
Posted 10 hours ago
Application Security Engineer
HelloFreshApplication Security Engineer
Requirements
4-7 years professional experience, Proficiency in Network, Wireless, Cloud, Web, or Mobile assessments, Proficiency in Python or Go, Offensive security certifications (OSWE, GWAPT), Experience in source code review, Knowledge of network protocols and application architecture
Skills
Penetration TestingPythonGoCloud SecurityRed Teaming
About the role
Responsibilities
- Perform network and cloud penetration testing, web and mobile application security assessments, and source code reviews.
- Conduct specialized threat analysis, wireless network assessments, and social-engineering simulations.
- Develop comprehensive technical reports and presentations for both technical stakeholders and executive leadership.
- Communicate findings and remediation strategies effectively to technical staff and legal counsel.
- Utilize formal project management methodologies to plan, track, and report on the remediation loop.
- Safely employ attacker tools, tactics, and procedures (TTPs) to identify vulnerabilities and analyze system weaknesses.
- Develop custom scripts, tools, and methodologies to enhance the efficiency of the Vulnerability Management Program.
Requirements
- 4-7 years of professional experience in offensive security (Network, Wireless, Cloud, Web, Mobile, API, or Red Teaming).
- Thorough technical understanding of network protocols, client-server models, and application architecture.
- Proven proficiency in a modern scripting language such as Python or Go.
- Relevant offensive security certifications, such as OSWE, GWAPT, or equivalent credentials.
- Experience in performing source code reviews for control flow analysis and security flaws.
- Expertise in using industry-standard tools for cloud, wireless, web, and network security testing.
- Ability to develop, extend, or modify exploits, shellcode, or associated exploit tools.
Preferred Qualifications
- Active participation in web hacking challenges, security competitions, or public bug bounty programs.
- Experience in the development of custom tools or plugins specifically for security testing and analysis.
Benefits
- Global collaboration at scale with experienced engineers across international teams.
- Opportunity to work with technology that has real-world impact for millions of customers.
- Influence over architecture, design, and best practices in an autonomous, product-led setup.
- Access to modern workspace facilities at Warsaw Centre Point, including breakout zones and refreshments.
About the Company
HelloFresh is a global digital-native FMCG company and the world's leading mealkit provider. Through technology, data, and culinary innovation, we deliver personalized food experiences to millions of households worldwide. Our HelloTech organization serves as our global technology backbone, building the digital products that power our end-to-end food experience.
ScoutJobs Agent
Get matches like this delivered daily
Sign up free — we'll pull jobs that fit your CV from across the web and rank them for you.
Get started — it's freeApplication Security Engineer
HelloFresh · Warsaw
