Jump to content
Nytro

Senior Penetration Tester @ UiPath

Recommended Posts

Salut, cautam un Senior Penetration Tester pentru echipa noastra. Din echipa facem parte 3 persoane de pe forum si manager-ul nostru. Avem mai multi alti colegi in echipa de security, dar pe partea de pentest (Product Security) noi suntem.
 
Ce facem, in mare:
- mult web security
- mult code review, ASP.NET, JavaScript, Java dar si altele
- sunt si aplicatii desktop, dar au la baza tot tehnologii web (o parte dintre ele)
 
Ca sa nu dezamagim, cautam pe cineva cu foarte multa experienta pe web si sa stie si parte de code review. O parte dintre lucrurile pe care le vom face impreuna tine doar de code review, dar nu va ganditi la ceva extrem de greu.
 
Avem in plan sa facem si red team, external network pentest, cloud security si altele, dar in marea majoritate a timpului cam asta facem. Mentionez asta ca sa nu vina persoane care vor sa faca mult exploit development sau red team. Nu de alta, dar vrem sa vina cineva caruia sa ii placa ce facem. 
 
Puteti aplica direct pe site. Daca aveti intrebari, postati aici sau trimiteti-mi un mesaj privat.
 
Descrierea oficiala:
 
At UiPath we see boundless potential in the way we live. It drives the way we work. Our culture is our most valuable asset, that's why it acts like a compass to us. We’re fast, immersed, humble and bold. And that’s not just words on the walls.
 
Eliminating time-consuming tasks means people get to do more of what they love. It’s an inspiring, high stakes challenge that motivates us, and this common passion bonds UiPath employees globally. We all strive every day to be better and to accelerate human achievement.
 
We make robots, but we hire people. Would you like to be part of this journey?
 
UiPath is looking for a senior penetration tester to help and grow the security assessment function related to its products and cloud infrastructure.
 
Your mission: You will develop and apply formal security centric assessments against existing and in-development UiPath products as well as UiPath's cloud environment. You might also be part in other activities such as red teaming, trainings for development teams or management of our bug bounty program.
 
A successful Penetration Tester at UiPath is a self-starter, with strong problem-solving skills. Ability to maneuver in a fast-paced environment is critical, as well as handling ambiguity coupled with a deep grasp of various security threats. As a true owner of security in UiPath, great writing skills are needed, coupled with the ability to interact with stakeholders across multiple departments and teams. The Senior Penetration Tester acts as a mentor for technical peers and can transpose testing strategies and results in high level non-technical language.

This is what you'll do at UiPath:

  • Penetration testing on products and cloud infrastructure
  • Security testing of desktop applications (Windows)
  • Source code review (multiple programming lanugages)
  • Recommendation of threat mitigations
  • Security training and outreach to internal development teams
  • Security guidance documentation
  • Security tool development
  • Security metrics delivery and improvements
  • Assistance with recruiting activities 
 

This is what you'll bring to UiPath:

  • BS in Computer Science or related field, or equivalent work experience
  • Minimum of 7 years of experience with penetration testing at application and infrastructure layers
  • Minimum of 5 year of experience in working with developers, with personal skills in coding/scripting
  • Good understanding of cyber-attack tools and techniques
  • Good knowledge of attacking services hosted in cloud (Azure, AWS, GCP)
  • Experience writing POCs for discovered vulnerabilities
  • Good knowledge of operating system, network and database security
  • Advanced knowledge and understanding of web application security
  • Experience using various penetration testing tools (such as, BurpSuite, Metasploit, Nessus, etc.)
  • Experience using debuggers, disassemblers for reverse engineering (Ida)
  • Experience with Red Team exercises
  • Experience with multiple programming languages
 
Life at UiPath like a lot of startups, can sometimes feel like a roller coaster. It comes with changes and challenges, but also with the opportunity to shape how work is done, to have great impact and learn a great deal.
  
At UiPath, we value a range of diverse backgrounds experiences and ideas. We pride ourselves on our diversity and inclusive workplace that provides equal opportunities to all persons regardless of age, race, color, religion, sex, sexual orientation, gender identity and expression, national origin, disability, military and/or veteran status, or any other protected classes.
 
UiPath is committed to working with and providing reasonable accommodation to individuals with disabilities. If you have a medical condition or disability which inhibits your ability to complete any part of the application process, and are in need of a reasonable accommodation to complete the process, please contact us @ TALeaders@uipath.com and let us know how we may assist you.
 
This notice together with our Privacy Policy and Terms of Use of this website and any other documents we mention here are meant to inform you on what personal data about you we collect, use, disclose, share or otherwise process when you are applying for a job at UiPath or when UiPath contacts you for recruitment purposes. Please read this policy carefully to understand our views and practices on how we protect your personal data.
 
 
  • Upvote 1
Link to comment
Share on other sites

Da, vrem pe cineva care sa se descurce singur, din prima zi, indiferent de proiect (le avem impartite intre noi si uneori colaboram).

Trebuia sa mentionez si referitor la lucrul remote. In aceasta perioada, normal, se lucreaza 100% remote. Dar dupa pandemie, nu cred ca va mai fi 100% remote. O posibilitate e ca lunea si vinerea sa se poata lucra de acasa, dar marti-joi sa se vina la birou (nu e o problema daca nu se poate din diverse motive, dar probabil va trebui venit pe la birou). La birou, sa zicem ca nu e chiar rau, deloc :D 

Link to comment
Share on other sites

On 1/5/2021 at 2:29 PM, Nytro said:

Da, vrem pe cineva care sa se descurce singur, din prima zi, indiferent de proiect (le avem impartite intre noi si uneori colaboram).

Trebuia sa mentionez si referitor la lucrul remote. In aceasta perioada, normal, se lucreaza 100% remote. Dar dupa pandemie, nu cred ca va mai fi 100% remote. O posibilitate e ca lunea si vinerea sa se poata lucra de acasa, dar marti-joi sa se vina la birou (nu e o problema daca nu se poate din diverse motive, dar probabil va trebui venit pe la birou). La birou, sa zicem ca nu e chiar rau, deloc :D 

asa ca salariu o idee sa stie lumea de la cat se porneste ca ar suna tentant :) nu de alta.

nevermind dupa am vazut ca e pentru uipath.

 

Edited by lzomedia
Link to comment
Share on other sites

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.



×
×
  • Create New...