Senior Application Security Engineer
Core
Senior Application Security Engineer responsible for maintaining and improving HelloFresh's Vulnerability Management Program through offensive security assessments and tool development.
Role type
Senior IC application security engineer (offensive security)
Builds
Vulnerability Management Program covering pentests, red teaming, cloud assessments, and bug bounty operations
Domain
Cybersecurity / Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure
Required skills
Network/cloud penetration testing, web and mobile application testing, source code review, threat analysis, wireless network assessments, social-engineering assessments, exploit development, scripting (Python or Go), cloud security testing, wireless security testing, web application security testing, network security testing
Preferred skills
Red Teaming, API Assessments, tool/plugin development for security testing, participation in bug bounties, control flow analysis
Technologies
Python, Go, cloud security tools, wireless security tools, web application security tools, network security tools
Responsibilities
Perform network/cloud/web/mobile penetration testing and assessments, develop comprehensive security reports for technical and executive audiences, communicate findings to stakeholders, manage remediation loops, develop scripts and tools to improve security posture, recognize and utilize attacker tactics and procedures
Seniority
Senior, hands-on IC