Senior Penetration Testing Engineer IRC301690

GlobalLogic

Kraków

On-site

PLN 180,000 - 280,000

Full time

12 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Empowering Projects
Empowering Growth
DE&I Matters
Career Development
Comprehensive Benefits
Flexible Opportunities

Job summary

GlobalLogic is building a dedicated security validation team focused on vulnerability assessment and security testing across its products and systems. The team runs structured testing campaigns including penetration testing and secure code review, while developing automated test suites to scale the process.

Collaboration with AI models accelerates work, while hands-on security engineering remains the core. The role demands experience in vulnerability discovery, triage, and writing automated

Qualifications

  • 4+ years in cybersecurity, security testing, or software engineering with a strong security focus.
  • Structured, methodical approach to testing – able to plan and document, not just test ad-hoc.
  • Good written English – reporting is a significant part of the role.
  • Hands-on experience in vulnerability assessment and penetration testing (web, API, network, or infrastructure).
  • Secure code review experience.
  • Solid coding skills (Python preferred) for automation, tooling and test scripts.
  • Experience writing automated tests and building them into repeatable suites.
  • Strong understanding of vulnerability classes (OWASP Top 10, CWE) and CVE/CVSS triage.
  • Familiarity with standard security tooling (e.g. Burp Suite, Nmap, SAST/DAST scanners).

Responsibilities

  • Perform vulnerability assessments and penetration testing against applications, services and infrastructure.
  • Conduct secure code and configuration reviews.
  • Triage and validate findings; assess severity, eliminate false positives, support remediation.
  • Write and maintain automated security tests and tooling.
  • Design test plans, execute testing campaigns, document and report results.
  • Evaluate AI-assisted approaches to security testing and help integrate what works into the workflow.

Skills

Cybersecurity
Security testing
Penetration testing
Secure code review
Python automation
Vulnerability assessment
OWASP Top 10
CVE/CVSS triage

Tools

Burp Suite
Nmap
SAST/DAST scanners
CI/CD security tooling

Job description

An enterprise technology group is building a dedicated security validation team focused on vulnerability assessment and security testing across the group’s products and systems. The team runs structured testing campaigns: penetration testing, vulnerability discovery and triage, secure code review, and building automated test suites to make the process repeatable at scale.

An enterprise technology group is building a dedicated security validation team focused on vulnerability assessment and security testing across the group’s products and systems. The team runs structured testing campaigns: penetration testing, vulnerability discovery and triage, secure code review, and building automated test suites to make the process repeatable at scale. The team also gets early access to specialized AI models and evaluates how they can accelerate security testing – an area we’re actively investing in, though the core of the work remains hands-on security engineering. Scope covers internal systems as well as business-unit products across the group, agreed campaign by campaign. The team starts small and scales into a permanent capability.

Description

Requirements

  • 4+ years in cybersecurity, security testing, or software engineering with a strong security focus
  • Structured, methodical approach to testing – able to plan and document, not just test ad-hoc
  • Good written English – reporting is a significant part of the role
  • Hands-on experience in vulnerability assessment and penetration testing (web, API, network, or infrastructure)
  • Secure code review experience
  • Solid coding skills (Python preferred) for automation, tooling and test scripts
  • Experience writing automated tests and building them into repeatable suites
  • Strong understanding of vulnerability classes (OWASP Top 10, CWE) and CVE/CVSS triage
  • Familiarity with standard security tooling (e.g. Burp Suite, Nmap, SAST/DAST scanners)
Nice to have
  • Experience applying AI/LLMs to security work – highly desirable
  • Vulnerability management processes and tooling
  • Cloud security (AWS/Azure/GCP) or OT/embedded/product security background
  • CI/CD security integration
  • Certifications: OSCP, CEH, CISSP, or similar
Job responsibilities
  • Perform vulnerability assessments and penetration testing against applications, services and infrastructure
  • Conduct secure code and configuration reviews
  • Triage and validate findings; assess severity, eliminate false positives, support remediation
  • Write and maintain automated security tests and tooling
  • Design test plans, execute testing campaigns, document and report results
  • Evaluate AI-assisted approaches to security testing and help integrate what works into the workflow
What we offer

Empowering Projects: With 500+ clients spanning diverse industries and domains, we provide an exciting opportunity to contribute to groundbreaking projects that leverage cutting-edge technologies. As a team, we engineer digital products that positively impact people’s lives.

