המקום בו המומחים והחברות הטובות ביותר נפגשים
Must Have Skills
3 to 6 years of experience in Hardware / Systems / Network / Application / Cloud penetration testing
Has a Bachelor’s Engineering degree or equivalent, preferably in Computer Science
Identify vulnerabilities in embedded systems and connected objects
Identify security flaws in the electronic layer using PCB Layouts / Schematics
Expertise in embedded software and communication protocols like USB, UART/USART, I2C, SPI, CAN, Bluetooth/BLE, Zigbee, RS232, RS485, JTAG, LoRa, RFID
Encryption tools and techniques for securing mobile and virtual machines.
Good understanding of security development lifecycle processes
Knowledge of OWASP Top 10 and SANS Top 25 and how to effectively remediate vulnerabilities associated with each
Run & Analyze the penetration test (Manual & Automated) and pinpoint the security issues and suggest countermeasures for security improvements
Demonstrated manual product penetration testing experience; for example, simulate a SQL injection attack without tools, simulate XSS attack, X-Path Injection, etc.
Good knowledge and hands-on experience using various penetration testing tools like Nessus, Web Inspect, Nmap (Slow Scans, Service detection, OS detection, Nmap Scripts), Burp Suite, AppScan, ZAP,Frida, Binary Ninja, Hak5, RF Hacking, Kali Linux
Communicate results and security risks to Product Owners
Good communication & negotiation skills
Adept at selecting and utilizing appropriate technologies to solve complex problems effectively
Good to have skills
Certification such as CEH, OSCP, OSCE, CCSP, CCSK will be highly desirable.
Familiar with tools such as Ubertooth, Attify Badge, JTAGulator, Bus Pirate, etc.
Ability to learn emerging security trends and tools
Domain knowledge of ICS and related security trends
Additional Informationמשרות נוספות שיכולות לעניין אותך