Ho presentato la mia candidatura online. Ho sostenuto un colloquio presso Doyensec
Colloquio
Call with recruiter, online 3hr web security challenge, and technical interview. Technical interview questions on reverse engineering, thick clients, web, android. Basic fundamental questions with in depth follow-ups going into exploit development, mitigations, and drilling down into fine details. Questions were fair, nothing unexpected. General knowledge, practical understanding, and communication skills. Seems there’s a very specific type of person they like to hire
Domande di colloquio [3]
Domanda 1
Hardware vs software breakpoints, how to bypass anti debugging
Ho presentato la mia candidatura online. La procedura ha richiesto 2 settimane. Ho sostenuto un colloquio presso Doyensec nel mese di ott 2021
Colloquio
I had total of 4 interviews. First interview was about OWASP top10 and Android/iOS questions. Then I was sent a source code review task. After completing it, I had an interview about the task. They go into detail.
Domande di colloquio [1]
Domanda 1
Implicit vs explicit intent. Favourite vulnerability. Sandbox iframe and its security implications.
They are asking hard questions actually. You have to answer all of them to pass. I couldnt give an answer for 2 questions and got rejected. But the questions were really cool.