Resume and JobRESUME AND JOB
SGS logo

Security Evaluator (Code reviewer)

SGS

Security Evaluator (Code reviewer)

full-timePosted: Jan 19, 2026

Job Description

Description

Product security is the result of a combination of security provided by hardware and software. In general, security cannot be provided by hardware alone and needs to be complemented by security implemented in software. The smallest details can make the difference between a secure and insecure product. Careful examination is therefore required to judge the security quality. As a source code reviewer you explore the software implementation of various IT products ranging from financial (including mobile payment), (U)SIMs and embedded secure elements to automotive, medical and ID products. Taking a specific product, it is your task to investigate the implemented security mechanisms and to define sophisticated attack scenarios using state-of-the-art attack methods, for example, fault injection using laser, in order to exploit the vulnerabilities you discovered. It is your responsibility to convince product developers of your findings to allow them to improve their products but it is even more important to provide sufficient argumentation to certification schemes why a product is (still) secure.

SGS Brightsight is looking for enthusiastic people who are up for this challenge and believe they have the capabilities to perform these tasks within the evaluations SGS Brightsight performs.

Furthermore, it is important that you take pride in your ability to both understand the security of a product and assess it in the context of the security requirements. SGS Brightsight works for many different types of customers and approval organizations. This means the assessment must be adapted to accommodate different stakeholders every time.

In this position, you will be part of a project team that performs product security evaluations. As a source code reviewer you are in touch with customers who are developing state-of-the-art products including the latest mobile payment applications

You are assessing the implementation of the product and provide feedback to their solution in face-to-face meetings. Customer meetings are internationally oriented, which involves discussions in different cultural contexts. You will document the findings and argumentation for both the product developer and the approval bodies. You will also support colleagues who are executing the attack scenarios you have defined.

As products are changing rapidly as are the attacks applied to these products, source code reviews require constant improvement and adaptation to keep on top of what is out in the field and could threaten products you are currently assessing. You will gain significant knowledge on secure product implementation by having access to different vendor solutions. The interaction with many developers around the world is a great experience that will trigger continuous improvement.

To get up to speed for this position you will participate in the SGS Brightsight training program on Methodology and Technology.

Qualifications

We are looking for people with a BSc, MSc or PhD. degree in a technical field (Information Security, Computer Science, Electronics, Mathematics) that have experience with software development or testing for embedded systems. You must have the ability to understand complex designs and apply conceptual thinking to distinguish what is essential from what is less important. This job also requires that you communicate knowledge convincingly, both orally and in writing, to internal and external entities.

Knowledge of (EMV) payment products is an advantage, as is experience with security evaluations, Java Cards, attack techniques and an interest in hacking products. You must have a good command of the English language.

Additional Info

WHY WORK FOR SGS BRIGHTSIGHT?

SGS Brightsight is the number one independent security evaluation lab in the world. We have over 30 years of experience in evaluating security products against a variety of requirements.

At SGS Brightsight you will:

  • Be part of a multicultural team with highly motivated colleagues from all over the world
  • Work for the recognized global leader in security evaluations
  • Work with all major developers on their latest innovations
  • Enjoy an informal and intellectually challenging work environment

Company Description

SGS Brightsight is the number one independent security lab in the world. We are expanding our mobile software security team to keep offering high-quality security evaluation services to the world’s leading OEMs and mobile devices application and solution developers.

Mobile devices are ubiquitous in everyday life. They provide our modern society with an endless range of applications and advantages. Some of these mobile devices, however, are used to handle sensitive information such as personal, financial or even medical data. Such data needs to be adequately secured and protected.

 

Locations

  • Brassersplein, Delft, ZH, Netherlands

Salary

Estimated Salary Rangemedium confidence

40,000 - 70,000 EUR / yearly

Source: ai estimated

* This is an estimated range based on market data and may vary based on experience and qualifications.

Skills Required

  • Revisión de código fuenteintermediate
  • Análisis de seguridad de softwareintermediate
  • Definición de escenarios de ataqueintermediate
  • Evaluación de productos segurosintermediate
  • Comunicación técnica en inglésintermediate

Required Qualifications

  • BSc/MSc/PhD en Information Security, Computer Science, Electronics o Mathematics (experience)
  • Experiencia en desarrollo o testing de software embebido (experience)
  • Conocimientos en productos de pago EMV, Java Cards, técnicas de ataque (ventaja) (experience)

Responsibilities

  • Explorar implementación de software en productos IT
  • Definir escenarios de ataque sofisticados
  • Documentar hallazgos para desarrolladores y certificadores
  • Apoyar ejecución de escenarios de ataque
  • Participar en programa de entrenamiento SGS Brightsight

Benefits

  • general: Equipo multicultural
  • general: Líder global en evaluaciones de seguridad
  • general: Ambiente informal y desafiante

Target Your Resume for "Security Evaluator (Code reviewer)" , SGS

Get personalized recommendations to optimize your resume specifically for Security Evaluator (Code reviewer). Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Security Evaluator (Code reviewer)" , SGS

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Answer 10 quick questions to check your fit for Security Evaluator (Code reviewer) @ SGS.

Quiz Challenge
10 Questions
~2 Minutes
Instant Score

Related Books and Jobs

No related jobs found at the moment.

SGS logo

Security Evaluator (Code reviewer)

SGS

Security Evaluator (Code reviewer)

full-timePosted: Jan 19, 2026

Job Description

Description

Product security is the result of a combination of security provided by hardware and software. In general, security cannot be provided by hardware alone and needs to be complemented by security implemented in software. The smallest details can make the difference between a secure and insecure product. Careful examination is therefore required to judge the security quality. As a source code reviewer you explore the software implementation of various IT products ranging from financial (including mobile payment), (U)SIMs and embedded secure elements to automotive, medical and ID products. Taking a specific product, it is your task to investigate the implemented security mechanisms and to define sophisticated attack scenarios using state-of-the-art attack methods, for example, fault injection using laser, in order to exploit the vulnerabilities you discovered. It is your responsibility to convince product developers of your findings to allow them to improve their products but it is even more important to provide sufficient argumentation to certification schemes why a product is (still) secure.

SGS Brightsight is looking for enthusiastic people who are up for this challenge and believe they have the capabilities to perform these tasks within the evaluations SGS Brightsight performs.

Furthermore, it is important that you take pride in your ability to both understand the security of a product and assess it in the context of the security requirements. SGS Brightsight works for many different types of customers and approval organizations. This means the assessment must be adapted to accommodate different stakeholders every time.

In this position, you will be part of a project team that performs product security evaluations. As a source code reviewer you are in touch with customers who are developing state-of-the-art products including the latest mobile payment applications

You are assessing the implementation of the product and provide feedback to their solution in face-to-face meetings. Customer meetings are internationally oriented, which involves discussions in different cultural contexts. You will document the findings and argumentation for both the product developer and the approval bodies. You will also support colleagues who are executing the attack scenarios you have defined.

As products are changing rapidly as are the attacks applied to these products, source code reviews require constant improvement and adaptation to keep on top of what is out in the field and could threaten products you are currently assessing. You will gain significant knowledge on secure product implementation by having access to different vendor solutions. The interaction with many developers around the world is a great experience that will trigger continuous improvement.

To get up to speed for this position you will participate in the SGS Brightsight training program on Methodology and Technology.

Qualifications

We are looking for people with a BSc, MSc or PhD. degree in a technical field (Information Security, Computer Science, Electronics, Mathematics) that have experience with software development or testing for embedded systems. You must have the ability to understand complex designs and apply conceptual thinking to distinguish what is essential from what is less important. This job also requires that you communicate knowledge convincingly, both orally and in writing, to internal and external entities.

Knowledge of (EMV) payment products is an advantage, as is experience with security evaluations, Java Cards, attack techniques and an interest in hacking products. You must have a good command of the English language.

Additional Info

WHY WORK FOR SGS BRIGHTSIGHT?

SGS Brightsight is the number one independent security evaluation lab in the world. We have over 30 years of experience in evaluating security products against a variety of requirements.

At SGS Brightsight you will:

  • Be part of a multicultural team with highly motivated colleagues from all over the world
  • Work for the recognized global leader in security evaluations
  • Work with all major developers on their latest innovations
  • Enjoy an informal and intellectually challenging work environment

Company Description

SGS Brightsight is the number one independent security lab in the world. We are expanding our mobile software security team to keep offering high-quality security evaluation services to the world’s leading OEMs and mobile devices application and solution developers.

Mobile devices are ubiquitous in everyday life. They provide our modern society with an endless range of applications and advantages. Some of these mobile devices, however, are used to handle sensitive information such as personal, financial or even medical data. Such data needs to be adequately secured and protected.

 

Locations

  • Brassersplein, Delft, ZH, Netherlands

Salary

Estimated Salary Rangemedium confidence

40,000 - 70,000 EUR / yearly

Source: ai estimated

* This is an estimated range based on market data and may vary based on experience and qualifications.

Skills Required

  • Revisión de código fuenteintermediate
  • Análisis de seguridad de softwareintermediate
  • Definición de escenarios de ataqueintermediate
  • Evaluación de productos segurosintermediate
  • Comunicación técnica en inglésintermediate

Required Qualifications

  • BSc/MSc/PhD en Information Security, Computer Science, Electronics o Mathematics (experience)
  • Experiencia en desarrollo o testing de software embebido (experience)
  • Conocimientos en productos de pago EMV, Java Cards, técnicas de ataque (ventaja) (experience)

Responsibilities

  • Explorar implementación de software en productos IT
  • Definir escenarios de ataque sofisticados
  • Documentar hallazgos para desarrolladores y certificadores
  • Apoyar ejecución de escenarios de ataque
  • Participar en programa de entrenamiento SGS Brightsight

Benefits

  • general: Equipo multicultural
  • general: Líder global en evaluaciones de seguridad
  • general: Ambiente informal y desafiante

Target Your Resume for "Security Evaluator (Code reviewer)" , SGS

Get personalized recommendations to optimize your resume specifically for Security Evaluator (Code reviewer). Takes only 15 seconds!

AI-powered keyword optimization
Skills matching & gap analysis
Experience alignment suggestions

Check Your ATS Score for "Security Evaluator (Code reviewer)" , SGS

Find out how well your resume matches this job's requirements. Get comprehensive analysis including ATS compatibility, keyword matching, skill gaps, and personalized recommendations.

ATS compatibility check
Keyword optimization analysis
Skill matching & gap identification
Format & readability score

Answer 10 quick questions to check your fit for Security Evaluator (Code reviewer) @ SGS.

Quiz Challenge
10 Questions
~2 Minutes
Instant Score

Related Books and Jobs

No related jobs found at the moment.