4 часа назад
Junior Offensive Security Engineer
38 000 - 54 000€
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Junior Offensive Security Engineer (Cybersecurity): Securing cloud infrastructure, mobile applications, and web applications through penetration testing, code and architectural reviews, and security automation with an accent on mobile security, web vulnerabilities, and attack simulation. Focus on bypassing security controls with Frida, creating proof-of-concept exploits, testing detection capabilities, and documenting remediation steps.
Location: Milan, Italy; hybrid work with three days per week in the office (Tuesday, Thursday, and one additional day of choice). Extra remote time may be requested.
Salary: €38,000–€54,000 gross per annum.
Company
is building a financial platform that enables 6 million users to pay, save, and invest.
What you will do
- Perform penetration testing on iOS, Android, and web applications under the guidance of senior security engineers.
- Use tools such as Frida to bypass security controls and analyze application behavior at runtime.
- Review source code, business logic, architecture, and cloud infrastructure for security flaws.
- Develop scripts, proof-of-concept exploits, and result-parsing tools to automate testing workflows.
- Test monitoring capabilities through attack simulations and contribute to detection strategy improvements.
- Write technical reports and document remediation steps for development teams.
Requirements
- Good knowledge of information security fundamentals, networking, web application architecture, and common vulnerabilities such as SQL injection, XSS, IDOR, and race conditions.
- 0–2 years of experience through internships, university projects, CTFs, bug bounties, or personal research.
- Ability to read and write at least one scripting language, such as Python, for automation and simple proof-of-concept development.
- Strong interest in Android and iOS security, with exposure to Frida or Objection considered a useful starting point.
- Clear communication, eagerness to learn, and ability to work collaboratively.
Nice to have
- Contributions to open-source security tools or published CVEs.
- Cybersecurity certifications such as eJPT, OSCP, or PortSwigger.
- Familiarity with AWS or other cloud environments, Burp Suite, and Nmap.
Culture & Benefits
- Private health insurance for employees and their families, psychological support, and mental health workshops.
- Stock Option Plan, meal vouchers, and relocation support for employees moving countries.
- Professional development programs, internal mobility, and language courses.
- Unlimited PTO, flexible working hours, and a hybrid working policy.
- Enhanced parental leave and additional leave for child sickness.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
4 часа назад
Security Architect (Cybersecurity)
50 000 - 60 000€
4 часа назад
Security Governance Analyst (Cybersecurity)
40 000 - 50 000€
4 часа назад
Vulnerability Governance Analyst (Cybersecurity)
40 000 - 50 000€
9 часов назад
Senior Security Incident Response Analyst (Fintech)
6 дней назад
Cloud & AI Security Architect
18 часов назад