About the job
Join our dynamic team at Toss where our Security Team is dedicated to elevating our defense mechanisms to world-class standards. We meticulously assess the security of our cutting-edge financial systems and strive to integrate the latest security techniques first.
- Our team ensures that security engineers are involved from the initial development stages of all services. By collaborating with product owners, developers, and designers, we maintain a balance between usability and security.
- As a Security Researcher, your role will involve continuous security assessments across our services, performing penetration testing, and closely working with engineering teams to proactively identify and resolve vulnerabilities.
Your responsibilities will include:
- Conducting penetration tests and APT attacks on Toss's infrastructure while diagnosing system security.
- Providing technical assessments and improvement recommendations for electronic financial infrastructure.
- Researching and analyzing new hacking techniques and defense strategies.
We are looking for someone who:
- Has experience in security assessments within diverse IT infrastructure architectures and DevOps environments.
- Possesses hands-on experience with penetration testing and APT attacks on security solutions/infrastructure.
- Has a strong understanding of web and network vulnerabilities.
- Can comprehend and implement technical vulnerability assessment procedures.
Tips for your resume:
- Include your experience with various information security solutions.
- If applicable, mention your experience with APT scans, LDAP, or AD hacking.
- Detail your diagnostic experience in Kubernetes + Istio environments.
The technologies we use at Toss include:
- Java Spring Framework, JPA/Hibernate, Gradle
- Jenkins, Git, Docker, Kubernetes + Istio
- Kafka, Elastic, InfluxData, Grafana, Memcached
Please take note:
- Military personnel can transition from active duty or reserve roles, while specialized research personnel may transition only.
Your journey to join Toss:
- Application submission > Job interview > Cultural fit interview > Reference check > Compensation negotiation > Final acceptance and onboarding.
"We seek individuals who are eager to drive innovation in finance and security together."

