Назад
Company hidden
10 часов назад

Penetration Tester (Cybersecurity)

3 500 - 6 200€
Формат работы
remote (только Europe)/hybrid/onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
France/Poland/Spain +21 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Penetration Tester (Cybersecurity): Planning and performing penetration tests across web applications, APIs, networks, Active Directory, and cloud environments with an accent on manual exploitation, privilege escalation, and risk assessment. Focus on validating vulnerabilities, producing technical and executive reports, supporting remediation and retesting, and contributing to red and purple team exercises.

Location: Remote, hybrid, or office-based work available in Austria, Belgium, Bulgaria, Croatia, Cyprus, Czech Republic, Denmark, Estonia, Finland, France, Germany, Hungary, Italy, Latvia, Lithuania, Luxembourg, Poland, Portugal, Romania, Slovakia, Slovenia, Spain, Sweden, or the Netherlands.

Salary: €3,500–€6,200 gross per month, depending on experience, location, and professional growth.

Company

hirify.global is a technology and consulting organization delivering digital infrastructure, cloud services, cybersecurity, data-driven solutions, and managed IT support for international organizations.

What you will do

  • Plan and perform penetration tests of web applications, APIs, internal and external networks, Active Directory, and cloud environments.
  • Conduct manual testing, exploitation, and privilege escalation within agreed rules of engagement.
  • Validate findings, assess business risks, and prepare technical and executive reports.
  • Present results to system owners and management, support remediation, and perform retesting.
  • Contribute to red team and purple team exercises with SOC and detection teams.
  • Maintain testing methodologies, tools, and reporting templates.

Requirements

  • At least 5 years of cybersecurity experience, including 3+ years of hands-on penetration testing.
  • Experience testing web applications and APIs according to OWASP Top 10, WSTG, and ASVS.
  • Experience with internal and external infrastructure testing, including Active Directory attacks.
  • Practical knowledge of Burp Suite Pro, Nmap, Metasploit, BloodHound, Impacket, and similar tools.
  • At least one recognized hands-on certification: OSCP, OSWE, OSEP, CRTO, eWPTX, GPEN, or GWAPT.
  • English at Upper-Intermediate level or above; clean professional records and willingness to undergo background verification.

Nice to have

  • Cloud penetration testing experience with Azure, Microsoft 365, or AWS.
  • Mobile application testing experience on Android or iOS.
  • Red teaming or purple teaming experience, including C2 frameworks.
  • Scripting and security tooling skills with Python, PowerShell, or Bash.
  • Experience with PTES, OSSTMM, NIST SP 800-115, security research, CVEs, or recognized bug bounty findings.

Culture & Benefits

  • Projects with organizations in fintech, healthcare, retail, telecom, and other industries.
  • Opportunities to change projects and develop expertise in different business domains.
  • Mentoring, onboarding, professional development, and career growth programs.
  • Corporate training portal and compensation for selected certifications.
  • Private health insurance and sports compensation depending on the employment type.
  • Additional annual bonus potential of up to €1,000 per month based on expertise and participation in company activities.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →