M+E Technology Job Board
Security Engineer, Penetration Tester
- Full Time
-
Redwood City, CA
Box
Purpose
It’s an amazing time to be working at Box. We are a big enough company to have the ability to execute large-scale deliverables. And just small enough that you can play an important role in that delivery. With millions of users on our platform, we have an opportunity to ship products that will change the way that people work. Box is expanding its next generation security program for the cloud, and you can be a critical part of this creative, fast-paced, and exciting team. We are seeking an information security specialist who has experience in penetration testing and is passionate about breaking all the things!
Why the team needs you
Box is a recognized leader in the cloud security space. We understand that security is an ever-evolving landscape of vulnerabilities, new techniques, and best practices, so we’re doubling down our efforts. We have an experienced application security team and we’ve done the basics, but we want to expand our capabilities and knowledge. We’re in search for a security engineer who thinks like an attacker — outside of the box — and who is also able to translate identified issues into actionable outcomes for the product, development, and operations teams.
Why you need Box
Box is growing fast. Real fast. Every business in the world is looking to modernize the way that they work. As the leader in cloud content management, Box is the only company that can help enterprises transform how people work together.
The security team is positioned well within the company to execute quickly and against things that matter. We have executive support and you will have the ability to influence the security posture of our products and systems.
Who you are
You live and breathe security. As an Application Security Engineer, you will assist the team responsible for penetration testing internal and external applications at Box, making our customers safer. You have published original advisories, white-papers, or given talks at conferences like Defcon/Ruxcon/Infiltrate/HITB/etc. You’ve exploited web applications, SOAP/REST APIs, desktop applications, and possibly mobile apps. You’re comfortable scripting up tooling to aide you in your penetration of a system, as well as making your own assessment tooling.
Responsibilities:
- Perform application security testing on internal and external Box applications
- Perform Code Reviews during penetration tests.
- Document exploit chain/proof of concept scenarios for dev teams consumption
- Build and contribute to custom internal security tools such as fuzzers, burp extensions, etc.
- Tracking and researching the latest attacks and how they might apply to our environments
- Configure, run and monitor automated security testing tools
- Participate in red-team activities
- Full Time
- Redwood City, CA
Box
Purpose
It’s an amazing time to be working at Box. We are a big enough company to have the ability to execute large-scale deliverables. And just small enough that you can play an important role in that delivery. With millions of users on our platform, we have an opportunity to ship products that will change the way that people work. Box is expanding its next generation security program for the cloud, and you can be a critical part of this creative, fast-paced, and exciting team. We are seeking an information security specialist who has experience in penetration testing and is passionate about breaking all the things!
Why the team needs you
Box is a recognized leader in the cloud security space. We understand that security is an ever-evolving landscape of vulnerabilities, new techniques, and best practices, so we’re doubling down our efforts. We have an experienced application security team and we’ve done the basics, but we want to expand our capabilities and knowledge. We’re in search for a security engineer who thinks like an attacker — outside of the box — and who is also able to translate identified issues into actionable outcomes for the product, development, and operations teams.
Why you need Box
Box is growing fast. Real fast. Every business in the world is looking to modernize the way that they work. As the leader in cloud content management, Box is the only company that can help enterprises transform how people work together.
The security team is positioned well within the company to execute quickly and against things that matter. We have executive support and you will have the ability to influence the security posture of our products and systems.
Who you are
You live and breathe security. As an Application Security Engineer, you will assist the team responsible for penetration testing internal and external applications at Box, making our customers safer. You have published original advisories, white-papers, or given talks at conferences like Defcon/Ruxcon/Infiltrate/HITB/etc. You’ve exploited web applications, SOAP/REST APIs, desktop applications, and possibly mobile apps. You’re comfortable scripting up tooling to aide you in your penetration of a system, as well as making your own assessment tooling.
Responsibilities:
- Perform application security testing on internal and external Box applications
- Perform Code Reviews during penetration tests.
- Document exploit chain/proof of concept scenarios for dev teams consumption
- Build and contribute to custom internal security tools such as fuzzers, burp extensions, etc.
