Security Test Engineer

Beijing • Technology • Full Time

Work content:

1. Responsible for security inspection and penetration testing, and formulate solutions for major vulnerabilities discovered;

2. Assist relevant departments to do loophole repair and system reinforcement work;

3. Assist the development department to complete the black box test before the system goes online;

4. Assist in the formulation and implementation of security strategies for servers and core systems.


1. Bachelor degree or above, more than 3 years of work experience, computer and other related majors;

2. Familiar with OWASP TOP10, with theoretical foundation in network security, system security, Web security, etc.;

3. Proficient in web attack methods, sql injection, XSS attack, command injection, CSRF attack, upload vulnerability, parsing vulnerability, etc.;

4. Familiar with common scripting languages, able to perform WEB penetration testing, malicious code detection and analysis;

5. Have a strong sense of responsibility and the ability to work independently;

6. Familiar with the use, configuration and reinforcement of mainstream LINUX, database and middleware;

7. Familiar with mainstream safety protection products and testing tools;

8. With security experience in Internet companies, experience in vulnerability mining is preferred.

