Senior Cybersecurity Penetration Tester – Mobile, Web, Infrastructure
23 100 - 27 930
PLN
(B2B)
16 500 - 19 900
PLN
brutto (Employment Contract)
Empower cybersecurity excellence — unearth vulnerabilities before they become threats!
Krakow-based opportunity with hybrid work model (4 days remote per week).
As a Senior Cybersecurity Penetration Tester – Mobile, Web, Infrastructure, you will be working for our client, a leading financial institution committed to safeguarding digital assets and delivering resilient security solutions. You’ll play a key role within a global Cybersecurity Research & Offensive Security team, driving advanced penetration testing initiatives to ensure organizational and client trust while enabling innovative security practices.
Your main responsibilities:
- Lead and perform comprehensive penetration tests across various technologies including mobile, web, and infrastructure.
- Collaborate with virtual teams of security specialists to deliver high-quality security solutions.
- Articulate and document security risks, root causes, and mitigation strategies clearly and professionally.
- Drive testing activities that highlight and prioritize risks aligned with the organization’s risk appetite.
- Support security controls, standards, and regulatory compliance through expert advice and assessment.
- Engage with DevOps teams to integrate security testing into CI/CD pipelines and automate routine tasks.
- Conduct security assessments and source code reviews for mobile applications, infrastructure, and web services.
- Develop and demonstrate proof-of-concept exploits when necessary to validate vulnerabilities.
- Mentor junior team members and facilitate knowledge sharing.
- Stay informed on emerging vulnerabilities, testing tools, and security best practices.
You're ideal for this role if you have:
- At least 3 years of proven hands-on experience in penetration testing.
- Strong knowledge of platform security models for iOS and Android.
- Practical experience with manual and automated security testing for infrastructure, web, and mobile technologies.
- Excellent TCP/IP understanding and web application security testing skills.
- Programming/scripting proficiency.
- Knowledge of cryptography applications within security testing.
- Fluency in English (written and spoken).
- Ability to communicate complex technical issues clearly to diverse audiences.
- Strong time management and self-discipline skills.
It is a strong plus if you have:
- Experience with common mobile technologies (HTML, XML, JavaScript, REST, etc.).
- Knowledge of static and dynamic application security testing tools (SAST, DAST, IAST).
- Experience with security code reviews for Java, Objective-C, Swift, Kotlin.
- Certifications such as OSCP, CEH, or relevant expertise in mobile/cloud security.
Language Required for the role:
- Fluent English.
Eligibility for the role:
- Only candidates with a legal right to work in Europe will be considered.
#MAKEYourCareerBETTER
Interested? Apply now and include your CV (preferably in English) along with a statement confirming your consent to the processing and storage of your personal data.
Internal number #10016
Dodatki
ITDS Clubs
Access to medical insurance
Access to Multisport
Access to Pluralsight
Integrational Events
Ambassador Program
Twoje kryteria