Lead Ethical Hacker (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Lead Ethical Hacker (Cybersecurity): Performing penetration testing and security audits for networks, infrastructure, and applications with an accent on identifying vulnerabilities and mitigating risks. Focus on Red Team activities, implementing threat modeling processes, and integrating security throughout the SSDLC.
Location: Remote or Office in Poland
Company
is a global digital solutions company providing tailored security solutions across various cybersecurity domains to help clients build trust in their systems.
What you will do
- Perform penetration testing for networks, infrastructure, web, mobile, and thick client applications.
- Conduct security audits of designs, source code, integrations, and security requirements.
- Execute Red Team activities, including social engineering and incident response simulations.
- Develop and implement threat modeling processes to identify potential security risks at early stages.
- Collaborate with development teams to integrate security throughout the SSDLC and promote secure coding standards.
- Lead and mentor a security team and support pre-sales by suggesting security approaches based on business needs.
Requirements
- 5+ years of experience in cybersecurity testing.
- Practical knowledge of Web, Network, and Cloud security (AWS, GCP, or Azure).
- Experience with DAST, SAST, and IAST methodologies.
- Familiarity with OWASP Top 10/SANS 25, PCI, HIPAA, GDPR, and current AI security trends.
- Knowledge of binary fuzzing, network protocol analysis, and 0-day investigation.
- English: Upper-intermediate (B2) proficiency required.
Nice to have
- Security certifications such as CISSP, CISA, CEH, or OSCP.
- Experience in binary security (reverse engineering and exploitation) and mobile security.
Culture & Benefits
- Opportunity to work with world-leading companies on a wide range of projects.
- High level of independence with total ownership and accountability.
- Structured career path with extensive learning and development opportunities.
- Professional growth in cybersecurity, leadership, communication, and negotiation skills.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →