You’ll join the Security Operations team of hackers, defenders, and ‘if it’s fixable, consider it done’ problem solvers. A team where ‘red’ and ‘blue’ specialists blend into a beautiful purple squad that keeps the bol.com platform safe and secure. We build and run security solutions for and across the entire bol.com landscape. That includes the ‘usual suspects’ like customer and partner facing platforms, office solutions, and the cloud environment, but it also encompasses the logistical ecosystems that keep our fulfillment centers humming and the parcels on our conveyor belts cruising. You have two direct colleagues (who are big on white Stetsons) and six (for now!) ‘blue team’ security engineers. In addition to hacking and engineering, (y)our team is responsible for security incident management: keeping track of bol.com’s overall security position (systems and data) and running various big security projects.
As an Ethical Hacker, you use your offensive prowess to ‘attack’ our platform, pen testing on request (e.g., for product teams) and on your own initiative. You base your actions on risk priority: high risk threats take precedence over low risk stuff. Other responsibilities include reviewing technical designs/ideas, “breaking stuff on paper sessions,” vulnerability assessments of apps/systems/networks, and threat modeling to help product teams assess their own risks and those inherent in their solutions. Plus anything and everything else that needs doing, but nobody thought to mention. As for the atmosphere: