Назад
Company hidden
2 дня назад

Penetration Tester (Cybersecurity)

3 000 - 5 000
Формат работы
remote (Global)/hybrid/onsite
Тип работы
fulltime
Грейд
middle/senior
Английский
b2
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Penetration Tester (Cybersecurity): Conducting security assessments and managing application security programs for international digital projects with an accent on web application testing, cloud infrastructure security, and SSDLC implementation. Focus on securing CI/CD pipelines, performing vulnerability analysis, and collaborating with engineering teams to remediate security findings.

Location: Remote, hybrid, or onsite options available worldwide.

Salary: EUR 3,000–5,000 per month (gross).

Company

hirify.global is a pre-IPO software development company providing full-cycle services to enterprises and mid-sized firms across various industries worldwide.

What you will do

  • Perform penetration tests on web servers, applications, and internal infrastructure.
  • Manage application security programs and implement SSDLC practices.
  • Review IaC codebases and secure GitOps CI/CD pipelines.
  • Integrate and tune SAST/DAST security tools to optimize vulnerability detection.
  • Secure cloud-native infrastructure (AWS, Azure) and Kubernetes clusters.
  • Communicate findings to stakeholders and assist developers in vulnerability remediation.

Requirements

  • 2+ years of hands-on experience in Application Security or Penetration Testing.
  • English proficiency: Upper-Intermediate (B2) or higher.
  • Deep expertise in web application penetration testing and vulnerability assessment.
  • Experience securing cloud-native environments and containerized infrastructure.
  • Strong knowledge of IaC security, Linux/Windows hardening, and networking.
  • Proficiency in scripting (Python, Bash, PowerShell) and security tooling (Burp Suite, Metasploit).

Nice to have

  • OSCP certification.
  • Experience with bug bounty programs and threat modeling.
  • Familiarity with DevSecOps practices and security automation.
  • Experience with blue team or defensive security activities.

Culture & Benefits

  • Flexible work arrangements: remote, hybrid, or office-based.
  • Private health insurance and sports activity compensation.
  • Access to a corporate training portal and certification compensation (AWS, PMP, etc.).
  • Mentoring and adaptation systems for professional and career growth.
  • Opportunities to work with global industry leaders in FinTech, Healthcare, and Retail.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →