CrawlJobs Logo

Senior Penetration Tester

https://www.soprasteria.com Logo

Sopra Steria

Location Icon

Location:
Belgium , Brussels

Category Icon

Job Type Icon

Contract Type:
Employment contract

Salary Icon

Salary:

Not provided

Job Description:

As a Penetration Tester, you'll conduct regular, comprehensive security assessments including network, web application, and mobile penetration testing using tools like Metasploit, Burp Suite, and Wireshark to safeguard Sopra Steria's digital transformation services. You'll be integrated in our cybersecurity team working on different projects within the Public sector (European Commission, NATO, Ministries, European Council).

Job Responsibility:

  • Scoping and executing of complex penetrations test across a wide scope of technologies, products, services, and applications and critical infrastructure companies
  • Helping the team to define and improve the internal security testing programme
  • Documenting technical issues both Cyber and IT related during testing assessments
  • Improve our monitoring services by working in purple style exercises and operating in a red team capacity to improve the ability to detect and respond to threats
  • Supporting incident response by providing context and expertise around cyber threats
  • Mentor to our junior & medior colleagues

Requirements:

  • Minimum of 5 years' experience in one or more of the following areas: Penetration Tester, Red/Purple Team Member, Security Engineer
  • Knowledge of technologies up to system level (web frameworks, communications protocols, database systems)
  • Offensive security knowledge of cyber-attack techniques, vulnerabilities, and mitigation strategies
  • Knowledge of penetration testing tools, frameworks, and methodology
  • Skills using Kali Linux, Nmap, PowerShell, Metasploit, Cobalt Strike, OWASP ZAP, Burp Suite
  • Proficiency in scripting
  • Awareness of frameworks such as MITRE ATT&CK and NIST and how they can be applied effectively within an enterprise
  • Familiarity with the latest exploits, tactics, techniques, and procedures (TTP), vulnerability remediation and security trends
  • Cyber security qualifications from Offensive Security, SANS, Pentester Academy, CREST, eLearnSecurity or others

Nice to have:

Fluency in English, French and/or Dutch is a plus

What we offer:
  • Extensive career development opportunities, both local and international
  • Part of a dynamic network of 56,000 professionals at all stages of their careers
  • Wide array of offices to explore

Additional Information:

Job Posted:
October 22, 2025

Employment Type:
Fulltime
Work Type:
On-site work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Senior Penetration Tester

Senior Penetration Tester

The role involves conducting deep-dive vulnerability assessments on a variety of...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree with a minimum of 5 years of experience
  • Expertise in Java, JavaScript (React, Node.js), .NET (ASP.NET, C#, Webflow, MVC, WebAPI), Application Infrastructure (Web/Application Servers, Databases, Middleware Components), and Cloud Computing (Google Cloud Platform, AWS, Azure)
  • Expertise in application security, ethical hacking using security tools (Burp Suite, AppScan), knowledge of OWASP Top 10, CWE/SANS Top 25, Threat Modeling
  • Industry-accredited security certifications such as GIAC GWAPT, GPEN, GXPN, OSCP and/or CISSP
Job Responsibility
Job Responsibility
  • Act as a subject matter expert in offensive information security
  • Drive remediation by outlining a defense-in-depth approach
  • Report and articulate vulnerability assessment results
  • Contribute to the review of internal processes and activities
  • Fulltime
Read More
Arrow Right

Senior Penetration Tester

A senior penetration tester's main responsibility is to execute highly complex a...
Location
Location
Belgium , Olen
Salary
Salary:
Not provided
belden.com Logo
Belden, Inc
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of hands-on experience in penetration testing, red teaming, or a related offensive security role
  • Relevant industry certifications such as Offensive Security Certified Professional (OSCP), Certified Ethical Hacker (CEH), or GIAC certifications (e.g., GPEN, GWAPT)
  • Proficiency in at least one scripting language (e.g., Python, Ruby, PowerShell) for automating tasks and developing custom tools
  • Deep knowledge of Windows and Linux/Unix operating systems
  • Strong understanding of TCP/IP, network protocols, and common network services
  • Extensive experience with common web vulnerabilities (e.g., OWASP Top 10) and familiarity with various web application frameworks
  • Experience with penetration testing in at least one major cloud provider (e.g., AWS, Azure)
  • Excellent written and verbal communication skills
  • Strong problem-solving and analytical abilities
  • Ability to work independently and as part of a team
Job Responsibility
Job Responsibility
  • Executing Advanced Penetration Tests: conduct in-depth security assessments on complex systems, including web applications, cloud environments, networks, and mobile applications
  • Developing Custom Tools and Exploits: develop own scripts and exploits to bypass sophisticated security controls and find zero-day vulnerabilities
  • Technical Mentorship: Guiding and mentoring junior and mid-level testers
  • Reporting and Communication: writing detailed technical reports that clearly outline vulnerabilities, their potential impact, and actionable recommendations for remediation
  • Staying Current: continuously research new threats, attack vectors, and security technologies
Read More
Arrow Right

