Penetration Tester

Antal Poland

Kraków

Hybrid

PLN 180,000 - 240,000

Full time

26 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Hybrid work model
Private medical care (LuxMed)
MyBenefit platform
Contractor Care support

Job summary

Antal Poland in Kraków is seeking an experienced Senior Penetration Tester to lead and execute advanced security assessments across web, mobile, infrastructure and API environments, delivering clear risk communication to technical and non-technical stakeholders. You will act as SME, mentor junior team members, and drive continuous improvements of cybersecurity standards, processes and tooling.

This hybrid role offers 6 days per month in the office (Kraków preferred or Warsaw) under a B2B

Qualifications

  • Minimum 3 years of hands-on penetration testing experience.
  • Strong web and mobile application testing expertise.
  • Solid knowledge of iOS and Android security models.
  • Practical experience with manual and automated security testing.

Responsibilities

  • Lead and deliver end-to-end penetration tests across mobile, web and API environments.
  • Mentor junior team members and support knowledge sharing.
  • Collaborate with DevOps to automate security testing tasks and improve processes.
  • Document findings with root-cause analysis and risk impact.

Skills

Penetration testing
Team leadership
Technical communication
Independent work
Mentoring

Tools

SAST tools
DAST tools
IAST tools

Job description

Business Area: Cybersecurity Research & Offensive Security

Work Model: Hybrid - 6 days per month from the office in Kraków (preferred) or Warsaw

Contract Type: B2B

Role Overview

We are looking for an experienced Senior Penetration Tester to join a global Cybersecurity team. In this role, you will lead and execute advanced security assessments across web, mobile, infrastructure, and API environments, ensuring high-quality delivery and clear risk articulation to both technical and non-technical stakeholders.

You will act as a subject matter expert (SME), driving penetration testing initiatives, mentoring junior team members, and contributing to the continuous improvement of cybersecurity standards, processes, and tooling.

Key Responsibilities
  • Lead and deliver end-to-end penetration tests across:
  • Mobile applications (iOS & Android)
  • Web applications and APIs
  • Infrastructure and network environments
  • Perform manual penetration testing, source code reviews, and configuration assessments
  • Clearly document findings, including root cause analysis and business risk impact
  • Design and demonstrate proof-of-concept exploits when required
  • Collaborate with DevOps and engineering teams to:
  • Automate repetitive security testing tasks
  • Assess product release risk and identify potential misuse scenarios
  • Track remediation activities and support risk acceptance processes
  • Support incident response activities when required
  • Evaluate new security testing technologies and recommend improvements
  • Monitor security industry developments and emerging threats
  • Contribute to process enhancements and quality improvements
  • Mentor junior team members and support knowledge sharing
Required Experience & Skills
Must-have:
  • Minimum 3 years of hands-on penetration testing experience
  • Strong web and mobile application testing expertise
  • Solid knowledge of iOS and Android security models
  • Practical experience with manual and automated security testingStrong understanding of TCP/IP and networking security
  • Experience with SAST, DAST, IAST tools
  • Ability to explain complex security issues clearly to technical and non-technical audiences
  • Ability to work independently or lead penetration testing teams
Technical Knowledge:
  • Secure SDLC and DevOps environments
  • Cryptography fundamentals and secure implementation practices
  • Security mechanisms such as SSL/TLS, Certificate Pinning, OAuth2, JWT, SAML, RASP, biometric authentication
  • Mobile security standards such as OWASP MASVS & MSTG
Nice to have:
  • Code review experience (Java, Kotlin, Swift, Objective-C)
  • Experience with cloud-hosted applications
  • Reverse engineering or disassembly experience
  • Background in secure software development

Certifications are not required but considered a plus.

What We Offer
  • B2B contract
  • Hybrid work model (6 days/month in office - Kraków preferred or Warsaw)
  • Private medical care (LuxMed)
  • MyBenefit cafeteria platform
  • Dedicated support from Contractor Care team
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Penetration Tester
Senior Penetration Tester

ALTEN • Kraków

Hybrid
PLN 180,000 - 260,000
Medicover medical care
Medicover dental care
Medicover Benefits platform
+5
Cybersecurity Senior Consultant - Senior Pentester
Cybersecurity Senior Consultant - Senior Pentester

EY • Katowice

Hybrid
PLN 180,000 - 280,000
Engineer - Cybersecurity (Vulnerability & Threat Management)
Engineer - Cybersecurity (Vulnerability & Threat Management)

Sysco Corporation • Poland

Hybrid
PLN 40,000 - 60,000
Professional development opportunities
Collaborative culture
Modern security technologies
Cybersecurity Senior Consultant - Senior Pentester
Cybersecurity Senior Consultant - Senior Pentester

EY • Warszawa

Hybrid
PLN 120,000 - 180,000
Cybersecurity Senior Consultant - Senior Pentester
Cybersecurity Senior Consultant - Senior Pentester

Ernst & Young Advisory Services Sdn Bhd • Warszawa

Hybrid
PLN 150,000 - 190,000
Continuous learning
Global exposure
Diverse and inclusive culture
+1
Senior Penetration Tester
Senior Penetration Tester

Mindbox Sp. z o.o. • Kraków

Hybrid
PLN 180,000 - 240,000
Flexible cooperation
Hybrid work setup
Team culture
+3
(Cybersecurity) Threat and Controls Assessment Consultant
(Cybersecurity) Threat and Controls Assessment Consultant

Antal Poland • Kraków

Hybrid
PLN 180,000 - 240,000
B2B contract
Hybrid work model – 6 days per month
Lux Med private medical care
+2
Principal Penetration Tester - Mobile Application (f/m/x)
Principal Penetration Tester - Mobile Application (f/m/x)

Sii Polska • Poland

Hybrid
PLN 240,000 - 420,000
Lead Penetration Tester – Web Apps & API (Remote)
Lead Penetration Tester – Web Apps & API (Remote)

People More • Kraków

On-site
PLN 117,000 - 152,000
Private medical care
Sports card
Training courses
+3
Senior Vulnerability Management Specialist
Senior Vulnerability Management Specialist

Antal Poland • Kraków

Hybrid
PLN 180,000 - 280,000
Hybrid working model
Lux Med private medical care
Contractor Care specialist
+1