Job description
Responsibilities
Responsible for the planning of the company's cybersecurity offensive and defensive system and daily management of the team. Develop security testing and red-blue confrontation plans. Organize authorized penetration testing for the company's website, APP, API, servers, and cloud environment. Responsible for the assessment, command, loss control, tracing, and review of major security incidents. Establish mechanisms for authorized offensive and defensive testing, operational auditing, vulnerability grading, and repair acceptance. Coordinate with operations, development, testing, CDN, and technical leaders of various companies to complete security rectification. Evaluate new attack methods and convert them into internal protection plans. Provide the CTO with group security risk reports and key rectification suggestions.
Requirements
More than 5 years of experience in cybersecurity, penetration testing, or emergency response. Familiar with common attack surfaces of Web, API, APP, hosts, containers, and cloud environments. Able to independently handle incidents such as intrusions, black chains, data theft, domain hijacking, DNS pollution, DDoS, and data leaks. Familiar with security risks in common environments such as Linux, Nginx, CDN, WAF, MongoDB, Redis, and Kafka. Familiar with code security issues in at least two technology stacks among Go, Java, and PHP. Strong cross-team promotion and risk judgment abilities. Experience in large-scale internet businesses, red-blue confrontation, or major emergency incidents is preferred.