About the job
Join Our Team!
- The Security Team at Toss aims to enhance our defenses to world-class standards. We focus on assessing the security of our cutting-edge financial systems and aim to integrate the latest security techniques first.
- Our team involves security engineers from the very start of service development, ensuring that product owners, developers, and designers share a common goal of enhancing security, maintaining a balance between usability and safety.
- As a Security Researcher, you will continuously assess the security of our services, including penetration testing, while collaborating closely with the engineering team to proactively identify and resolve vulnerabilities in Toss services.
Responsibilities:
- Conduct penetration testing and vulnerability assessments on Toss's internal and external services (web, mobile apps, etc.).
- Perform APT simulations while researching and analyzing new hacking techniques and defense strategies.
- Design service architecture to ensure safe and convenient services.
We Are Looking For:
- Individuals with experience in security assessments, vulnerability testing, and penetration testing for large-scale operational services.
- Those who are passionate about new technology trends and eager to grow with their colleagues.
Resume Recommendations:
- Include experiences where you researched or established security review measures for the latest IT technologies.
- Highlight any awards from domestic or international penetration testing competitions or bug bounty experiences.
Technologies We Utilize:
- Web Hacking, Reverse Engineering, Cryptography, Mobile, Network
The Recruitment Journey at Toss:
- Application > Job Interview > Cultural Fit Interview > Reference Check > Compensation Discussion > Final Acceptance and Onboarding
A Message for Future Colleagues:
- We want to work with someone who will lead the innovation in finance and security together.
- We don't build features just to look good; if they don't add value, we won’t waste time. We are professionals who can operate independently without oversight. We are looking for colleagues who will join us in internalizing Toss's financial security technologies and drive innovation together.

