TL;DR
Penetration Tester: Planning and executing attack simulation engagements, identifying vulnerabilities, and recommending mitigation strategies for applications and products with an accent on Windows, Linux, web application, and API security testing. Focus on conducting source code security assessments for C#, C, C++, and TypeScript, as well as sharing knowledge within the testing team and educating developers on secure coding practices.
Location: Hybrid in Ballerup, Denmark
Company
hirify.global brings people closer through our leading intelligent hearing, audio, video, and gaming solutions.
What you will do
- Assist in planning and executing attack simulation engagements against applications and products.
- Identify vulnerabilities and misconfigurations.
- Recommend mitigation strategies for identified vulnerabilities to relevant stakeholders.
- Share knowledge within the testing team and possibly educate developers on secure coding practices.
Requirements
- Have a higher background within Computer Science, Information Technology, or a related field.
- Experience in testing complex applications, either from a prior position as a penetration tester or bug bounty.
- A solid understanding of Windows and Linux.
- Proven ability with penetration testing methodologies.
- Ability to effectively communicate security findings to relevant stakeholders and explain their impact both verbally and in writing.
- Experience in web application and API security testing.
- Ability to conduct source code security assessments for C#, C, C++, and TypeScript.
Nice to have
- Hardware and IoT device security testing.
- Reverse engineering of Linux and Windows binaries.
- Mobile application security testing (iOS and Android).
- Active Directory and Entra ID security assessments.
- Azure Cloud security assessments.
Culture & Benefits
- Collaboration, knowledge sharing, and continuous improvement.
- Secure environment that supports innovation and growth.
- Work closely with other IT teams, the CISO, and key stakeholders across hirify.global.
- Informal yet global work environment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →