Offensive Security Specialist

LUZA Group

Porto

Híbrido

EUR 45 000 - 65 000

Tempo integral

Há 11 dias
Gerador de candidaturas

Não envies um currículo genérico — gera um currículo e uma carta de apresentação adaptados a esta função específica.

Ultrapassa os filtros ATS

Vantagens oferecidas por esta oferta de emprego

Remote work when possible
Equipment provided
Benefits plan

Resumo da oferta

LUZA Group is seeking a hands-on penetration tester to conduct security assessments across web apps, APIs, cloud environments, and internal/external infrastructures. You will go beyond automated tools with manual testing and attack-path chaining, while integrating AI-assisted tools to accelerate investigations and report writing.

Ideal candidates have practical experience with Burp Suite, Nmap, Metasploit, and OWASP Top 10 knowledge. Remote-friendly hybrid work is offered with equipment provided.

Qualificações

  • Hands-on penetration testing and security assessments experience.
  • Knowledge of OWASP Top 10, WSTG, API security and AD/Entra ID.
  • Fluent English and ability to validate results critically.
  • Scripting or programming to automate tasks and payloads.

Responsabilidades

  • Conduct pentesting and security assessments across web apps, APIs, cloud, and infrastructure.
  • Go beyond automated tools with manual testing, validation, and attack-path chaining.
  • Integrate AI-assisted tools into security workflows and tooling.
  • Develop or adapt custom scripts to support assessment scenarios.
  • Produce clear, actionable vulnerability reports with business impact.
  • Collaborate with development, infrastructure, and security teams to remediate issues.
  • Contribute to ongoing improvements of methodologies and knowledge sharing.
  • Hybrid work model.

Conhecimentos

Penetration testing
Security assessments
Burp Suite
Nmap
Metasploit
Web security
API security
Entra ID
AI tooling
Scripting
English fluency

Ferramentas

Burp Suite
Nmap
Metasploit

Descrição da oferta de emprego

Luza is an all-inclusive consulting company focused on talent, tech and innovation. We exist to elevate companies and humans all around the world, making change, from the inside to the outside.

We believe that technology + human kindness positively impacts every community around the world. Our approach is simple, we see a world without borders, and believe in equal opportunities. We are guided by our core principles of spreading positivity, good energy and promote equality and care for others.

Our hiring process is unique! People are selected by their value, education, talent and personality. We dont present ethnicity, religion, national origin, age, gender, sexual orientation or identity.

Its time to burst the bubble, and we will do it together!

What You'll do:
  • Conduct penetration testing (pentesting) and technical security assessments across web applications, APIs, cloud environments, and internal/external infrastructures (including Active Directory / Entra ID);
  • Go beyond the use of automated analysis tools through manual investigation, vulnerability validation, and attack vector chaining (attack-path chaining);
  • Integrate AI-assisted tools (LLMs, coding assistants, and agent-based tools) into offensive security processes, accelerating investigation, script development, payload creation, and report writing;
  • Develop or adapt custom scripts and offensive security tools to support specific assessment scenarios;
  • Produce clear, technically rigorous, and actionable documentation detailing identified vulnerabilities, business impact, and mitigation recommendations;
  • Collaborate closely with development, infrastructure, and security teams to communicate technical security issues and support remediation efforts;
  • Contribute to the continuous improvement of internal methodologies, knowledge sharing, research, and offensive security capabilities;
  • Hybrid work model;
Who You Are:
  • Solid hands-on experience in penetration testing and technical security assessments;
  • Practical knowledge of offensive security tools such as Burp Suite, Nmap, Metasploit, or equivalent frameworks;
  • In-depth knowledge of web application security (OWASP Top 10, WSTG), API security, network infrastructure, and Active Directory / Entra ID environments;
  • Demonstrated fluency in the use of AI tools, using them as productivity accelerators without compromising critical thinking, independent technical judgment, and result validation;
  • Scripting or programming skills to adapt tools, automate repetitive tasks, and develop custom payloads;
  • High level of autonomy, proactivity, critical thinking, and problem-solving skills in complex security assessment scenarios;
  • Fluency in English to communicate technical concepts effectively with both technical and non-technical stakeholders;
Nice to have:
  • Relevant offensive security certifications such as OSCP, OSWA, OSWE, CRTO, eWPT, or equivalent;
  • Active participation in CTFs (Capture The Flag), Bug Bounty programs, cybersecurity research, or open-source offensive security tool development;
What you'll get:
  • Wage according to candidate's professional experience;
  • Remote Work whenever possible;
  • Delivery of work equipment adjusted to the performance of functions;
  • Benefits plan;
  • And others.

Work together with expert teams on projects of large magnitude and intensity, long term together with our clients, all leaders in their industries.

Are you ready to step into a diverse and inclusive world with us?

Together we will promote uniquess!

Obtém a tua avaliação gratuita e confidencial do currículo.

ou arrasta e larga o ficheiro aqui.

Similar jobs

Ofertas semelhantes que vale a pena comparar

Remote Offensive Security Specialist
Remote Offensive Security Specialist

LUZA Group • Porto

Híbrido
EUR 45 000 - 65 000
Remote work when possible
Equipment provided
Benefits plan
Mid Cloud DevSecOps
Mid Cloud DevSecOps

LUZA Group • Lisboa

Presencial
EUR 42 000 - 70 000
Remote work option
Equipment provided
Benefits plan
+1
Offensive Security Specialist
Offensive Security Specialist

Claranet • Porto

Presencial
EUR 55 000 - 75 000
Certification resources
Team building
Friendly workplace
Offensive Security Specialist M/F – Hybrid (Porto)
Offensive Security Specialist M/F – Hybrid (Porto)

SysMatch • Porto

Presencial
EUR 40 000 - 50 000
Competitive salary
Hybrid work model
Career development opportunities
+1
Systems Administrator
Systems Administrator

LUZA Group • Lisboa

Híbrido
EUR 32 000 - 48 000
Remote work possible
Equipment provided
Benefits plan
QA Automation Engineer
QA Automation Engineer

LUZA Group • Lisboa

Presencial
EUR 42 000 - 62 000
Remote work when possible
Equipment provided
Benefits plan
+1
Junior DevOps / ELK Engineer
Junior DevOps / ELK Engineer

LUZA Group • Lisboa

Presencial
EUR 25 000 - 40 000
Remote work
Equipment provided
Benefits plan
IAM (Identity and Access Management)
IAM (Identity and Access Management)

LUZA Group • Lisboa

Híbrido
EUR 45 000 - 70 000
Tech Lead (Automation)
Tech Lead (Automation)

LUZA Group • Lisboa

Presencial
EUR 42 000 - 64 000
Remote work possible
Equipment provided
Benefits plan
Mid .Net Developer
Mid .Net Developer

LUZA Group • Porto

Presencial
EUR 30 000 - 50 000
Wage according to experience
Remote work whenever possible
Equipment provided
+1