Penetration Tester

Lovable Labs Sweden AB

Stockholms kommun

On-site

SEK 900,000 - 1,300,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

A dynamic tech company in Stockholm is seeking a Penetration Tester to enhance security across their platforms. The ideal candidate will have over 5 years of experience in penetration testing, with deep knowledge of offensive security techniques and cloud environments. You will be responsible for identifying security vulnerabilities, working closely with engineering teams on solutions, and raising the security standards across the organization. Join us to help make our AI product secure and innovative.

Qualifications

  • 5+ years of hands-on penetration testing experience across various platforms.
  • Deep expertise in offensive security and attack techniques.
  • Strong understanding of cloud environments and their security implications.

Responsibilities

  • Plan and execute penetration tests across Lovable's platforms.
  • Probe for vulnerabilities in AI integrations and user-generated code.
  • Collaborate with engineering to address and remediate findings.
  • Turn findings into action: work directly with engineering to prioritise, remediate, and verify fixes, closing the loop between discovery and resolution.
  • Raise the security bar org-wide: run internal red team exercises, contribute to threat modelling, and embed an attacker's mindset across the engineering culture.
  • Help make Lovable the most secure AI product in the market.

Skills

Penetration testing
Offensive security techniques
Cloud security (GCP, AWS)
Report writing
Collaboration
Team collaboration

Tools

OWASP
Model abuse techniques
SAST/DAST tooling

Job description

TL;DR: We're looking for a Penetration Tester who lives to break things, ethically. You'll push Lovable's platform to its limits, hunt vulnerabilities across our AI pipelines and user-generated code, and make sure attackers never get there before you do.

Why Lovable?

Lovable lets anyone and everyone build software with any language. From solopreneurs to Fortune 100 teams, millions of people use Lovable to transform raw ideas into real products - fast. We are at the forefront of a foundational shift in software creation, which means you have an unprecedented opportunity to change the way the digital world works. Over 2 million people in 200+ countries already use Lovable to launch businesses, automate work, and bring their ideas to life. And we're just getting started.

We're a small, talent-dense team building a generation-defining company from Stockholm. We value extreme ownership, high velocity, and low-ego collaboration. We seek out people who care deeply, ship fast, and are eager to make a dent in the world.

What we're looking for
  • 5+ years of hands‑on penetration testing experience across web, mobile, APIs, and cloud infrastructure.
  • Deep expertise in offensive security techniques: OWASP, MITRE ATT&CK, exploit development, privilege escalation, and lateral movement.
  • Experience attacking AI‑native products or LLM‑integrated systems, including prompt injection, model abuse, and data exfiltration vectors.
  • Strong understanding of cloud environments (GCP, AWS, Cloudflare) and the attack surfaces they introduce.
  • Ability to translate complex findings into clear, prioritised reports that engineering teams can act on immediately.
  • Low ego, high output. You collaborate as naturally as you compete against systems.
  • Bonus: experience with red team operations, supply chain attacks, or mobile security (iOS/Android). Familiarity with SAST/DAST tooling. Background in security research or CVE disclosure.
What you'll do
  • Own offensive security end-to-end: plan and execute penetration tests across Lovable's web platform, mobile surface, APIs, cloud infrastructure, and AI pipelines.
  • Break our AI before others do: probe LLM integrations for prompt injection, jailbreaks, data leakage, and novel attack vectors unique to AI‑generated code running in live products.
  • Stress-test user‑generated code at scale: identify systemic vulnerabilities introduced when millions of users create and deploy real applications on Lovable.
  • Turn findings into action: work directly with engineering to prioritise, remediate, and verify fixes, closing the loop between discovery and resolution.
  • Raise the security bar org-wide: run internal red team exercises, contribute to threat modelling, and embed an attacker's mindset across the engineering culture.
  • Help make Lovable the most secure AI product in the market.
Our Tech Stack
  • Frontend: React and TypeScript
  • Backend: Golang and Rust
  • Cloud: Cloudflare, GCP, AWS, Modal, multiple LLM providers
  • DevOps & Tooling: GitHub Actions, Grafana, OTEL, infra‑as‑code (Terraform)
  • Data: Clickhouse, Firestore, Spanner, BigQuery
About your application

Please submit your application in English. It's our company language, so you'll be speaking lots of it if you join.

We treat all candidates equally - if you're interested, please apply through our careers portal.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Penetration Tester
Penetration Tester

Antler • Stockholms kommun

On-site
SEK 600,000 - 800,000
Penetration Tester
Penetration Tester

Lovable • Sweden

On-site
SEK 800,000 - 1,000,000
Penetration Tester
Penetration Tester

Lovable • Stockholms kommun

On-site
SEK 646,000 - 971,000
Application Security Engineer
Application Security Engineer

Lovable • Stockholms kommun

On-site
SEK 655,000 - 984,000
Fullstack Engineer - AI Code Security
Fullstack Engineer - AI Code Security

Lovable • Stockholms kommun

On-site
SEK 600,000 - 800,000
Staff / Principal Software Engineer, Security
Staff / Principal Software Engineer, Security

Lovable • Stockholms kommun

On-site
SEK 709,000 - 929,000
Software Engineer, Security (AI Code)
Software Engineer, Security (AI Code)

Lovable • Stockholms kommun

On-site
SEK 373,000 - 560,000
Software Engineer, Security (Product)
Software Engineer, Security (Product)

Lovable • Stockholms kommun

On-site
SEK 559,000 - 840,000
Senior Penetration Tester: AI-Security & Cloud Exploitation
Senior Penetration Tester: AI-Security & Cloud Exploitation

Lovable • Stockholms kommun

On-site
SEK 646,000 - 971,000
Software Engineer, Security (Product)
Software Engineer, Security (Product)

Antler • Stockholms kommun

On-site
SEK 1,000,000 - 1,800,000