A security focused initiative aimed at performing vulnerability assessments and penetration tests for a variety of digital systems. The project supports continuous improvement of security practices and contributes to the development of internal tools and methodologies. The work includes research activities, process enhancement, and collaboration with technical teams to strengthen overall security posture.
Team
You will join a security oriented team that consists of penetration testers, security analysts, and engineers. The team collaborates closely, shares knowledge, and supports research and internal tool development.
Position overview
We are looking for a Middle Penetration Tester who will be involved in network and application level security assessments. You will use automated tools and manual techniques to identify and verify security vulnerabilities. This role includes preparing assessment reports, interacting with clients to clarify scope and gather information, and contributing to the improvement of security processes and tools.
Technology stack
Burp Suite, Nessus, Metasploit, Nmap, sqlmap, Linux, Windows, Active Directory, JavaScript, .NET, SQL, scripting languages
Responsibilities
Conduct network and application level security assessments
Use automated tools and manual techniques to identify and validate vulnerabilities
Prepare clear and comprehensive assessment reports with root cause details and remediation steps
Communicate with clients to gather information, clarify scope, and discuss security controls
Support internal security competence development through research, tool creation, and process improvement
Collaborate with other team members across security and engineering domains
Requirements
One year of experience performing vulnerability assessments and penetration tests
Three years of experience in the IT industry with familiarity across technologies such as Linux, Windows, Active Directory, JavaScript, .NET, SQL
Experience applying structured methodology for vulnerability assessments and penetration tests
Understanding of web application vulnerabilities
Ability to describe and report vulnerabilities along with typical remediation activities
Experience with open source and commercial security tools including Burp Suite, Nessus, Metasploit, Nmap, sqlmap
Knowledge of programming or scripting for creating auxiliary security tools
Ability to work effectively with customers and self manage in challenging situations
Nice to have
Security certifications including OSCP, CRTO, CPTS, eWPT, BSCP
Strong programming experience in a modern language
Experience with mobile application penetration testing
Experience with reverse engineering and binary analysis
Experience publishing technical content or speaking at industry events
Familiarity with security standards including PCI DSS and ISO 27000
Търсите сходни възможности?
Try AI chatbots with our ready-made prompt to discover similar roles that match your skills and interests.
By clicking 'Accept All Cookies', you agree to the storing of cookies on your device to enhance site navigation, analyze site usage, and assist in our marketing efforts. More information
Privacy Preference Center
When you visit any website, it may store or retrieve information on your browser, mostly in the form of cookies. This information might be about you, your preferences or your device and is mostly used to make the site work as you expect it to. Because we respect your right to privacy, you can choose not to allow some types of cookies. More information
Manage Consent Preferences
Strictly Necessary Cookies
Always Active
These cookies are necessary for the website to function and cannot be switched off in our systems. They are usually only set in response to actions made by you which amount to a request for services, such as setting your privacy preferences, logging in or filling in forms. You can set your browser to block or alert you about these cookies, but some parts of the site will not then work. These cookies do not store any personally identifiable information.
Functional Cookies
These cookies enable the website to provide enhanced functionality and personalisation. They may be set by us or by third party providers whose services we have added to our pages. If you do not allow these cookies then some or all of these services may not function properly.
Targeting Cookies
These cookies may be set through our site by our advertising partners. They may be used by those companies to build a profile of your interests and show you relevant adverts on other sites. They do not store directly personal information, but are based on uniquely identifying your browser and internet device. If you do not allow these cookies, you will experience less targeted advertising.
Performance Cookies
These cookies allow us to count visits and traffic sources so we can measure and improve the performance of our site. They help us to know which pages are the most and least popular and see how visitors move around the site. All information these cookies collect is aggregated and therefore anonymous. If you do not allow these cookies we will not know when you have visited our site, and will not be able to monitor its performance.