- Tracking and researching the latest attacks and how they might apply to our environments
- Configure, run and monitor automated security testing tools
- Participate in red-team activities
CITIES
- New York City, NY (65)
- San Francisco, CA (58)
- Burbank, CA (39)
- London (35)
- Los Angeles, CA (34)
- Los Angeles (30)
- Redwood City, CA (27)
- Seattle, WA (25)
- Austin, TX (18)
- San Jose, CA (17)
- Santa Monica, CA (16)
- Remote (16)
- Los Gatos, CA (15)
- San Diego, CA (14)
- London, United Kingdom (13)
- Cary, NC (12)
- Culver City, CA (10)
- Reston, VA (9)
- Sunnyvale, CA (8)
- San Mateo, CA (8)
- San Francisco (8)
- New York City (8)
- Redwood Shores, CA (7)
- Warsaw (7)
- Madrid (7)
- Santa Clara, CA (6)
- Emeryville, CA (6)
- Palo Alto, CA (6)
- Boston, MA (5)
- Plainview, NY (5)
- Durham, NC (5)
- Chicago, IL (5)
- Redmond, WA (5)
- Boston (5)
- Beaverton, OR (4)
- Stockholm, Sweden (4)
- San Carlos, CA (4)
- Mountain View, CA (4)
- Burlington, MA (3)
- Paris, France (3)
- Herndon, VA (3)
- Hollywood, CA (3)
- Kent, WA (3)
- Alpharetta, GA (3)
- San Diego (3)
- Austin (3)
- Paris (3)
- Minneapolis (3)
- Atlanta, GA (2)
- Burnaby, BC, Canada (2)
- Vancouver, BC, Canada (2)
- Tel Aviv, Israel (2)
- Denver, CO (2)
- Raleigh, NC (2)
- Bangalore, India (2)
- Beverly Hills, CA (2)
- Aliso Viejo, CA (2)
- Hartford, CT (2)
- Wayne, PA (2)
- Frisco, TX (2)
- Glendale, CA (2)
- Montreal, QC (2)
- Seattle (2)
- Chicago (2)
- Calabasas, CA (2)
- Budapest (2)
- Tysons Corner, VA (2)
- Cheseaux, Switzerland (2)
- Solana Beach, CA (1)
- Washington, DC (1)
- Luxembourg City, Luxembourg (1)
- Springfield (1)
- Minneapolis, MN (1)
- Warsaw, Poland (1)
- Louisville, KY (1)
- Charlotte, NC (1)
- Richmond, VA (1)
- Toronto, ON, Canada (1)
- Piscataway, NJ (1)
- Miami, FL (1)
- Stamford, CT (1)
- Universal City, CA (1)
- Houston, TX (1)
- Fort Collins, CO (1)
- Bend, OR (1)
- Playa Vista, CA (1)
- Montreal, Quebec (1)
- Cambridge, MA (1)
- Madrid, Spain (1)
- Tokyo, Japan (1)
- Research Triangle Park, NC (1)
- Munich, Germany (1)
- Irvine, CA (1)
- Hoffman Estates, IL (1)
- Gaithersburg, MD (1)
- Richmond Hill, ON, Canada (1)
- Lawrenceville , GA (1)
- Bellevue, WA (1)
- Ottawa, Ontario (1)
- Atlanta (1)
- Herzliya, Israel (1)
- Telecommute (1)
- Israel, Herzelia (1)
- Studio City, CA (1)
- Rocket Center, W.V. (1)
- Austin, Texas (1)
- Barstow, CA (1)
- Findlay, OH (1)
- Secaucus, N.J. (1)
- Dallas, TX (1)
- Baltimore, MD (1)
- Lisle, IL (1)
- Solano Beach, CA (1)
- Centennial, CO (1)
- Brooklyn, NY (1)
- Camarillo , CA (1)
- Westchester, IL (1)
- Austin; Reston VA; Chicago (1)
- West Hills, CA (1)
- NYC (1)
- San Francisco/Bay Area (1)
- Las Vegas (1)
- Clermont-Ferrand, Puy-de-Dome, France (1)
- Tyson's Corner, VA (1)
- Amsterdam (1)
- Miami (1)
- Helsinki (1)
- Linköping, Sweden (1)
- Slovenia; Romania; Hungary; Turkey; Croatia; Serbia (1)
- Manchester, United Kingdom (1)
- Birmingham, United Kingdom (1)
- Phoenix / Remote (1)
- Netherlands (1)
- Portsmouth, United Kingdom (1)
- Culver City , CA (1)
- Ridgefield, CT (1)
- NYC; Santa Monica, CA (1)
- Oslo (1)
- Bucharest (1)
- Slovenia, Romania, Hungary, Turkey, Croatia, Serbia (1)
- Denver | NYC | Seattle (1)
- Brighton, United Kingdom (1)
- Munich (1)
- Cambridge, United Kingdom (1)
- Rome (1)
- San Francisco; Seattle (1)
- Newport Beach, CA (1)
- Fully remote or San Francisco/Bay Area based (1)
- Remote - Texas (1)
- Seattle; New York; Irvine, CA; San Francisco (1)
- Montreal (1)
- Greater Manchester, United Kingdom (1)
- Cupertino, CA (1)
- Phoenix (1)
- Leavesden, Hertfordshire, UK (1)
- Copenhagen; Boston (1)
- Ireland (Remote) (1)
- Cologne, Germany (1)
- Hybrid (Bridgend Office Twice Weekly) (1)
- San Francisco/ Hybrid (1)
- Basel, Switzerland (1)
- Hoofddorp, Netherlands (1)
- Dublin (1)
- Weybridge, UK (1)
- Denver (1)
- San Jose, CA; San Francisco (1)
- Brussels (1)
- Toronto (1)
- Portsmouth, England, United Kingdom (1)