Application Security Researcher

1 Year ago • 3-3 Years

Job Description

Moon Active seeks an AppSec Researcher with 3+ years' experience in code auditing, AppSec research, and understanding major AppSec attacks, vulnerabilities, and mitigations.
Good To Have:
  • High-Severity Vulnerability
  • Mobile App Platforms
  • Google Play, App Store
  • AWS, GCP
Must Have:
  • Code Auditing
  • AppSec Research
  • Vulnerability Mitigation
  • Cloud Environments

Add these skills to join the top 1% applicants for this job

javascript
typescript
aws
sql
security-testing
software-development-lifecycle-sdlc

Description

Moon Active is one of the world’s fastest-growing mobile game companies, providing entertainment to millions of active users across the universe. The company is headquartered in the heart of Tel Aviv. 

We’re looking for an experienced Application Security Researcher to join our growing Security team. As an Application Security Researcher, you’ll take an active role in guiding our development teams, helping manage Moon Active’s secure development lifecycle in our products that serve millions of users daily. You’ll also work closely with internal development teams to ensure Moon Active’s mobile games are designed and implemented securely.

Responsibilities

  • Collaborate with the development teams to conduct design review, code review, and dynamic analysis. 
  • Identify, communicate and drive the resolution of vulnerabilities. 
  • Research and advocate for new security solutions and technologies. 
  • Continue to drive early security evaluation by conducting iterative security testing. 
  • Implement automated secure coding tools and processes (SAST, IAST) to review code as it’s written, promoted through the development lifecycle, and into production. 
  • Operate as an incident responder for triage pertaining to web-based vulnerabilities.

Requirements

  • 3 years of proven experience with high-level code auditing on backend or relevant military service. 
  • 3 years of proven experience in AppSec research, including a deep understanding of major AppSec attacks, vulnerabilities and mitigations including SQL injection, Deserialization, RCE, etc or relevant military service. 
  • Familiarity with a wide range of programming languages (Go, JavaScript, TypeScript, etc) and Software Development Life Cycle (SDLC). 
  • Experience with cloud environments - specifically AWS and GCP - Advantage
  • Familiarity with a wide range of database types and architectures. 
  • Found a high-severity vulnerability in a popular app - Advantage
  • Familiar with mobile application platforms and APIs like Google Play, App Store  - Advantage


#LI-Hybrid

Set alerts for new jobs by Moon Active
Set alerts for new jobs in Israel
Contact Us
hello@outscal.com
Made in INDIA 💛💙