Penetration Tester (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Penetration Tester (Cybersecurity): Conducting network and application level security assessments to identify and validate vulnerabilities with an accent on reporting, client communication, and tool development. Focus on using automated and manual techniques to strengthen overall security posture within a collaborative, security-oriented team environment.
Location: Must be based in or able to work from Armenia, Cyprus, Georgia, Kazakhstan, Poland, or Serbia.
Company
is a global software engineering firm that provides custom technology solutions and security assessment services.
What you will do
- Conduct comprehensive network and application security assessments.
- Use automated tools and manual techniques to identify and validate security vulnerabilities.
- Prepare detailed assessment reports including root cause analysis and remediation recommendations.
- Communicate findings, scope, and security controls directly to clients.
- Contribute to internal security research, tool creation, and methodology improvements.
- Collaborate with cross-functional teams to integrate security best practices.
Requirements
- Minimum one year of experience in vulnerability assessments and penetration testing.
- Three years of IT industry experience with technologies including Linux, Windows, Active Directory, JavaScript, .NET, and SQL.
- Proficiency in security tools like Burp Suite, Nessus, Metasploit, Nmap, and sqlmap.
- Knowledge of programming or scripting for custom security tool development.
- Ability to effectively manage self and work with customers in challenging situations.
- Must be based in one of the approved regional locations (Armenia, Cyprus, Georgia, Kazakhstan, Poland, or Serbia).
Nice to have
- Relevant security certifications such as OSCP, CRTO, CPTS, eWPT, or BSCP.
- Experience with mobile application penetration testing or binary analysis.
- Strong modern programming skills.
- Familiarity with compliance standards like PCI DSS or ISO 27000.
- Experience publishing technical content or speaking at industry events.
Culture & Benefits
- Comprehensive health insurance policy for employees and dependents.
- Sick pay policy including 10 days without a doctor's note.
- Access to IT certification coverage and top-tier learning platforms.
- Support for work-life balance with time off for state holidays.
- Comfort service to assist with everyday technical or administrative tasks.
- Active corporate culture with social events and collaborative knowledge sharing.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →