Genesis is a Ukrainian co-founding IT company and one of the largest global publishers of non-gaming applications. The Genesis business ecosystem includes more than 25 projects in 4 areas — mobile applications, online media, classifieds, and R&D. Our applications have been downloaded by more than 400 million users worldwide, with the company’s main markets being the United States, Europe, and Africa.
We are looking for a Security Engineer to strengthen the existing cybersecurity team and increase the level of security of the company’s products.
Responsibilities:
- Secure Software Development Life Cycle (SSDLC): implementation into the existing product development life cycle (CI), handling security analysis, vulnerabilities review and validation, communication with development teams.
- Vulnerability Management services: implementation, vulnerability validation, communication with development teams.
- Collaboration with Incident Response Team (help with incident analysis and Digital Forensics).
- DarkNet monitoring and validation. Creating automatization scripts for API and communication with the Customer’s teams. Developing automatization scripts for Threat Hunting and integrations with APIs (bash/Python/Rust/Go).
- Understanding of security testing frameworks: Information Systems Security Assessment Framework (ISSAF), Open-Source Security Testing Methodology Manual (OSSTMM), Open Web Application Security Project (OWASP), OWASP Mobile Application Security (MAS), Penetration Testing Execution Standard (PTES), NIST 800-115.
Requirements:
- Direct Security-focused education (Bachelors+) or proven equivalent experience.
- At least 1 year of security testing experience and code review.
- Security engineering experience in at least one business domain.
- Experience in troubleshooting and debugging of complex issues, good analytical skills.
- Able to work closely with other project team roles (developers, DevOps, BA, testers, architects, managers).
- Expected to be able to follow and understand a defined security process, train other team members, and contribute to process improvement.
- Understanding of concepts of a Software development process, application, infrastructure/cloud security, and their assessment methodologies.
- Scripting and Yara-rules development experience is an advantage.
- Reverse engineering skills and experience are a huge advantage.
- Digital forensics skills and experience are a huge advantage.
- At least 1 security testing certification from the following list: BTL1/BTL2, PJMR, eCDFP, eCIR, eCTHP, CCD.
- Good communication skills, proactivity and endless desire to learn.
- At least Intermediate in spoken and written English.
Genesis is a unique place for development and growth:
- Our company is built on the ability to find the best people and create unique conditions for them.
- Good remuneration allows you to focus on project development and professional growth.
- A strong team with enthusiasm — you can exchange knowledge, learn, and develop professionally.
Join us!