Compass Security as an Employer

Compass stands for trust, competence, and customer orientation

The security industry is multi-faceted, exciting, and demands the highest level of continuous performance from our entire team. To support our customers' projects with skill, focus on requirements, and the highest quality, we need outstandingly talented and gifted IT specialists.

Find out here about the possible career opportunities for you at Compass Security.

Security Analyst

Do you have proven technical skills and experience in the field of ethical hacking? Join our team, develop your skills further and help us become even better with sharing your experience and knowledge

 

Compass is currently offering the following open positions:

Students

Term paper / Bachelor- or Master’s thesis collaboration

You are close to obtaining your Bachelor or Master's degree and it's time to write the final thesis. There are exciting subjects in information security waiting for someone to do some exact research in a bachelor or master’s thesis.

Contact us with a concrete proposal; maybe we can work together.

Internship

Depending on the number of internships already awarded and our current needs, we can offer you an internship. You must have completed the fourth semester at least, be a good autodidact and have a strong affinity for solving puzzles. You should have a marked interest in hacking, reverse engineering, or forensics and be able to show that you have some knowledge of this already, either from operating your own infrastructure, publishing vulnerabilities, or participating in related open source projects.

Send us your application with your resume and a cover letter to hr@compass-security.com

Apprenticeships

Compass security is not a classical software company; it is very highly specialized. We regret that it is not possible to offer computer science apprenticeships.

CALENDAR

Security Training: Secure Mobile Apps

In the 2-day course (in German) from October 20/21, 2020, you will learn about the most important security problems of mobile apps. Read more

Security Training: Social Engineering

In the 2-day course (in German) from December 1/2, 2020, you will get to know and understand the methods, tools and tricks of social engineering. Read more

ALL DATES

NEWS

Vulnerability in Mailster

Thierry Viaccoz identified an XSS vulnerability in Mailster (email newsletter plugin for WordPress). Read more

Secure Payments on th Internet

More and more goods and services are bought and paid on the internet. Ivan Bütler summarizes security relevant information on online shopping and... Read more

Vulnerability in Froala WYSIWYG HTML Editor

Security Analyst Emanuel Duss identified a DOM XSS vulnerability in the Froala WYSIWYG HTML Editor Read more

ARCHIVES

Compass Security Blog

Yet Another Froala 0-Day XSS

Compass found a DOM-based cross-site scripting (XSS) in the Froala WYSIWYG HTML Editor. HTML code in the editor is not correctly sanitized when inserted into the DOM. This allows an attacker that can... mehr

Relaying NTLM authentication over RPC

Since a few years, we - as pentesters - (and probably bad guys as well) make use of NTLM relaying a lot for privilege escalation in Windows networks. In this article, we propose adding support for... mehr

ZUM BLOG