Senior pentester

GMV Spain

Madrid

Híbrido

EUR 70.000 - 100.000

Jornada completa

14 días+

Recibe más respuestas de empleadores

Envía un currículum específico para el puesto de trabajo en cuestión de minutos.

Ventajas ofrecidas por este puesto de trabajo

Hybrid work model
Relocation package
Wellbeing program
Language learning support

Descripción de la vacante

GMV Spain is seeking a Senior Pentester to design realistic attack scenarios and lead offensive security assessments across web, mobile, network, cloud, and AI-based systems. You will collaborate with Red Team and Blue Team professionals to strengthen threat detection and response capabilities.

The role emphasizes independent leadership of security audits, development of offensive tools, and clear risk-focused reporting to technical and business audiences.

Formación

  • 5+ years of penetration testing across web, mobile, network, and cloud.
  • Experience in Red Team operations designing and executing simulated attacks.
  • Advanced knowledge of Burp Suite, Nmap, Metasploit, or C2 frameworks.
  • Ability to automate offensive tasks through scripting (Python, Bash or PowerShell).
  • Experience producing technical and executive reports focused on risk.

Responsabilidades

  • Execute and lead penetration tests in complex corporate environments.
  • Participate in Red Team exercises, applying evasion techniques against EDR, XDR, WAF and antivirus solutions.
  • Identify vulnerabilities, analyze their impact and propose effective mitigation strategies.
  • Develop or adapt offensive tools and automations using Python, Bash or PowerShell.
  • Produce clear technical and executive reports focused on risk.
  • Present findings to both technical and business audiences.
  • Manage technical audit projects, coordinating scope, timelines and deliverables.

Conocimientos

Penetration testing
Red Team operations
Automation scripting
Technical reporting
Communication
Project leadership

Herramientas

Burp Suite
Nmap
Metasploit
C2 frameworks
Python
PowerShell

Descripción del empleo

Do you want to participate in advanced offensive security assessments? The GMV Technical Audits team is looking for you!

We like to get straight to the point and tell you what you won't find online. If you'd like to learn more about us, visit the GMV website .

WHAT CHALLENGE WILL YOU TAKE ON?

As a Senior Pentester, you will not only execute technical assessments but also design realistic attack scenarios based on MITRE ATT&CK TTPs and lead audit projects, helping organizations understand how they could be compromised… before a real attacker does.

You will work on web and mobile applications, network infrastructures, Wi-Fi networks, cloud environments (AWS, Azure, GCP), Active Directory and AI-based systems.

You will also participate in Red Team and Purple Team exercises, simulating real attacks and collaborating with Blue Team professionals to improve threat detection and response capabilities.

In your day-to-day work you will:

  • Execute and lead penetration tests in complex corporate environments.
  • Participate in Red Team exercises, applying evasion techniques against EDR, XDR, WAF and antivirus solutions.
  • Identify vulnerabilities, analyze their impact and propose effective mitigation strategies.
  • Develop or adapt offensive tools and automations using Python, Bash or PowerShell.
  • Produce clear technical and executive reports focused on risk.
  • Present findings to both technical and business audiences.
  • Manage technical audit projects, coordinating scope, timelines and deliverables.
WHAT DO WE NEED IN OUR TEAM?

We are looking for someone with strong experience in offensive cybersecurity, comfortable working in complex environments and able to independently lead technical security assessments.

For this position, it is important to have:

  • 5+ years of experience in penetration testing (web, mobile, network, cloud, Active Directory, Wi-Fi).
  • Experience in Red Team operations designing and executing simulated attacks.
  • Advanced knowledge of tools such as Burp Suite, Nmap, Metasploit or C2 frameworks.
  • Ability to automate offensive tasks through scripting (Python, Bash or PowerShell).
  • Experience producing technical and executive reports focused on risk.
  • Strong communication skills and ability to present results clearly.
  • Experience managing cybersecurity or technical audit projects.
  • Offensive certifications such as OSCP, OSEP, OSWE, eCPPT, CRTP or equivalent.
  • Knowledge of frameworks and methodologies such as PTES, MITRE ATT&CK or OWASP.
  • Experience assessing security in AI or LLM-based systems (OWASP Top 10 for LLMs).
WHAT DO WE OFFER?
  • Hybrid work model and up to 8 weeks per year of remote work outside your usual geographical area.
  • Flexible working hours and intensive working days on Fridays and during summer.
  • A personalized career development plan, training opportunities and language learning support.
  • National and international mobility. Coming from another country? We offer a relocation package.
  • Competitive salary with continuous reviews, flexible compensation and brand discounts.
  • Wellbeing program: health, dental and accident insurance; free fruit and coffee, physical, mental and financial wellbeing initiatives, and much more!

Throughout our recruitment process you will always have direct contact with our talent acquisition team, either by phone or in person/online. We will never request bank transfers or credit card details. If you are contacted through any other process, please reach out to the person responsible for the recruitment process.

We promote equal opportunities in hiring and are committed to inclusion and diversity.

Consigue la evaluación confidencial y gratuita de tu currículum.
o arrastra y suelta tu archivo aquí
Similar jobs

Puestos de trabajo similares que vale la pena comparar

Senior pentester
Senior pentester

GMV • Tres Cantos

Híbrido
EUR 55.000 - 70.000
Hybrid work model
Flexible working hours
Personalized career development plan
+2
Pentesting Engineer
Pentesting Engineer

Gmv • Guadalajara

Híbrido
EUR 42.000 - 64.000
Hybrid working model
Teleworking 8 weeks/year
Relocation package
+1
Cybersecurity Specialist
Cybersecurity Specialist

Randstad España • Madrid

Presencial
EUR 60.000 - 95.000
Senior Pentester | Madrid
Senior Pentester | Madrid

UST • Madrid

Híbrido
EUR 60.000 - 90.000
Health care plan
Teleworking compensation
Life and accident insurances
+1
Senior Penetration Tester | Madrid
Senior Penetration Tester | Madrid

UST España & Latam • Madrid

Híbrido
EUR 90.000 - 110.000
Health insurance
Teleworking compensation
Training platforms access
+2
Cybersecurity Engineer for vulnerability management projects
Cybersecurity Engineer for vulnerability management projects

GMV • Tres Cantos

Híbrido
EUR 50.000 - 70.000
Hybrid working model
Flexible working hours
Personalized career plan
+3
Pentest Coordinator
Pentest Coordinator

Neotalent Conclusion • Madrid

Presencial
EUR 50.000 - 70.000
Access to continuous learning and certifications
Hybrid Senior Penetration Tester: Lead Red Team Ops
Hybrid Senior Penetration Tester: Lead Red Team Ops

GMV Spain • Madrid

Híbrido
EUR 70.000 - 100.000
Hybrid work model
Relocation package
Wellbeing program
+1
Internships in the Financial Cybersecurity Field
Internships in the Financial Cybersecurity Field

GMV • Tres Cantos

Híbrido
Relocation package
Flexible hours
Career development
+3
Lead IT Security AI-Redteamer
Lead IT Security AI-Redteamer

Dkbcodefactory • España

Presencial
EUR 90.000 - 150.000
Benefits package