Senior Security Engineer – Red Team

Job not on LinkedIn

🕒 April 1

🇹🇷 Turkey – Remote

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 47%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Insider One

Insider One

1001 - 5000 employees

Founded 2012

📣 Marketing

💼 Consulting

☁️ SaaS

💰 $500M Series E on 2024-12

Marketing • Consulting • SaaS

Insider One is an AI-native customer engagement and personalization platform delivered as SaaS. It provides a unified customer data platform (CDP), personalization, journey orchestration, reporting/analytics, and behavioral insights, and connects to 100+ integrations to support multichannel marketing across web, email, mobile apps, site search, SMS/RCS, WhatsApp, push, and conversational CX. The platform targets marketing and customer engagement teams at enterprise and e-commerce brands to improve engagement, conversions, and lifetime value.

📋 Description

• Perform web, mobile application, and internal penetration tests • Conduct source code reviews, threat analysis, and social-engineering assessments • Support blue teams when needed • Research new attack vectors and stay current with cybersecurity news and trends • Train Quality Assurance and Development teams in security testing techniques and secure software development • Support business-unit developers during the SDLC and guide them on emerging-threat mitigations • Review application source code using static application security testing tools • Conduct security research on vulnerabilities and testing tools • Create detailed reports describing vulnerabilities, mitigation strategies, and remediation steps • Execute white-, gray-, and black-box security posture assessments • Collaborate with agile teams and other departments

🎯 Requirements

• 4+ years of working experience in web application security • Hands-on experience in security testing of web applications, web services, mobile applications, and APIs • Experience securing REST APIs and web services • Experience using and implementing SAST/DAST tools such as Fortify, Veracode, Checkmarx, or similar tools • Knowledge of penetration testing information systems using commercial and open-source exploitation tools • Good understanding of standard security vulnerabilities and common remediation as published by OWASP, SANS, and similar sources • Experience with secure coding methodologies, best practices, and implementation within engineering teams • Ability to support developers throughout the SDLC and provide guidance on emerging-threat mitigations • Experience reviewing application source code using static application security testing tools • Ability to conduct security research on vulnerabilities and testing tools • Ability to create detailed professional documentation and reports communicating vulnerabilities, mitigation strategies, and remediation steps • Ability to work on multiple projects concurrently • Strong written and verbal communication skills in English • Ability to work in a team-centric environment • Strong critical-thinking and analytical skills • Experience executing white-, gray-, or black-box security posture assessments and producing detailed findings and recommendations • Python, JavaScript, or PHP programming experience is a plus • Scripting knowledge and automation-script experience for application security testing are a plus • Familiarity with cloud security, particularly AWS security concepts, is a plus • Certifications such as eWAPTx, OSCP, or OSWE are a plus

🏖️ Benefits

• Monthly meal allowance • Comprehensive private health insurance • Access to Spotify, LinkedIn Learning, Blinkist, MasterClass, Neoskola, and CloudGuru • Internal training in AI fundamentals, coding, foreign languages, and personal development skills • Eligibility-based ESOP share ownership • Referral bonuses • Volunteering and purpose-driven social impact projects • Global retreats and team-building activities • Tech & Dev Talks and technology industry events • Fully remote work from anywhere in Turkey

Apply Now

Similar Jobs

🕒 January 26

Swapcard

201 - 500

💼 Consulting

📣 Marketing

📦 Logistics

Security Engineer improving AWS security configurations and managing security tools for Swapcard’s AI-powered event platform. Collaborating with IT and DevOps for vulnerability and incident management.

AWS

Cloud