Penetration Tester (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Location: Remote, hybrid, or office-based work available in Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, France, Germany, Hungary, Italy, Latvia, Lithuania, Luxembourg, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, or the Netherlands.
Salary: €3,500–€6,200 gross per month, depending on experience, location, and professional growth.
Company
is a technology and consulting organization delivering digital infrastructure, cloud services, cybersecurity, data-driven solutions, and managed IT support for international organizations.
What you will do
- Plan and perform penetration tests of web applications, APIs, internal and external networks, Active Directory, and cloud environments.
- Conduct manual testing, exploitation, and privilege escalation within agreed rules of engagement.
- Validate findings, assess business risks, and prepare technical and executive reports.
- Present results to system owners and management, support remediation, and perform retesting.
- Contribute to red team and purple team exercises with SOC and detection teams.
- Maintain testing methodologies, tools, and reporting templates.
Requirements
- At least 5 years of cybersecurity experience, including 3+ years of hands-on penetration testing.
- Experience testing web applications and APIs according to OWASP Top 10, WSTG, and ASVS.
- Experience with internal and external infrastructure testing, including Active Directory attacks.
- Practical knowledge of Burp Suite Pro, Nmap, Metasploit, BloodHound, Impacket, and similar tools.
- At least one recognized hands-on certification: OSCP, OSWE, OSEP, CRTO, eWPTX, GPEN, or GWAPT.
- English at Upper-Intermediate level or above; clean professional records and willingness to undergo background verification.
Nice to have
- Cloud penetration testing experience with Azure, Microsoft 365, or AWS.
- Mobile application testing experience on Android or iOS.
- Red teaming or purple teaming experience, including C2 frameworks.
- Scripting and security tooling skills with Python, PowerShell, or Bash.
- Experience with PTES, OSSTMM, NIST SP 800-115, security research, CVEs, or recognized bug bounty findings.
Culture & Benefits
- Projects with organizations in fintech, healthcare, retail, telecom, and other industries.
- Opportunities to change projects and develop expertise in different business domains.
- Mentoring, onboarding, professional development, and career growth programs.
- Corporate training portal and compensation for selected certifications.
- Private health insurance and sports compensation depending on the employment type.
- Additional annual bonus potential of up to €1,000 per month based on expertise and participation in company activities.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →