Aller au contenuAller au pied de page
  • Emplois
  • Entreprises
  • Salaires
  • Pour les employeurs

      Boostez votre carrière

      Découvrez votre salaire potentiel, décrochez des emplois de rêve et partagez vos témoignages de manière anonyme.

      employer cover photo
      employer logo
      employer logo

      Amazon

      Employeur impliqué

      À propos
      Avis
      Salaires et avantages
      Emplois
      Entretiens
      Entretiens
      Recherches associées: Avis sur Amazon | Offres d’emploi chez Amazon | Salaires chez Amazon | Avantages sociaux chez Amazon
      Entretiens chez AmazonEntretiens d’embauche pour Penetration Testing chez AmazonEntretien chez Amazon


      Glassdoor

      • À propos
      • Récompenses
      • Blog
      • Nous contacter
      • Guides

      Employeurs

      • Compte employeur gratuit
      • Centre employeur
      • Blog pour les employeurs

      Informations

      • Aide
      • Règles de la communauté
      • Conditions d'utilisation
      • Confidentialité et choix publicitaires
      • Ne pas vendre ni partager mes informations
      • Outil de consentement aux cookies

      Travailler avec nous

      • Annonceurs
      • Carrières
      Télécharger l'application

      • Parcourir par :
      • Entreprises
      • Emplois
      • Lieux

      Copyright © 2008-2026. Glassdoor LLC. « Glassdoor », son logo, « Worklife Pro » et « Bowls » sont des marques déposées de Glassdoor LLC.

      Entreprises suivies

      Tenez-vous au courant des dernières opportunités et profitez de conseils d’initiés en suivant les entreprises de vos rêves.

      Recherche d’emplois

      Obtenez des recommandations et des mises à jour personnalisées en démarrant vos recherches.

      Entretien pour Penetration Testing

      10 nov. 2020
      Candidat à l'entretien anonyme
      Londres, Angleterre
      Aucune offre
      Expérience neutre
      Entretien difficile

      Candidature

      J'ai postulé en ligne. J'ai passé un entretien chez Amazon (Londres, Angleterre) en oct. 2020

      Entretien

      Applied online. Arranged a call upon one cancellation due to the different time zones. Eventually arranged a call in the evening on my local time. The interview started with the question of my personal experience on: "Describe me a bug you recently found in the code". The thing is my position does not primarily involve any code development and I considered it bad to simply say that, so I improvised. However, that made me quite anxious and had a serious impact on my next answers. Then, I had to solve a problem with using a scripting language. However, it is not specific what is expected on your end so, even though I started with bash, I, then, asked to work with python, which does not look quite well either. Another issue is the fact that you are writing code in a simple online text editor, but the interviewer is going to execute that code, which does not allow any specificities to be omitted. The rest of the questions are outlined below. Long story short, I failed and it is definitely an issue on my end. However, it needs to be noted also that the interviewer was not quite willing to guide the interview process, rather he was looking forward to the end of it. The process is not quite well described in terms of expectations and what you will have to do or write during it and the overall experience ended up being quite stressful. However, again, I believe that primarily was my issue and lack of knowledge.

      Questions d'entretien [4]

      Question 1

      What potentially issue exist with Java deserialization, why can it be exploited and how can it be mitigated?
      Répondre à cette question

      Question 2

      Symmetric vs Asymmetric cryptography? Encryption vs Signing? Is it possible for encryption to take place without signing?
      Répondre à cette question

      Question 3

      You have a docker setup with various clients files on it. What are the possible attacks there?
      Répondre à cette question

      Question 4

      The RFC for the GET request mentions: "The GET method means retrieve whatever information (in the form of an entity) is identified by the Request-URI." What is the possible issue here?
      2 réponse(s)