Get more replies from employers
Send a job-specific resume in minutes.
Northwave Cyber Security in Utrecht is seeking an experienced Red Team / Penetration Testing Specialist to strengthen our offensive security capabilities across multiple clients and industries.
You will lead and execute advanced attack simulations, build and adapt tooling, and collaborate with Threat Intelligence, Blue Team and CERT specialists to translate findings into actionable improvements.
At Northwave, 275 cybersecurity specialists transform how organisations approach digital safety. From our HQ in Utrecht, along with offices in Germany, Sweden, and Belgium.
Northwave combines ethical hacking expertise with behavioral psychology insights and cutting-edge security management at the highest level. We respond to threats and anticipate them, providing 24/7 managed security services and tailored solutions for each client's journey.
By joining Northwave, you'll become part of an organisation where innovation drives results, whether your talents lie in technical penetration testing or strategic client partnerships. Here, your expertise will grow and help shape the future of digital security across industries, leaving a lasting impact.
Our Red Team brings together 15 ethical hackers with expertise spanning adversary simulation, social engineering, Active Directory and Entra ID, malware and tooling development, cloud, application security, reverse engineering and exploitation. We challenge one another, share techniques openly and combine the right skills for each operation.
You will also work closely with our Threat Intelligence, Blue Team, Reverse Engineering and CERT specialists. Insights from real incidents and current threats help us build credible scenarios. Purple teaming turns each exercise into practical improvements for our clients.
We start by understanding the organisation, its critical functions and the threat actors it faces. Together with the client and control team, we turn that context into objectives, attack scenarios and clear Rules of Engagement.
During execution, you will have room to adapt. The aim is not to follow a checklist, but to emulate a credible adversary without losing sight of safety or learning value. We close with transparent reporting, executive and technical presentations, and often a purple teaming session in which attacks are replayed with the defenders.
Serious red team work requires trust, time to learn and colleagues who can challenge your thinking. We offer: