This site is the archived OWASP Foundation Wiki and is no longer accepting Account Requests.
To view the new OWASP Foundation website, please visit https://owasp.org

Difference between revisions of "OWASP Jobs"

From OWASP
Jump to: navigation, search
Line 11: Line 11:
 
''OWASP does not endorse commercial products or services.''
 
''OWASP does not endorse commercial products or services.''
  
==== Employment Advice and Resources ====
+
==== Corporate Supporter Job Boards ====
'''Advice'''
+
Job web sites for OWASP Corporate Supporters:
* If your seeking employment, you are highly encouraged to watch "APPSEC HELP-WANTED" filmed at OWASP NYC 2008 with Lee Kushner (below)
+
 
<center>{{#ev:googlevideo|5330096815878108179}}</center>
+
*[http://www.aspectsecurity.com/careers.htm Aspect Security]
'''Additional Employment Resources'''
+
*[http://www.boozallen.com/careers Booz Allen Careers]
*[http://www.owasp.org/index.php/How_to_write_verifier_job_requisitions How To Describe What You Do On Your Resume]
+
*[http://www.cadincweb.com Carolina Advanced Digital]
*[http://www.ljkushner.com LJ Kushner]
+
*[http://www.cigital.com/careers/jobs.php Cigital]
*[http://www.jobbankinfo.org Americas Job Bank]
+
*[http://www.denimgroup.com/about_careers.html Denim Group]s
*[http://www.rentacoder.com/RentACoder/DotNet/default.aspx Rent A Coder]
+
*[http://www.fortify.com/company-partners/careers Fortify]
*[http://www.guru.com/index.aspx Guru]
+
*[http://www.fortitudinesystems.com Fortitudine Systems]
*[http://www.monster.com Monster]
+
*[http://www.laresconsulting.com/Vulnerability.html Lares]
 +
*[http://www.microsoft.com/careers/ Microsoft]
 +
*[http://www.milestonesystems.com Milestone Systems]
 +
*[http://www.mitre.org/employment/index.html MITRE]
 +
*[http://www.nopsec.com NopSec]
 
*[http://www.norgate.com/HD_Jobportal/job_portal.shtml Norgate Technology]
 
*[http://www.norgate.com/HD_Jobportal/job_portal.shtml Norgate Technology]
*[https://www.owasp.org/index.php/OWASP_Jobs-page1 MORE RESOURCES]
+
*[http://www.packetfocus.com Packet Focus]
 +
*[http://www.vigilar.com Vigliar]
 +
*[http://www.whitehatsec.com WhiteHat Security]
 +
 
 
<br>
 
<br>
  
Line 56: Line 63:
 
Contact [mailto:[email protected] Mary Rank]
 
Contact [mailto:[email protected] Mary Rank]
  
==== Pen Testing ====
+
==== Employment Advice and Resources ====
Job web sites for companies that perform '''Application Vulnerability Assessment''':
+
'''Advice'''
 
+
* If your seeking employment, you are highly encouraged to watch "APPSEC HELP-WANTED" filmed at OWASP NYC 2008 with Lee Kushner (below)
*[http://www.aspectsecurity.com/careers.htm Aspect Security]
+
<center>{{#ev:googlevideo|5330096815878108179}}</center>
*[http://www.boozallen.com/careers Booz Allen Careers]
+
'''Additional Employment Resources'''
*[http://www.cadincweb.com Carolina Advanced Digital]
+
*[http://www.owasp.org/index.php/How_to_write_verifier_job_requisitions How To Describe What You Do On Your Resume]
*[http://www.cigital.com/careers/jobs.php Cigital]
+
*[http://www.ljkushner.com LJ Kushner]
*[http://www.denimgroup.com/about_careers.html Denim Group]s
+
*[http://www.jobbankinfo.org Americas Job Bank]
*[http://www.fortitudinesystems.com Fortitudine Systems]
+
*[http://www.rentacoder.com/RentACoder/DotNet/default.aspx Rent A Coder]
*[http://www.laresconsulting.com/Vulnerability.html Lares]
+
*[http://www.guru.com/index.aspx Guru]
*[http://www.microsoft.com/careers/ Microsoft]
+
*[http://www.monster.com Monster]
*[http://www.milestonesystems.com Milestone Systems]
 
*[http://www.mitre.org/employment/index.html MITRE]
 
*[http://www.nopsec.com NopSec]
 
 
*[http://www.norgate.com/HD_Jobportal/job_portal.shtml Norgate Technology]
 
*[http://www.norgate.com/HD_Jobportal/job_portal.shtml Norgate Technology]
*[http://www.packetfocus.com Packet Focus]
+
*[https://www.owasp.org/index.php/OWASP_Jobs-page1 MORE RESOURCES]
*[http://www.vigilar.com Vigliar]
+
<br>
*[http://www.whitehatsec.com WhiteHat Security]
 
  
<br>
 
==== Code Reviewing ====
 
Job web sites for companies that '''security-focused code reviews''':
 
