Nasze wymagania:
- At least 3 years of proven hands-on experience in penetration testing.
- Strong knowledge of platform security models for iOS and Android.
- Practical experience with manual and automated security testing for infrastructure, web, and mobile technologies.
- Excellent TCP/IP understanding and web application security testing skills.
- Programming/scripting proficiency.
- Knowledge of cryptography applications within security testing.
- Fluency in English (written and spoken).
- Ability to communicate complex technical issues clearly to diverse audiences.
- Strong time management and self-discipline skills.
Mile widziane:
- Experience with common mobile technologies (HTML, XML, JavaScript, REST, etc.).
- Knowledge of static and dynamic application security testing tools (SAST, DAST, IAST).
- Experience with security code reviews for Java, Objective-C, Swift, Kotlin.
- Certifications such as OSCP, CEH, or relevant expertise in mobile/cloud security.
O projekcie:
As a Senior Cybersecurity Penetration Tester – Mobile, Web, Infrastructure, you will be working for our client, a leading financial institution committed to safeguarding digital assets and delivering resilient security solutions. You’ll play a key role within a global Cybersecurity Research & Offensive Security team, driving advanced penetration testing initiatives to ensure organizational and client trust while enabling innovative security practices.
Empower cybersecurity excellence — unearth vulnerabilities before they become threats!
Krakow-based opportunity with hybrid work model (4 days remote per week).
Only candidates with an existing legal right to work in the European Union will be considered for this role.
Zakres obowiązków:
- Lead and perform comprehensive penetration tests across various technologies including mobile, web, and infrastructure.
- Collaborate with virtual teams of security specialists to deliver high-quality security solutions.
- Articulate and document security risks, root causes, and mitigation strategies clearly and professionally.
- Drive testing activities that highlight and prioritize risks aligned with the organization’s risk appetite.
- Support security controls, standards, and regulatory compliance through expert advice and assessment.
- Engage with DevOps teams to integrate security testing into CI/CD pipelines and automate routine tasks.
- Conduct security assessments and source code reviews for mobile applications, infrastructure, and web services.
- Develop and demonstrate proof-of-concept exploits when necessary to validate vulnerabilities.
- Mentor junior team members and facilitate knowledge sharing.
- Stay informed on emerging vulnerabilities, testing tools, and security best practices.
Oferujemy:
- Stable and long-term cooperation with very good conditions
- Enhance your skills and develop your expertise in the financial industry
- Work on the most strategic projects available in the market
- Define your career roadmap and develop yourself in the best and fastest possible way by delivering strategic projects for different clients of ITDS over several years
- Participate in Social Events, training, and work in an international environment
- Access to attractive Medical Package
- Access to Multisport Program
- Access to Pluralsight
- Flexible hours