Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Matasano Security - Chicago. New York City. Sunnyvale. Job Title: Application Security Consultant

Have you ever seen the 1992 film Sneakers? Near the start, we see Martin Bishop (Robert Redford) close out a bank account, and take the proceeds to the managers. He pretty tersely says something like:

"Gentlemen, your communication lines are vulnerable. Fire exits need to be monitored. Your rent-a-cops are a tad undertrained. Outside of that, everything seems to be fine. You'll get our full report in a few days. But first, who's got my check?""

Cut to a bank secretary, writing Martin a check.

"So, people hire you to break into their places... ...to make sure no one can break into their places?"

Whenever I'm asked to explain what we do at Matasano, this scene comes to mind. Our work is the digital equivalent; breaking applications so they can be made stronger and more resilient to attack, inoculating the world's software like a binary flu shot.

Modern applications are a lot like the bank in the movie. Authentication protects the front door, much like the bank's cameras and guards. Encryption often protects sensitive data, similar to how steel lined walls protect a bank vault. Communication protocols convey information in and out, like armored cars ferrying cash to and fro. Finding the application's 'communication lines', 'fire exits', and 'rent-a-cops' is our goal. As Application Security Consultants we seek the overlooked, the neglected, the unexpected flaws in an application's code. Like Martin, we show how these weaknesses can lead to overall failure of the application, and we do this so it can be improved.

Later in the movie, Cosmo (Ben Kingsley), a villainous ex-con says: "The world isn't run by weapons anymore, or energy, or money. It's run by little ones and zeroes, little bits of data. It's all just electrons." In 1992, that might've been hyperbolic but it's becoming more true every day.

If being part of ensuring the systems we all rely on continue to function safely and reliably, we should talk. If working with smart people on the cutting edge of technology excites you, we should talk. If diving deeply into a wide variety of technologies and facing new challenges daily appeals to you, we should talk. If tearing apart application code and making it do things that its creators didn't intend is fun for you, we should talk.

You can get a taste for the sorts of things we do at www.microcorruption.com and www.cryptopals.com.

Reach out to us at careers@matasano.com or by visiting our web site.



This is an amazing advert for your culture. Way to show a little personality! What kinda dorks do you need again?


AppSec dorks. Not an appsec dork? Want to be? We'll help you get there (then give you a job).


I was in talks with Rusty about scheduling an interview, but unfortunately would only hear from him about once a week and then he stopped emailing back. I think this is something that needs to change, because he would ask for interviews within 3 hours of the email and then repeat the next week. This is a company I really want to work for, but it's impossible to talk to anyone.


What kind of experience do you need to get started?


Oh man, microcorruption is so cool!




Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: