Job Description
资深认证项目工程师,网络安全

投递岗位后,请留意个人邮箱邮件,需要注册账号并确认相关信息,才正式进入应聘流程。谢谢!

负责电子相关产品的网络安全认证项目工作。

  1. Position Summary 

This position is responsible for focusing domain areas of expertise as well as a good breadth of experience across project management, Network/Application Penetration Testing, Web Application Penetration Testing, Mobile Application Penetration Testing, IoT devices Penetration Testing, Open Source Intelligence and Physical Security Testing. 

  1. Job Responsibilities 

  1. Control the pace of cyber security project, complete the project test with quality and quantity guaranteed. 

  1. Carrying out application and IoT devices security tests and performing various aspects of vulnerability assessments/penetration tests across a wide variety of platforms and technologies. Also include the execution of targeted testing activities to identify weaknesses and methods in which to exploit them.  

  1. Conduct security risk assessment for IoT system (device, application, and cloud)   

  1. Doing research on IoT security technologies and keep tracking global security eventsdeveloping and maintaining security attack tools. 

  1. Keeping up-to-date with tools, countermeasures, threats and technologies.  

  1. Job Requirements

  1. Bachelor’s degree in Cybersecurity, Computer Science, Computer Engineering or related field. 

  1. Minimum two years of experience in project management.  

  1. Minimum one year of conducting penetration testing on IoT devices or mobile applications 

  1. Have a broad understanding of various information technology areas used to support and manage the business (i.e. web, networking, database, cloud, telephony, mobile, applications, etc.) and an in-depth experience in at least two area of relevant technology. 

  1. Proficiency with Unix/Linux, and mobile platform operating systems.  

  1. Be familiar with ARM/MIPS assembly, binary reverse engineering and IoT firmware package/de-package. 

  1. Be familiar with TCP/IP based network protocols, basic PKI technology and cryptographic algorithms  

  1. Be familiar with one of script languages(Python, Javascript, Shell etc..). Have the ability to develop test scripts.  

  1. Be familiar with wireless security such as WiFiBluetooth and Zigbee  

  1. Understand common binary security issues, common exploit methods and countermeasures.  

  1. Comprehension of OWASP Top 10 (both web and IoT), NIST and ISSAF technical controls and standards, and able to understand and communicate how the standards and controls relate to risk management strategies. 

 

Work Area:  Others
Country/Region:  China
Job Location:  Wuxi
Working Model​:  Onsite
Employment Type:  Full time / regular
Company:  TUV SUD Cert. + Test. WU
Org Unit Code:  GROU-1
Requisition ID:  3250
Duration in months (if limited contract):