At a Glance
- Tasks: Lead advanced application security assessments and collaborate with top experts in cybersecurity.
- Company: Hexens.io, a cutting-edge cybersecurity firm focused on blockchain technology.
- Benefits: Highly competitive salary, remote work flexibility, and a great work environment.
- Other info: Work remotely from anywhere and grow your career with industry leaders.
- Why this job: Join a dynamic team tackling complex security challenges in the exciting world of web3.
- Qualifications: 5+ years in application security with expertise in web apps, APIs, and mobile applications.
The predicted salary is between 70000 - 90000 £ per year.
Hexens.io is looking for a Senior Information Security Engineer with a strong focus on application security to join our team. At Hexens.io, we deliver cutting-edge cybersecurity services with a core emphasis on blockchain technology. We address complex security challenges, protecting applications and infrastructures that handle multimillion-dollar digital assets.
Remote Availability: Work from anywhere! This is a fully remote role with no location restrictions.
Responsibilities:
- Alongside our off-chain security lead, plan and deliver advanced application security assessments against API services, application front-ends, wallet software, browser plugins, mobile apps, and SDKs.
- Collaborate with leading smart contract auditors and cryptography researchers, leveraging your application security expertise to assess attack surfaces outside their on-chain specialisations.
- Work to identify technical vulnerabilities, architectural flaws, and ways to mitigate future risk in the crucial junctions between off-chain and on-chain systems.
- Interact with developers and key stakeholders when identifying and handling security issues.
- Deliver clear and concise reporting on issues and attack paths identified.
Required skillset:
- At least 5 years experience, or equivalent technical expertise, delivering offensive security services, with a primary focus on application security.
- Expert-level web application and API security experience, with proficiency assessing apps with modern web frameworks, and identifying advanced client-side, back-end, and business logic attacks.
- Experience assessing mobile applications (Android/iOS), browser extensions, and desktop applications.
- Practical experience finding complex vulnerabilities and attack paths in Golang, Rust, TS/JS, Python, Java, or C-based codebases during white/grey-box appsec assessments.
- Working knowledge of cloud, CI/CD, container, CDN, and network security concepts, and how they apply to application security.
- Knowledge or willingness to learn web3 security concepts and how they apply to web3-centric applications.
- Decent scripting and automation skills.
- Assisting with scoping requirements for application security work.
- Strong client-facing and soft skills.
Big plus if any of the following apply:
- Significant web2 bug bounty/vulnerability disclosure history.
- Prior experience as a smart contract auditor or onchain-focused security researcher.
- Prior experience developing or integrating DeFi protocols, smart contracts, wallet services, or other web3 services.
- Advanced relevant security certifications (OSWE, Burp Suite Certified Professional, etc.)
Benefits:
- Work alongside industry-leading specialists.
- Opportunity to work with the most exciting and prominent companies in the industry.
- Highly competitive salary.
- Great work environment.
Senior Information Security Engineer- Application Security Focus in London employer: Hexens
Contact Detail:
Hexens Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Senior Information Security Engineer- Application Security Focus in London
✨Tip Number 1
Network like a pro! Reach out to folks in the cybersecurity space, especially those who work with application security. Attend meetups, webinars, or even online forums to connect with potential employers and get your name out there.
✨Tip Number 2
Show off your skills! Create a portfolio showcasing your past projects, especially those related to application security. This could include case studies of vulnerabilities you've found or assessments you've conducted. It’s a great way to demonstrate your expertise.
✨Tip Number 3
Prepare for interviews by brushing up on common application security scenarios. Be ready to discuss your experience with web frameworks, mobile apps, and any specific languages mentioned in the job description. We want to see how you think through security challenges!
✨Tip Number 4
Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, it shows you’re genuinely interested in joining our team at Hexens.io.
We think you need these skills to ace Senior Information Security Engineer- Application Security Focus in London
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience in application security and any relevant projects you've worked on. We want to see how your skills align with the role, so don’t be shy about showcasing your expertise!
Craft a Compelling Cover Letter: Your cover letter is your chance to shine! Use it to explain why you're passionate about application security and how you can contribute to our team at Hexens.io. Keep it concise but impactful!
Showcase Your Technical Skills: When filling out your application, be specific about your technical skills and experiences. Mention the programming languages and frameworks you’re familiar with, especially those related to web and mobile app security.
Apply Through Our Website: We encourage you to apply directly through our website. It’s the best way for us to receive your application and ensures you’re considered for the role. Plus, it’s super easy!
How to prepare for a job interview at Hexens
✨Know Your Stuff
Make sure you brush up on your application security knowledge, especially around web frameworks and API security. Be ready to discuss specific vulnerabilities you've encountered in the past and how you tackled them. This will show that you’re not just familiar with the theory but have practical experience.
✨Showcase Your Collaboration Skills
Since the role involves working closely with developers and stakeholders, be prepared to share examples of how you've successfully collaborated in previous roles. Highlight any experiences where you’ve had to communicate complex security issues in a clear and concise manner.
✨Demonstrate Your Problem-Solving Abilities
Think of specific instances where you identified vulnerabilities or architectural flaws and how you mitigated those risks. Being able to articulate your thought process during these situations will demonstrate your analytical skills and proactive approach to security.
✨Stay Current with Trends
Familiarise yourself with the latest trends in web3 security and blockchain technology. Showing that you’re eager to learn and adapt to new challenges will impress the interviewers and align with Hexens.io's focus on cutting-edge cybersecurity services.