162 views
 
 Vchasno
to span> -groups of Ukrainian grocery IT companies that create digital solutions for business and state. FONT-STYLE: NORMAL; Normal; Normal; Text-Decoration: None ">: span>
  Hand and Automated Security Testing (Sast, Dast). FONT-STYLE: Normal; Text-Decoration: None ">    CODE Analysis, Search for Vulnerators and Recommendations for their Elimination. FONT-STYLE: Normal; Text-Decoration: None ">    Settings of Automation and Closed Cycle of WEB Vulnerable Vulnerators. FONT-STYLE: Normal; Text-Decoration: None "> Conducting internal pentification  :  span>    Detection of Vulnerators in Internal Systems, API, Cloud Platforms, etc. FONT-STYLE: Normal; Text-Decoration: None ">    Development of Risk Detail Reports, Task Recommendations and Problems. FONT-STYLE: Normal; Text-Decoration: None "> Participation in SDLC  :  span>    Integration of safety practices into the development process. FONT-STYLE: Normal; Text-Decoration: None ">    Participation in the process of creating safe architecture of new functionality and existing solutions. FONT-STYLE: Normal; Text-Decoration: None ">    Conducting Training for Safe Coding Developers. FONT-STYLE: Normal; Text-Decoration: None ">    Participation in Developer Code. FONT-STYLE: Normal; Text-Decoration: None "> The necessary experience and skills  :  span>    Clear Understanding OWASP TOP 10, CWE  span>    Experience of Testing and Operation of Typical Attacks SQLI, XSS, CSRF, SSRF, RCE  SPAN>    Understanding the specifications of rest, graphqql.  span>    Authentication Testing (Oauth, Saml, JWT) and Authorization. FONT-STYLE: Normal; Text-Decoration: None ">    Ability to Work with Sast tools (Bandit, Semgrep ETC)/Dast (OWASP ZAP, BURP ETC)  span>    Ability to Work with Snyk, OWASP DEPENDENCY-CHECK)  span>    Ability to Work with Nessus Vulnery Scanning tools, nessus, nikto.     Understanding and Working with AWS     Ability to analyze/work with code Python, node.js, js  span>    will be the advantage of:     Ability to Work with Siem, WAF  SPAN>    Availability of OSCP     We offer:     Official Employment in the State Company;     24 calendar days of vacation per year (paid according to the Labor Code of Ukraine), an unlimited amount of hospital;  span>    Work format: remotely or hybrid;  span>    Corporate Psychologist Services;     Health Insurance after the Adaptation period.  span>