Empowering Growth: We foster a culture of continuous learning and professional development. Our dedication is to provide timely and comprehensive assistance for every consultant through our dedicated Learning & Development team, ensuring their continuous growth and success.

DE&I Matters: At GlobalLogic, we deeply value and embrace diversity. We are dedicated to providing equal opportunities for all individuals, fostering an inclusive and empowering work environment.

Career Development: Our corporate culture places a strong emphasis on career development, offering abundant opportunities for growth. Regular interactions with our teams ensure their engagement, motivation, and recognition. We empower our team members to pursue their career goals with confidence and enthusiasm.

Comprehensive Benefits: In addition to equitable compensation, we provide a comprehensive benefits package that prioritizes the overall well-being of our consultants. We genuinely care about their health and strive to create a positive work environment.

Flexible Opportunities: At GlobalLogic, we prioritize work-life balance by offering flexible opportunities tailored to your lifestyle. Explore relocation and rotation options for diverse cultural and professional experiences in different countries with our company.

About GlobalLogic

GlobalLogic, a Hitachi Group Company, is a trusted digital engineering partner to the world’s largest and most forward-thinking companies. Since 2000, we’ve been at the forefront of the digital revolution – helping create some of the most innovative and widely used digital products and experiences. Today we continue to collaborate with clients in transforming businesses and redefining industries through intelligent products, platforms, and services.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Penetration Testing Engineer IRC301150
Senior Penetration Testing Engineer IRC301150

GlobalLogic • Kraków

On-site
PLN 180,000 - 260,000
Comprehensive benefits
Relocation options
Rotation opportunities
+1
Technical Pre-Sales Manager IRC302834
Technical Pre-Sales Manager IRC302834

GlobalLogic • Kraków

On-site
PLN 180,000 - 240,000
Empowering Projects
Growth & Learning
Diversity & Inclusion
+3
Senior Security Validation Engineer: Pen Testing & Automation
Senior Security Validation Engineer: Pen Testing & Automation

GlobalLogic • Kraków

On-site
PLN 180,000 - 280,000
Empowering Projects
Empowering Growth
DE&I Matters
+3
Network Engineer IRC301820
Network Engineer IRC301820

GlobalLogic • Kraków

On-site
PLN 90,000 - 150,000
Senior DevOps Engineer (with Azure) IRC301377
Senior DevOps Engineer (with Azure) IRC301377

GlobalLogic • Kraków

On-site
PLN 180,000 - 280,000
Empowering Projects
Empowering Growth
DEI Matters
+3
Penetration Tester
Penetration Tester

Atos • Bydgoszcz

Hybrid
PLN 120,000 - 170,000
Hybrid work model
Private medical care
Benefits platform
+4
Technical Pre-Sales Manager IRC302834
Technical Pre-Sales Manager IRC302834

GlobalLogic • Poland

On-site
PLN 180,000 - 280,000
Flexible opportunities
DEI matters
Career development opportunities
+1
Lead Security Engineer
Lead Security Engineer

S&P Global, Inc. • Poland

On-site
PLN 254,000 - 382,000
Health care coverage
Generous time off
Continuous learning resources
+2
Senior Embedded / IoT QA Engineer IRC302302
Senior Embedded / IoT QA Engineer IRC302302

GlobalLogic • Województwo zachodniopomorskie

On-site
PLN 140,000 - 190,000
Relocation options
Rotation opportunities
Comprehensive benefits
+1
Senior Project Manager IRC293368
Senior Project Manager IRC293368

GlobalLogic • Kraków

On-site
PLN 254,993 - 339,991
Culture of caring
Learning and development
Interesting & meaningful work
+2