Senior Penetration Tester

Serve as a Subject Matter Expert providing testing expertise of the Risk Managem...
Location
Location
United States , Annapolis Junction
Salary
Salary:
Not provided
ctp-web.com Logo
Columbia Technology Partners
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Eight (8) experience of related work experience as a Penetration Tester performing both network and application-level testing using established test protocols and methods
  • A Bachelor's degree in Computer Science or a related field (e.g. General Engineering, Computer Engineering, Electrical Engineering, Systems Engineering, Mathematics, Computer Forensics, Cybersecurity, Information Technology, Information Assurance, Information Security, and Information Systems)
  • In lieu of a Bachelor's degree, four (4) additional years of Penetration Testing experience maybe substituted
  • U.S. Citizenship is required for all applicants
  • All applicants and employees are subject to random drug testing in accordance with Executive Order 12564
  • Employment is contingent upon successful completion of a security background investigation and polygraph
  • DoD 8570 compliance with IAT III is required
  • This position requires an active Security Clearance with appropriate Polygraph
Job Responsibility
Job Responsibility
  • Serve as a Subject Matter Expert providing testing expertise of the Risk Management Framework
  • Direct and/or participate in the testing phase of security controls assessments using specialized knowledge of network protocols, operating systems, architectures, equipment, services, and standards
  • Perform vulnerability and penetration testing using a wide variety of tools
  • Research and evaluate emerging technologies relevant to information systems security
  • interpret agency specific and federal security regulations
  • Perform both network and application-level testing using established testing protocols and methods
What we offer
What we offer
  • Medical: CTP offers 3 superior plans, bringing our employees both in-network and out-of-network options
  • Vision + Dental: Both free to you + paid in full by CTP
  • Retirement: 401k - 6% company contribution
  • PTO + Leave: A work life balance is extremely important to our team here at CTP, which is why our paid time off plans are so lucrative. Offering customizable leave plans to meet your needs is just one of our many perks! Jury Duty, Bereavement + Military Leave provided
  • Career Growth: Up to $10,000 provided for approved career-related learning, training, education, and/or tuition
  • Life and AD&D Insurance/Short-Term & Long-Term Disability: More peace of mind, at zero cost to you
  • Profit Sharing Bonus: End of year cash gets added to your bottom-line
  • Referral Bonus Program: Our tiered program provides an incentive with each stage of the hiring process your referral passes. Our bonuses range from $7,000-$20,000, if your referral joins the team
  • Fulltime
Read More
Arrow Right

Senior Penetration Tester

Ryanair Labs are currently recruiting for a Senior Penetration Tester to join Eu...
Location
Location
Ireland , Dublin
Salary
Salary:
Not provided
ryanair.com Logo
Ryanair - Europe's Favourite Airline
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 4+ years of information security and penetration testing work experience preferred
  • Proficiency in security assessments and the ability to conduct threat modelling for a wide range of systems, applications, and infrastructure
  • Strong understanding of network protocols, operating systems (Linux, Windows), web applications, Active Directory, and cloud environments (e.g., AWS, Azure)
  • Good programming skills. Python is our default, but any other language is welcome
  • Experience in engaging with business stakeholders to define test scope, gather requirements, and communicate findings
  • Excellent communication skills in English, with the ability to translate complex technical findings into clear reports for both technical and non-technical audiences
  • Capable of working independently or in a team
  • Relevant penetration testing or offensive security certifications (e.g., OSCP, OSWE, CRTP, CRTE) are preferred
Job Responsibility
Job Responsibility
  • Conduct penetration tests on web applications, internal and external networks, mobile platforms, APIs, cloud environments (e.g., AWS, Azure), PCI environments and physical assets. This task includes the scope definition and inventorying of the applications that will be assessed
  • Deliver detailed technical reports and executive summaries with clear remediation recommendations
  • Assist in the development of internal methodologies, frameworks, and toolsets
  • Develop custom tools, scripts, and exploits to support advanced testing scenarios
  • Stay current with the latest threats, vulnerabilities, and exploit techniques
What we offer
What we offer
  • A competitive but flexible technical career plan
  • Optional discounts on health insurances (various companies)
  • Travel discounts
  • Fulltime
Read More
Arrow Right
New

Senior Penetration Tester

Serve as a Subject Matter Expert (SME) in the testing and evaluation of security...
Location
Location
United States , Annapolis Junction
Salary
Salary:
Not provided
ctp-web.com Logo
Columbia Technology Partners
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • U.S. Citizenship is required for all applicants
  • Minimum of eight (8) years of relevant experience as a Penetration Tester, performing both network and application-layer testing with established testing methods
  • Bachelor's degree in Computer Science or a related technical field (e.g., Computer Engineering, Electrical Engineering, Systems Engineering, Mathematics, Cybersecurity, Information Technology, Information Assurance, Information Security, or Information Systems)
  • In lieu of a bachelor's degree, an additional four (4) years of penetration testing experience may be substituted
  • DoD 8570 compliance with IAT III is required
  • This position requires an active Security Clearance with appropriate Polygraph
  • All applicants and employees are subject to random drug testing in accordance with Executive Order 12564
  • Employment is contingent upon successful completion of a security background investigation and polygraph
Job Responsibility
Job Responsibility
  • Conduct vulnerability assessments and penetration testing using a wide range of security tools
  • Perform both network-level and application-level security testing following established methodologies and protocols
  • Research, analyze, and assess emerging technologies relevant to information systems security
  • Interpret and apply federal and agency-specific security regulations to ensure compliance and strengthen security posture
  • Serve as a Subject Matter Expert (SME) in the testing and evaluation of security controls within the Risk Management Framework (RMF)
  • Lead or participate in security control assessment activities by leveraging deep expertise in network protocols, operating systems, system architectures, equipment, services, and applicable standards
What we offer
What we offer
  • Medical: CTP offers 3 superior plans, bringing our employees both in-network and out-of-network options
  • Vision + Dental: Both free to you + paid in full by CTP
  • Retirement: 401k - 6% company contribution
  • PTO + Leave: Offering customizable leave plans
  • Jury Duty, Bereavement + Military Leave provided
  • Career Growth: Up to $10,000 provided for approved career-related learning, training, education, and/or tuition
  • Life and AD&D Insurance/Short-Term & Long-Term Disability: at zero cost to you
  • Profit Sharing Bonus: End of year cash gets added to your bottom-line
  • Referral Bonus Program: Our bonuses range from $7,000-$20,000, if your referral joins the team
  • Fulltime
Read More
Arrow Right
New

Penetration Tester

Are you an ambitious cybersecurity professional with a passion for uncovering vu...
Location
Location
United Kingdom
Salary
Salary:
Not provided
jobs.360resourcing.co.uk Logo
360 Resourcing Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Hands-on experience in penetration testing or IT Health Check delivery
  • Current penetration testing qualification such as CREST Practitioner Security Analyst (CPSA), Crest Registered Tester (CRT), or Cyber Scheme Team Member (CSTM)
  • 2+ years of penetration testing experience (or equivalent practical experience)
  • Eligibility to obtain and maintain UK security clearances
  • Familiarity with common tools such as Burp Suite, Nmap, Nessus, Metasploit, etc.
  • Understanding of network protocols (TCP/IP, OSI model) and common web application vulnerabilities
Job Responsibility
Job Responsibility
  • Keep your penetration testing qualifications current and continue developing your technical expertise in line with business needs
  • Support the delivery of IT Health Checks and penetration tests, identifying vulnerabilities and providing clear, actionable recommendations to clients
  • Work closely with senior consultants, sharing insights and best practices while contributing to a culture of learning within the Security Testing Practice
  • Expand your skill set to offer a range of security testing services that support evolving business and client requirements
What we offer
What we offer
  • We offer competitive pay, 25 days holiday (rising to 27), 2 volunteering days, 1 personal day, plus bank holidays
  • Our benefits include a company-matched pension, life assurance, enhanced parental leave, cycle2work scheme, and more
Read More
Arrow Right

Application Security Engineer II

In this role, you will support Rackspace's application security program by imple...
Location
Location
India
Salary
Salary:
Not provided
rackspace.com Logo
Rackspace
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 2-4 years in the information security field
  • Experience working with application security, security testing, or DevSecOps practices
  • Working knowledge of the SDLC, security concepts, and vulnerability assessment methodologies
  • Hands-on experience with or understanding of programming and scripting languages including one or more of the following: Python, Java, Node.js, Go, Ruby, PHP
  • databases such as SQL
  • and related tools such as Github, Gitlab, Jenkins, and CircleCI
  • Understanding of common vulnerabilities, remediation approaches, and industry-standard classification schemes (CVE, CWE, CVSS, OWASP Top 10)
  • Familiarity with relevant compliance regulations, such as PCI-DSS, ISO 27001, SOC 2, or HIPAA
  • Passion for security and eagerness to learn about new technologies and emerging security vulnerabilities
  • Strong communication skills with the ability to work collaboratively across teams
Job Responsibility
Job Responsibility
  • Execute application security testing using both automated tools and manual testing techniques on web applications, APIs, containers, and other software components
  • Configure, maintain, and operate SAST, DAST, and other application security testing tools
  • Analyze and triage security findings, documenting clear remediation guidance for development teams
  • Support the vulnerability reporting process and track findings through to resolution
  • Assist with triage and validation of external vulnerability disclosures and bug bounty reports
  • Contribute to the development and documentation of application security processes and standards
  • Participate in security code reviews and threat modeling exercises
  • Help track and report metrics for application security program health
  • Collaborate with development and DevOps teams to integrate security into CI/CD pipelines
  • Stay current with application security trends, tools, and best practices
  • Fulltime
Read More
Arrow Right

Senior Security Engineer

PagerDuty is seeking a Senior Security Engineer to join our diverse, customer-fo...
Location
Location
Canada , Toronto
Salary
Salary:
137000.00 - 207000.00 CAD / Year
https://www.pagerduty.com Logo
PagerDuty
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proficiency with Application & Product Security typically associated with 4 - 5 years of experience in a Security Engineering role working with a cloud-native, microservices environment, preferably AWS
  • Familiarity with cloud-native product technologies including: Vulnerability detection via multiple approaches including SAST, DAST, SCA, and runtime (e.g., Qualys/Nessus, Wiz, Snyk, GHAS, Semgrep, etc.)
  • CI/CD technologies and integrations (e.g., CircleCI, Buildkite, Helm, Terraform, Chef)
  • Product security event logging standards and analysis tools (e.g., SIEM such as: SumoLogic, LogRythm, or Splunk, etc.)
  • Security Incident Response & Risk Management processes and tools
  • Proficiency in at least one programming language and framework (e.g. Python, Bash, Phoenix/Elixir, Java, Ruby on Rails), typically associated with 3 - 4 years of experience with the language/framework
  • Have exceptional written, oral communication, and interpersonal skills
  • Organizational skills with the ability to successfully manage multiple priorities and deadlines
Job Responsibility
Job Responsibility
  • Embrace the role of hands-on technical lead in defining product security standards and guiding platform protections
  • Establish criteria and conduct comprehensive security reviews throughout all stages of product development to identify and address security risks
  • Perform regular threat assessments, coordinate with third-party testers for penetration testing, and conduct internal penetration testing to identify and mitigate security risks
  • Mentor and guide team members to ensure product and business objectives are prioritized in project implementations, fostering a strong documentation culture with project charters and design documents
  • Work with loosely defined requirements where you exercise your analytical skills to clarify questions, share your approach, and collaborate with the team to design and implement effective security frameworks. Maintain a strong appetite for challenging problems with a high degree of ownership
  • Participate in the team’s On-Call rotation, triaging and addressing security issues as they arise, and implement measures to prevent future occurrences
  • Enable service team security implementations by developing security-as-code constructs, including infrastructure-as-code (IaC) modules, libraries and frontend components, while creating and maintaining developer-focused documentation to promote easy adoption
  • Establish and uphold baseline standards and hardened configurations for platform components
  • Continuously enhance security frameworks by focusing on product security standards and software supply chain protections, tailored for application security in cloud-native, microservices environments
What we offer
What we offer
  • Competitive salary
  • Comprehensive benefits package from day one
  • Flexible work arrangements
  • Company equity
  • ESPP (Employee Stock Purchase Program)
  • Retirement or pension plan
  • Generous paid vacation time
  • Paid holidays and sick leave
  • Dutonian Wellness Days & HibernationDuty - companywide paid days off in addition to PTO
  • Paid parental leave: 22 weeks for pregnant parent, 12 weeks for non-pregnant parent (some countries have longer leave standards and we comply with local laws)
  • Fulltime
Read More
Arrow Right