Job Description
Do you have a passion for developing a global understanding of a given program?
We are looking for a Principal Security Engineer with experience in various aspects of Software Understanding including the ability to answer questions related to potentially vulnerable behaviour.
As a Principal Security Engineer, you will work collaboratively with other engineers in the software assurance team to extend and support the existing work related to identifying normal, abnormal and malicious behaviors including privacy violations.
We value self-initiated security or software engineers who have a passion to learn, build and engage in analysing software (including source-code, mobile apps, binaries, other supporting information) in a rigorous fashion that goes beyond standard testing, static code analysis, pen-testing, and reverse engineering techniques.
Responsibilities
As a member of our team, you will work with other team members to further develop an in-house expertise in analysis of software that will help those deploying and operating the software-based system assess risk by asking relevant questions on the behavior of the software.
The focus will be on identifying impactful security vulnerabilities across a variety of architectures and platforms.
You will be collaborating with engineers based in Australia, UK and the United States.
Your responsibilities include contributing to the design, implementation, integration and hands-on analyses to identify potential vulnerabilities of the software that is under evaluation via practical solutions.
What You'll Bring
Bachelor's or Master's Degree in Computer Science, Software Engineering or related disciplines
10+ years of operational experience in relevant topic such as software testing (including fuzzing, pen-testing), reverse engineering, static code analysis
Experience in conducting security assessments, say in a consulting style arrangement
Excellent programming skills in C, C++ and / or Python
Strong understanding of standard frameworks like OWASP, MITRE Att&ck
Ability to work as part of a team as well as independently
Strong analytical skills combined with good communication skills and fluent English
Nice to Have
Active participant or organizer of Capture the Flag competitions
Understanding of iOS and Android ecosystems
Understanding of security issues in LLM-generated code
Experience working with geographically distributed teams
Ability to mentor junior engineers
What We'll Give You
Ability to work in a flexible work-from-home arrangement
An organization filled with smart, enthusiastic, and supportive colleagues
A team of very skilled and diverse personnel across the globe
The resources of a large, global operation while still having the start-up feel of a small team
Who We Are
We are a world-class team of high-caliber security software developers who thrive on new challenges.
We are an inclusive and diverse team with a full spectrum of experience distributed globally.
We have the resources of a large enterprise and the energy of a start-up, working on advancing the state-of-the-art for developers through SAST, SCA and Binary Analysis tools.
We also have teams that can detect attacks on complex platforms and systems.
We are a dedicated team, leveraging each other's insights and abilities to produce cutting-edge solutions for today's complex and inter-connected, inter-dependent, infrastructure.
We value people who can use their skills to further develop and enhance our tools, as well as our procedures and playbooks.
Join us to grow your career and create the future of software understanding together and reduce the security risks associated with software-based solutions
Qualifications
Career Level - IC4
#J-
Security Engineer • Australia