*[http://www.aspectsecurity.com/careers.htm Aspect Security]
 
*[http://www.boozallen.com/careers Booz Allen Careers]
 
*[http://www.cigital.com/careers/jobs.php Cigital]
 
*[http://www.denimgroup.com/about_careers.html Denim Group]
 
*[http://www.fortify.com/company-partners/careers Fortify]
 
*[http://www.laresconsulting.com/Vulnerability.html Lares]
 
*[http://www.mitre.org/employment/index.html MITRE]
 
*[http://www.packetfocus.com Packet Focus]
 
<br>
 
==== ES-Enabling and Other ====
 
Job web sites for companies that '''integrate ESAPI Toolkits into applications''' and do other types of security-related work:
 
*[http://www.aspectsecurity.com/careers.htm Aspect Security]
 
*[http://www.boozallen.com/careers Booz Allen Careers]
 
*[http://www.cadincweb.com Carolina Advanced Digital]
 
*[http://www.cigital.com/careers/jobs.php Cigital]
 
*[http://www.denimgroup.com Denim Group]
 
*[http://www.fortify.com/company-partners/careers Fortify]
 
*[http://fortitudinesystems.com Fortitudine Systems]
 
*[http://www.laresconsulting.com/Vulnerability.html Lares]
 
*[http://www.microsoft.com/careers/ Microsoft]
 
*[http://www.milestonesystems.com/index.php?article_id=22 Milestone Systems]
 
*[http://www.mitre.org/employment/index.html MITRE]
 
*[http://www.nopsec.com NopSec]
 
*[http://www.norgate.com/HD_Jobportal/job_portal.shtml Norgate Technology]
 
*[http://www.packetfocus.com Packet Focus]
 
*[http://www.vigilar.com Vigliar]
 
<br>
 
 
==== Grant Money and Internships ====
 
==== Grant Money and Internships ====
 
'''Grant Money'''
 
'''Grant Money'''
Line 111: Line 84:
 
* [https://www.owasp.org/index.php/OWASP_Internship_2008 Part-Time, Full-Time & Intern Opportunities w/OWASP Foundation]
 
* [https://www.owasp.org/index.php/OWASP_Internship_2008 Part-Time, Full-Time & Intern Opportunities w/OWASP Foundation]
 
<br>
 
<br>
 +
 +
==== Post Your Resume ====
 
__NOTOC__
 
__NOTOC__
 
<headertabs/>
 
<headertabs/>

Revision as of 19:09, 27 May 2009

OWASP's mission is to make application security "visible," so that people and organizations can make informed decisions about application security risks. The global economy has greatly impacted our community worldwide. As a value-add to the website we have attempted to centralize career information for you. Jobs are organized into the following categories:

  • Pen Testing - can be performed using automated tools, using manual penetration testing, or a combination of the two
  • Code Reviewing - can be performed using automated tools, using manual review, or a combination of the two
  • ES-Enabling and Other - integrating OWASP ESAPI Toolkits into applications and other types of work
  • Grant Money and Internships - available OWASP grants and internships
  • Advice and Resources - advice for job-seeking security professionals and additional resources

If your company is seeking an application security staff member post a link here to your job board

OWASP does not endorse commercial products or services.

Corporate Supporter Job Boards

Job web sites for OWASP Corporate Supporters:



Company Recruitment Postings

Req #: 1688RCG Location: San Francisco, CA Length: 3 Months to perm or Perm

Our client, who design security to harden OS's against intrusion, is looking for an engineer who has expertise in designing and developing software for web security with a focus on solutions enabled through code injection into Java and .NET application software. You will participate in a team oriented environment using Scrum operational practices.

Required experience/knowledge/skills

  • Extensive experience working on security for web applications and web interfaces.
  • Extensive experience in OWASP Top Ten web security issues, at the detailed code level.
  • Experience in web security risk identification and remediation, at the code level.
  • Three years (or more) of complex SW development using Java (must), .NET (high want) and C/C++ (want).
  • Experience and knowledge with each of (musts) XML, HTML, Javascript, PHP, and (high wants) AJAX, Ruby, and Perl.
  • Experience in the usage of multiple static and dynamic web security analysis tools (HP's Watchfire, IBM's Appscan, others).
  • Strong analytical and problem solving skills.
  • Excellent understanding of software architecture and industry best practices.
  • Strong communication skills and ability to work effectively in a collaborative team environment.
  • Self-motivated with ability to prioritize and attention to detail.

Additionally desired

  • Broad computer security expertise.
  • Intimate knowledge of computer viruses, worms, and general malware.
  • Knowledge of code packing technologies and other viral detection avoidance technologies.

Contact Mary Rank

Employment Advice and Resources

Advice

  • If your seeking employment, you are highly encouraged to watch "APPSEC HELP-WANTED" filmed at OWASP NYC 2008 with Lee Kushner (below)
EmbedVideo does not recognize the video service "googlevideo".

Additional Employment Resources


Grant Money and Internships

Grant Money

Internships


Post Your Resume