Назад
Company hidden
1 день назад

Penetration Tester (Cybersecurity)

42 000 - 70 000
Формат работы
hybrid
Тип работы
fulltime
Грейд
junior
Английский
b2
Страна
Spain
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Penetration Tester (Cybersecurity) (Web Applications, APIs and Infrastructure): Delivering security assessments and penetration testing strategy for Swiss Re’s digital assets with an accent on vulnerability discovery, remediation coordination, and OWASP-based testing. Focus on improving long-term testing processes, assessing AI-enabled applications and agentic systems, and communicating complex security findings to technical and business stakeholders.

Location: Madrid, Spain; hybrid setup with work from home and office premises

Base salary: EUR 42,000–70,000 annually for a full-time role, plus potential performance-based rewards and benefits.

Company

hirify.global provides reinsurance, insurance and risk-transfer solutions, with more than 15,000 employees worldwide.

What you will do

  • Improve existing penetration-testing processes and develop a long-term service strategy.
  • Own and deliver security assessments of web applications, APIs and infrastructure.
  • Produce penetration-testing reports and coordinate remediation of findings and recommendations.
  • Lead lessons-learned sessions and create security education materials for developers and other stakeholders.
  • Manage relationships with internal partners and external security-testing providers.
  • Collaborate with application owners, information-security specialists and chief information security officers across global teams.

Requirements

  • At least 2 years of experience in information security and penetration testing.
  • Understanding of software development, architecture and security frameworks including ISO 27001/2, NIST and OWASP Top 10.
  • Experience with vulnerability-management and penetration-testing tools such as Burp Suite, nmap and Qualys.
  • Proficiency in English is required.
  • Analytical thinking, a structured approach and the ability to communicate complex technical concepts clearly to business and technical audiences.
  • Interest in AI/LLM security concepts and securing AI-enabled applications and agentic systems.

Nice to have

  • Industry certifications such as SANS, CEH, Offensive Security or eLearn Security.
  • Familiarity with the OWASP Top 10 for LLM Applications, prompt-injection risks and AI security testing.
  • Additional language skills.

Culture & Benefits

  • Inclusive and flexible workplace focused on equal opportunities and professional development.
  • Collaboration with international cybersecurity and technology teams.
  • Potential performance-based bonus and additional benefits.
  • AI-powered tools may support application review, with final hiring decisions made by people.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →