This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
We are seeking a highly skilled and experienced Senior Security Engineer Penetration Tester / Red Team Specialist to join our dynamic cybersecurity team. As a Senior Penetration Tester, you will be responsible for simulating real-world cyberattacks on our organization's infrastructure, applications, and systems. Your expertise in identifying vulnerabilities, exploiting weaknesses, and devising robust security solutions will play a pivotal role in enhancing our overall cybersecurity posture. This role requires a proactive, creative, and analytical individual with a passion for staying ahead of emerging threats and vulnerabilities.
Job Responsibility
Lead and conduct penetration testing and red teaming activities against our organization's networks, applications, and physical security
Perform comprehensive security assessments to identify vulnerabilities and potential weaknesses
Develop realistic attack scenarios based on current threat intelligence and industry best practices
Simulate sophisticated attack techniques to identify gaps in our security controls and defenses
Conduct in-depth vulnerability assessments and risk analyses, utilizing various security testing tools and manual techniques
Provide detailed reports outlining identified vulnerabilities and recommended remediation actions
Stay up-to-date with the latest cybersecurity threats, vulnerabilities, and attack techniques
Continuously monitor emerging trends and industry developments to inform our security strategies
Collaborate with the security team and other stakeholders to review and improve our organization's security architecture, ensuring it aligns with industry standards and best practices
Assist the incident response team in handling cybersecurity incidents, performing forensic investigations, and providing expertise on the adversary's techniques and tactics
Contribute to the development and delivery of cybersecurity awareness and training programs for employees to promote a security-conscious culture
Evaluate and recommend new cybersecurity tools, methodologies, and automation techniques to streamline security assessment processes and enhance efficiency
Requirements
Bachelor's or Master's degree in Computer Science, Cybersecurity, Information Technology, or a related field
Relevant certifications such as OSCP, OSCE, GPEN, or GXPN are highly desirable
Minimum of 5 years of hands-on experience in penetration testing (mobile applications {Android and iOS}, web applications, and API), red teaming, or ethical hacking, with a proven track record of identifying and exploiting vulnerabilities
Demonstrate a strong grasp of end-to-end SDLC, DevSecOps, and application development for web and mobile applications
Expertise in using various security testing tools and frameworks (e.g., Metasploit, Burp Suite, Nmap, etc.) and manual techniques to conduct thorough security assessments
Proficiency in programming and scripting languages (e.g., Python, Go, Shell Script) to develop custom tools and automation scripts
Strong understanding of network protocols, operating systems, and common security technologies (SIEM, XDR/EDR, firewalls, IDS/IPS, WAFs, etc.)
In-depth knowledge of cybersecurity principles, attack vectors, and defense strategies. Familiarity with threat intelligence and risk assessment methodologies, OWASP, Cloud Security best practices
Excellent analytical and problem-solving abilities, with a proactive approach to identifying and mitigating security risks
Effective verbal and written communication skills, with the ability to convey complex technical concepts to both technical and non-technical stakeholders
Demonstrated ability to work collaboratively in a team environment, sharing knowledge, and supporting collective goals