渗透测试工程师
1. 负责对公司业务系统、网络设备、云平台及移动应用进行渗透测试与安全评估,发现潜在安全漏洞并输出报告。 2. 模拟真实攻击场景,对目标系统进行渗透、提权、横向移动等测试,验证安全防护有效性。 3. 对扫描和测试发现的漏洞进行验证、分析与复现,并提供修复建议。 4. 参与应急响应,协助分析和溯源安全事件。 5. 跟踪最新安全漏洞、攻击技术与安全工具,并进行内部技术分享。
加载中...
The Community You Will Join:
The Client Products & Emerging Technology (CP&ET) team is a global, cross-functional group dedicated to building foundational frameworks and innovative, app-wide features that shape the end-to-end experience for Airbnb’s guests and hosts. You’ll join a collaborative environment that thrives on experimentation, partnership, and continuous learning—working closely with Product, Design, Engineering, and Data partners to deliver impactful solutions across multiple platforms.
The Difference You Will Make:
As a member of a diverse and distributed team across the US and China, you’ll be expected to leverage your expertise in both backend and frontend development to play a key role in building foundational frameworks, exploring emerging technologies, driving best practices, and enabling rapid feature rollouts that integrate seamlessly throughout the Airbnb ecosystem.
A Typical Day:
Your Location
This position is China - Remote Eligible. The role may include occasional work at an Airbnb office or attendance at offsites, as agreed to with your manager. Your recruiter will inform you what cities you are able to work from depending on your personal legal working identity and Airbnb internal policies.
Our Commitment to Inclusion & Belonging:
Airbnb is committed to working with the broadest talent pool possible. We believe diverse ideas foster innovation and engagement, and allow us to attract creatively-led people, and to develop the best products, services and solutions. All qualified individuals are encouraged to apply.
Airbnb was born in 2007 when two hosts welcomed three guests to their San Francisco home, and has since grown to over 5 million hosts who have welcomed over 2 billion guest arrivals in almost every country across the globe. Every day, hosts offer unique stays and experiences that make it possible for guests to connect with communities in a more authentic way.
注册并登录后即可查看
1. 负责对公司业务系统、网络设备、云平台及移动应用进行渗透测试与安全评估,发现潜在安全漏洞并输出报告。 2. 模拟真实攻击场景,对目标系统进行渗透、提权、横向移动等测试,验证安全防护有效性。 3. 对扫描和测试发现的漏洞进行验证、分析与复现,并提供修复建议。 4. 参与应急响应,协助分析和溯源安全事件。 5. 跟踪最新安全漏洞、攻击技术与安全工具,并进行内部技术分享。
1. 安全监控与日志分析 • 负责Splunk等SIEM平台的日常运营和优化,设计并实现安全日志收集、存储、分析策略; • 监控各类安全日志,识别异常行为,分析安全事件,提升检测能力; • 创建并维护SIEM规则、仪表盘、告警策略,提高威胁检测效率。 2. 应急响应与事件处置 • 负责安全事件的应急响应,包括安全威胁分析、溯源、处置及修复; • 组织并执行安
负责Android应用架构设计与开发 熟练运用Java/Kotlin编码实现功能 基于Jetpack Compose构建UI界面 集成优化第三方库提升开发效率 参与大规模应用模块开发与维护 与团队协作确保项目按时交付 五年以上Android开发实战经验 Java/Kotlin语言基础扎实熟练 JetpackCompose有实际项目经验 掌
岗位职责: 1. 黑产挖掘与图谱分析:结合海量交易行为与链上数据,利用图神经网络(GNN)等算法,挖掘并监控线上羊毛情报及高危地址网络。 2. 风控策略辅助与风险预测:利用 AI 辅助进行风控规则梳理、策略优化,自动挖掘现有风控规则的漏洞,研发前瞻性的风险预测模型,实现防患于未然。 3. 市场操纵与违规交易检测:针对洗盘(Wash Trading)、对敲、虚假报价(Spoof