Назад
Company hidden
обновлено 10 дней назад

Senior Associate, Offensive Security (Cybersecurity)

Формат работы
hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Greece
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Associate, Offensive Security (Cybersecurity): Conducting penetration tests and adversary simulation exercises across on-premises, cloud, and hybrid environments with an accent on identifying and validating security weaknesses. Focus on mapping attack techniques to MITRE ATT&CK and collaborating with detection and remediation teams to improve security controls.

Location: Hybrid (Thessaloniki, Greece)

Company

hirify.global is a global pharmaceutical leader focused on breakthroughs that change patients' lives through digital transformation and scientific innovation.

What you will do

  • Conduct penetration tests and adversary simulation across on-premises, cloud, and hybrid environments.
  • Support red team and purple team engagements by executing test plans and evaluating defensive controls.
  • Identify and document security weaknesses with technical proof-of-concepts and remediation recommendations.
  • Map observed techniques to MITRE ATT&CK behaviors to highlight realistic attack paths.
  • Develop and improve offensive security tooling, automation, and repeatable playbooks.
  • Coordinate with SOC, incident response, and infrastructure teams to minimize business disruption.

Requirements

  • Bachelor’s degree in Information Security, Computer Science, Engineering, or equivalent practical experience.
  • 2+ years of experience in cybersecurity focusing on offensive security or penetration testing.
  • Practical experience in reconnaissance, exploitation validation, and technical reporting.
  • Knowledge of at least one scripting language such as Python, PowerShell, or Bash.
  • Ability to operate within a highly regulated environment.
  • CV must be submitted in English.

Nice to have

  • Strong knowledge of MITRE ATT&CK-aligned adversary emulation.
  • Experience in pharmaceutical, biotech, or similarly regulated industries.
  • Relevant certifications such as OSCP, CRTO, GPEN, GXPN, or CISSP.
  • Experience with cloud-specific penetration testing and social engineering simulations.

Culture & Benefits

  • Patient-centric culture guided by courage, joy, equity, and excellence.
  • Flexible workplace culture promoting work-life harmony.
  • Strong commitment to diversity, inclusion, and disability support.
  • Opportunity to contribute to a large-scale global digital transformation strategy.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →