This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Cloud Software Group is one of the world’s largest cloud solution providers, serving more than 100 million users around the globe. When you join Cloud Software Group, you are making a difference for real people, each of whom count on our suite of cloud-based products to get work done — from anywhere. Members of our team will tell you that we value passion for technology and the courage to take risks. Everyone is empowered to learn, dream, and build the future of work. We are on the brink of another Cambrian leap -- a moment of immense evolution and growth. And we need your expertise and experience to do it. Now is the perfect time to move your skills to the cloud.
Job Responsibility:
Simulate real-world attacker tactics, techniques, and procedures (TTPs) to assess and improve the security posture of applications, APIs, and infrastructure
Identify, exploit, and document vulnerabilities in products and supporting systems using both manual techniques and automated tools
Develop and execute custom attack scenarios, including phishing, social engineering, and lateral movement campaigns, to test organizational defenses
Prepare comprehensive assessment reports, including reproduction steps and actionable remediation guidance for engineering teams
Stay current with the latest security threats, adversary methodologies (e.g., MITRE ATT&CK framework), and offensive security tooling
Assist in simulating adversary attacks to identify vulnerabilities and logic flaws in web and product features
Help develop automation scripts, tools, and documentation to support security testing activities
Continuously learn and apply the latest security testing techniques, tools, and industry best practices
Requirements:
Bachelor’s degree in Computer Science, Information Security, Engineering, or equivalent experience
5+ years of experience in offensive security, penetration testing, or red teaming
Solid understanding of basic networking, web technologies, and computer systems
Familiarity with at least one scripting or programming language (e.g., Python, JavaScript, Bash, PowerShell)
Demonstrated interest in cybersecurity (capture the flag participation, open-source contributions, hacking challenges, security coursework, etc.)
Strong problem-solving and communication skills
Eagerness to learn and adapt in a fast-paced security environment
Nice to have:
Certifications such as CCRT(S), OSEP, GPEN, OSCP, SANS SEC565
Knowledge of common attack patterns, OWASP Top 10, or cloud security basics
Contributions to the security community in the form of research, CVEs, tools, or publications