Bachelor's degree or equivalent practical experience.
8 years of experience with security assessments or security design reviews or threat modeling.
8 years of experience with security engineering, computer and network security and security protocols.
8 years of coding experience in one or more general purpose languages.
3 years of experience leading teams in a technical capacity or leading technical risk analysis in an enterprise environment.
3 years of experience in incident management.
Preferred qualifications:
Certifications in OSCP, SANS GIAC (e.g., GSEC, GPEN, GWAPT).
Experience with information security incident and threat assessments (incident response, penetration testing, vulnerability assessments).
Understanding of full software stack from devices (embedded, mobile, web) to frontend serving stack, backend, video streaming systems, global networking, crypto, protocols.