Talkdesk logo
Talkdesk3.0

Security Engineer (Pentesting, Incident Response & Investigations)

Tempo inteiroTempo inteiroPublicado há 3 dias

SEM TEMPO AGORA?

Avisamos-te de novas vagas como esta

Recebe um email quando a Talkdesk abrir novas vagas.

Join Talkdesk as a Security Engineer specializing in Pentesting, Incident Response, and Security Investigations. You will play a key role in detecting, investigating, and preventing security incidents while proactively identifying weaknesses across our platforms and applications. This role involves performing manual and automated penetration testing of web applications, APIs, cloud-based systems, and AI/ML models, conducting security assessments focusing on emerging threats like prompt injection and adversarial attacks, and leading incident response efforts including detection, containment, and eradication.

Your responsibilities will include analyzing logs and forensic artifacts to support investigations, triaging and validating findings from penetration tests, working with engineering teams to explain vulnerabilities and verify fixes, performing threat modeling using methodologies like STRIDE, and continuously researching emerging threats and attack techniques. You will act as a security subject-matter expert during incidents and high-risk technical discussions, helping improve Talkdesk's overall security posture through proactive testing and lessons learned. This position requires strong application and systems security knowledge, practical penetration testing experience, understanding of OWASP Top 10 and AI exploitation patterns, and excellent communication skills.

Responsabilidades

  • Perform manual and automated penetration testing of web applications, APIs, cloud-based systems, and AI/ML models
  • Conduct security assessments of AI-driven features, focusing on risks like prompt injection, data leakage, and adversarial attacks
  • Conduct security investigations to identify root causes, attack paths, and impact of security incidents
  • Lead or actively participate in incident response, including detection, containment, eradication, and post-incident reviews
  • Analyze logs, telemetry, and forensic artifacts to support investigations and threat hunting activities
  • Triage, validate, and prioritize findings from internal and external penetration tests
  • Work closely with engineering teams to explain vulnerabilities, recommend pragmatic remediations, and verify fixes
  • Support the development and improvement of incident response playbooks and processes
  • Perform threat modeling (e.g., STRIDE) to identify realistic attack scenarios
  • Continuously research emerging threats, attack techniques, and exploitation methods relevant to the environment
  • Act as a security subject-matter expert (SME) during incidents and high-risk technical discussions
  • Help improve Talkdesk's overall security posture through lessons learned and proactive testing

Competências

Application SecuritySystems SecurityWeb TechnologiesPenetration TestingOWASP Top 10AI SecurityPrompt Injection DetectionSecurity InvestigationsIncident ResponseLog AnalysisForensic AnalysisThreat HuntingCryptographyLinux/UnixPythonSecurity Event AnalysisSTRIDE Threat ModelingCloud SecurityAWSAPI SecurityMobile Application SecurityDASTSASTIASTGitRubyKotlinRabbitMQRedisMongoDBPostgreSQL

VAGAS SEMELHANTES

3 outras vagas na Talkdesk perto de ti

Benefícios

Inclusive and diverse workplace culture
Community involvement and volunteer opportunities
Global team with autonomy to drive meaningful impact
Agile and collaborative work environment
Peer review culture
Continuous learning opportunities

A Talkdesk EM NÚMEROS

Trabalhar na Talkdesk

2.0k

colaboradores

3.0

2 reviews

Colegas fantásticos em muitas equipas. Benefícios como semana de 4 dias em Agosto. Flexibilidade de trabalho remoto. Produto com potencial.
Ex-colaborador · Product Manager
MARIA · TUA COACH IA

Posso preparar-te a entrevista para esta vaga em 5 minutos.

Candidatar-se a esta vaga

A sua candidatura é submetida no okemprego e processada pela InterviewHR.

Ao carregar o teu CV, concordas com a nossa Política de Privacidade e Termos de Utilização.

Esta candidatura é processada pela InterviewHR.

A sua candidatura poderá ser partilhada com a empresa anunciante.

Esta candidatura é submetida via InterviewHR, parceiro da okemprego. · Privacidade · Termos