15 views
Vchasno
to span> -groups of Ukrainian grocery IT companies that create digital solutions for business and state. FONT-STYLE: NORMAL; Normal; Normal; Text-Decoration: None ">: span>
Hand and Automated Security Testing (Sast, Dast). FONT-STYLE: Normal; Text-Decoration: None "> CODE Analysis, Search for Vulnerators and Recommendations for their Elimination. FONT-STYLE: Normal; Text-Decoration: None "> Settings of Automation and Closed Cycle of WEB Vulnerable Vulnerators. FONT-STYLE: Normal; Text-Decoration: None "> Conducting internal pentification : span> Detection of Vulnerators in Internal Systems, API, Cloud Platforms, etc. FONT-STYLE: Normal; Text-Decoration: None "> Development of Risk Detail Reports, Task Recommendations and Problems. FONT-STYLE: Normal; Text-Decoration: None "> Participation in SDLC : span> Integration of safety practices into the development process. FONT-STYLE: Normal; Text-Decoration: None "> Participation in the process of creating safe architecture of new functionality and existing solutions. FONT-STYLE: Normal; Text-Decoration: None "> Conducting Training for Safe Coding Developers. FONT-STYLE: Normal; Text-Decoration: None "> Participation in Developer Code. FONT-STYLE: Normal; Text-Decoration: None "> The necessary experience and skills : span> Clear Understanding OWASP TOP 10, CWE span> Experience of Testing and Operation of Typical Attacks SQLI, XSS, CSRF, SSRF, RCE SPAN> Understanding the specifications of rest, graphqql. span> Authentication Testing (Oauth, Saml, JWT) and Authorization. FONT-STYLE: Normal; Text-Decoration: None "> Ability to Work with Sast tools (Bandit, Semgrep ETC)/Dast (OWASP ZAP, BURP ETC) span> Ability to Work with Snyk, OWASP DEPENDENCY-CHECK) span> Ability to Work with Nessus Vulnery Scanning tools, nessus, nikto. Understanding and Working with AWS Ability to analyze/work with code Python, node.js, js span> will be the advantage of: Ability to Work with Siem, WAF SPAN> Availability of OSCP We offer: Official Employment in the State Company; 24 calendar days of vacation per year (paid according to the Labor Code of Ukraine), an unlimited amount of hospital; span> Work format: remotely or hybrid; span> Corporate Psychologist Services; Health Insurance after the Adaptation period. span>