Veracode – Research Engineer

Company
Veracode
staffondemand.sg
Designation
Research Engineer
Date Listed
18 Jan 2019
Job Type
Entry Level / Junior Executive
Full/Perm
Job Period
Flexible Start - Flexible End
Profession
IT / Information Technology
Industry
Computer and IT
Location Name
Central Business District (CBD)
Allowance / Remuneration
$5,000 - 6,500 monthly
Company Profile

SECURING THE SOFTWARE THAT POWERS YOUR WORLD IS A BIG JOB. We''re focused on that mission every day. Application security isn''t part of our business, it''s our only business. And it''s the driving force behind everything we do. At Veracode, we inspire a culture of innovation and infuse creativity into all our initiatives.
Veracode is the leader in the application security space, with the most comprehensive offering available. We take our mission to secure the software that powers your world seriously. Our award-winning, industry-leading products dominate the AppSec market!

Job Description

As a research engineer you will work closely with the Veracode engineering team to research and maintain our vulnerability database. You will also help identify new vulnerability data sources and implement processes to improve the quality of our data. As part of this team you will get the opportunity to work on improving the state of security in open-source code. We provide a great engineering culture and give lot of autonomy to individuals to work on interesting problems relevant to our business that can have big impact.

Responsibilities:

  • Review incoming commits, emails, and bug reports to look for vulnerabilities in open source libraries
  • Triage the newest vulnerabilities released
  • Track library release notes and associated security bulletins Publish high quality vulnerability advisories with exploit information, details about risk, and mitigation/workaround details
  • Develop tools and techniques to identify new vulnerabilities and analyze vulnerable methods
  • Perform risk assessments on vulnerabilities identified, then describe the risk posed to customers
  • Use in-house tooling and/or custom tooling to do low probability, high payoff moonshot style research into the most popular libraries
  • Other activities relating to security research around library vulnerabilities
This position is already closed and no longer available.  You may like to view the other latest internships here.

Related Job Searches:

Discuss this Job:

You can discuss this job on Clublance.com #career-jobs channel, or chat with other community members for free:
Share This Page