Job Position | Company | Posted | Location | Salary | Tags |
---|---|---|---|---|---|
Crypto.com | Taipei, Taiwan | $39k - $75k | |||
Aragon Association | Remote | $90k - $90k | |||
Binance | Singapore, Singapore |
| |||
Binance | Singapore, Singapore |
| |||
Learn job-ready web3 skills on your schedule with 1-on-1 support & get a job, or your money back. | | by Metana Bootcamp Info | |||
Parallel Consulting | San Francisco, CA, United States | $425k - $725k | |||
Energy Web | remote | $69k | |||
Finnt | Remote | $40k - $150k | |||
Magic | New York, NY, United States | $72k - $117k | |||
dYdX | New York, NY, United States | $36k - $54k | |||
Moss | United States | $81k - $96k | |||
Carta | San Francisco, CA, United States | $161k - $290k | |||
SoftServe | United States | $63k - $90k | |||
Long View Systems | United States | $98k - $110k | |||
Ava Labs | New York, NY, United States | $166k - $228k | |||
The Block | Remote | $150k - $180k |
This job is closed
Security Engineer / Penetration Tester (TW)
Requirements
- OSCP (or equivalent, such as CREST) is a MUST. We know being certified doesn’t mean you are good, but at least it shows you have the baseline knowledge and are willing to try harder. In an increasingly regulated industry, certifications further prove our team’s expertise - in fact we have nearly 100 certifications just within the application security/DevSecOps team.
- You are expected to know application security frameworks like OWASP Top 10 inside out and beyond, and with a very strong security sense around business/financial logic flaws
- At least 2 years of experience in Web API testing, use BurpSuite like a Pro and be able to spot suspicious request/response parameters out of intuitionÂ
- Preferable: full-stack approach to application security with understanding on how front-ends and back-ends communicate; how modern applications are developed and deployed in the cloud; and how to read code to understand what happens when the backend receives API requests (Java, Ruby, Elixir, JavaScript)
- Preferable: experience in communicating with development and product teams to effectively remediate application security issues
- Optional: Hands on experience on Mobile App testing, a good understanding of Jailbreaking/Rooting a device, API hooking, reverse engineering, de-obfuscation
- Optional: Good understanding of container related technologies and AWS services such as ECS, EKS, VPC, IAM, etc.
- Optional: Familiar with at least one scripting language and be able to implement some degree of automation
- Proficiency in both spoken and written English. Being able to speak Mandarin will be an advantage
- Willing to learn, energetic, adapt to changes. Have a positive attitude towards cryptocurrency
What does a JavaScript developer in web3 do?
A JavaScript developer in web3 would likely be responsible for developing applications and other software using the JavaScript programming language within the web3 ecosystem
Web3 refers to the third generation of web technology, which emphasizes the use of decentralized technologies such as blockchain and distributed ledger systems
This means that a JavaScript developer in web3 would need to be familiar with these technologies and how to use them in the development of applications and other software
They may also be responsible for maintaining and updating existing web3 applications, as well as working with other members of a development team to create new web3 applications.