRC) SaaS business.We provide world-class enterprise risk management, compliance, training, and advisory services to over 350...


  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    Cuscal Cuscal is a payments & regulated data services provider in Australia.Since 1966 we have enabled banks, corporates and fintechs to better serve and connect with their customers.For a winning team that is evolving.Forward with Cuscal.At Cuscal, you'll find a strong, successful company that's reimagining the future.Here, you'll deliver or support...


  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    DESCRIPTION Embark on a Mission to Fortify Amazon's Defenses as a Security Engineer with the Vulnerability Management & Remediation Operations team!Amazon Security is seeking a Security Engineer to join our Vulnerability Management and Remediation Operations (VMRO) team in Crystal City, Virginia.The VMRO team is responsible for discovering, assessing,...


  • Central Coast, Österreich Amazon Vollzeit

    Senior Security Engineer, Amazon Security Job ID: 2803450 | Amazon Support Services Pty Ltd Embark on a Mission to Fortify Amazon's Defenses as a Senior Security Engineer with the Vulnerability Management & Remediation Operations team!Amazon Security is seeking an experienced and innovative Senior Security Engineer to join our Vulnerability Management and...


  • Central Coast, Österreich Benchmark Sensory Strategy & Research Vollzeit

    Assistant Research Manager - Sensory EvaluationAt Benchmark, we're passionate about assisting our clients to achieve exceptional sensory results!As a full-service specialist sensory research agency, we conduct sensory research to the highest standard for many of Australia's leading FMCG companies and international clients, across a diverse range of food and...


  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    Senior Security Engineer, Amazon Security Job ID : 2856467 | Amazon Support Services Pty Ltd Embark on a Mission to Fortify Amazon's Defenses as a Senior Security Engineer with the Vulnerability Management & Remediation Operations team!Amazon Security is seeking an experienced and innovative Senior Security Engineer to join our Vulnerability Management and...


  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    Senior Security Engineer, Amazon Security Job ID: 2856467 | Amazon Support Services Pty Ltd Embark on a Mission to Fortify Amazon's Defenses as a Senior Security Engineer with the Vulnerability Management & Remediation Operations team!Amazon Security is seeking an experienced and innovative Senior Security Engineer to join our Vulnerability Management and...


  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    Our Federal Government client is seeking an experienced Vulnerability Management Platform Engineer.This is a 12 month contract.The role is open for ACT, QLD, SA and VIC.The successful candidate must have NV1 security clearance.12 months contract Open for ACT, QLD, SA, and VIC candidates Hybrid role (3 days office and 2 days WFH) NV1 is mandatory for this...


  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    Vulnerability Management Platform Engineer 18th October, 2024 Must have: Negative Vetting Level 1 Security clearance.Location of work: ACT, QLD, SA, VIC Primary Technologies:• Vulnerability scanning tools: Rapid7, Tenable, Sentinel, Windows Defender, Forescout, and any additional tools.Key duties may include, but are not limited to:• Develop and document...


  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    Principal Security Engineer, AWS Security Job ID: 2780049 | Amazon Web Services Australia Pty Ltd This position can also be based in Sydney, Australia.We are looking for an experienced Principal Security Engineer to join the Security team in Australia.You will be on a team responsible for conducting both pre and post launch testing, offensive campaigns,...


  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    Senior Application Packaging Engineer - NV1 We are seeking a dynamic and experienced Senior Application Packaging Engineer.This role offers a unique opportunity to work on cutting-edge projects involving Microsoft Endpoint Configuration Manager and Intune.Key Responsibilities: Automate the installation and configuration of Windows applications, security...


  • Central Coast, Österreich Tideri Jobbörse Vollzeit

    Employment Type: 12-month fixed term full time Remuneration: Level A: $88,290 - $117,718 (plus 17% superannuation and leave loading) Location: Kensington NSW Why your role matters: The City Futures Research Centre was established in 2005 to undertake research aiming to develop a better understanding of our cities, their people, the policies that manage their...


  • Central Coast, Österreich Qube Research & Technologies Limited Vollzeit

    Qube Research & Technologies (QRT) is a global quantitative and systematic investment manager, operating in all liquid asset classes across the world.We are a technology and data driven group implementing a scientific approach to investing.Combining data, research, technology, and trading expertise has shaped our collaborative mindset, which enables us to...