此岗位为长期外包岗位,五险一金实缴+补充医疗保险。
Major responsibilities:
61 Conduct cybersecurity testing and vulnerability assessment for hardware devices (e.g., IoT devices, embedded systems) and software system (e.g., web application, cloud service)
61 Conduct penetration testing across multiple layers, including network, application, wireless, and hardware security, and provide detailed reports
61 Assess risks associated with identified vulnerabilities and compile comprehensive penetration test reports.
61 Present findings to stakeholders and technical teams, explaining testing methodologies, procedures, and vulnerability severity from a technical perspective.
61 Research and evaluate emerging security trends and industry best practices.
61 Prepare security test documentation and vulnerability reports Preferred Background & Skills:
61 Education: BS in Computer Science, Computer Engineering, Information Security, or equivalent practical experience.
61 Cybersecurity Expertise: Familiarity with fundamental security concepts, including but not limited to cryptography, authentication mechanisms, secure coding practices, and access control models, embedded system security, secure boot mechanisms etc. Familiarity with in-vehicle communication protocols (CAN, CANFD, UDS, FlexRay) is a plus.
61 Security Testing Expertise: Proficiency in common vulnerability exploitation (e.g., SQL injection, XSS, RCE, buffer overflow), reverse engineering, and exploit development.
61 Tools & Technologies: Familiarity with common security testing tools (e.g., Kali Linux, Burp Suite). 61 Programming Skills: Solid in Python, C/C++, Shell or other language for security testing and scripting.
61 Communication Skills: Strong written and verbal English proficiency.
61 Certifications (Preferred): OSCP or equivalent security certifications.