Senior Penetration Tester

1230 - 1330 PLN/ dzień.B2B
SeniorFull-time·B2B
#432218·Dodano miesiąc temu·3
Źródło: nofluffjobs.com
Aplikuj teraz

Tech Stack / Keywords

TestingWeb applicationsSecurityiOSAndroidTCPTest automationSASTDASTOSCPOSWE

Firma i stanowisko

Mindbox is a tech-driven company connecting top IT talents with technology projects for leading enterprises across Europe, focusing on consulting, engineering, and talent to build meaningful digital solutions.

Wymagania

  • Strong experience in penetration testing with at least 3+ years of hands-on experience.
  • Expertise in testing web applications, infrastructure, and mobile technologies using manual and automated methods.
  • Knowledge across key pentesting domains: application, network, and/or mobile.
  • Understanding of platform security models for iOS and Android and associated mobile security risks.
  • Excellent TCP/IP knowledge and understanding of security implications at multiple protocol layers.
  • Ability to analyze and explain security vulnerabilities and cryptographic principles from first principles.
  • Proven programming or scripting skills for test automation and exploit development.
  • Critical thinking with strong ability to articulate issues and recommendations to technical and non-technical audiences.
  • Strong organizational skills, able to work independently or lead testing engagements.

Nice to have:

  • Familiarity with common vulnerabilities in financial applications and highly regulated environments.
  • Awareness of application security scanning tools, including SAST, DAST, and MAST.
  • Relevant certifications such as OSCP, OSWE, CREST, GPEN (not mandatory but highly valued).

Obowiązki

  • Lead and perform manual penetration testing across diverse environments including infrastructure, custom applications, web services, APIs, and mobile platforms (iOS and Android).
  • Own the design, execution, and documentation of penetration testing engagements ensuring high-quality deliverables.
  • Translate highly technical findings into clear, actionable business risk statements.
  • Conduct source code and configuration reviews where applicable.
  • Maintain an objective, risk-based approach aligned with the organization's Cybersecurity and compliance frameworks.
  • Provide guidance, supervision, and mentoring to junior team members.
  • Continuously improve security testing processes, tools, and methodologies to enhance quality and efficiency.
  • Collaborate with global stakeholders to ensure compliance with internal standards and regulatory requirements.

Benefity

  • Flexible cooperation model.
  • Hybrid work setup with 6 days from the office per month.
  • Collaborative team culture with experienced professionals eager to share knowledge.
  • Continuous development opportunities with access to training platforms.
  • Comprehensive benefits including Interpolska Health Care, Multisport card, Warta Insurance, and more.
  • High quality equipment provided, including laptop and essential software.
Elastyczne godziny
Karta sportowa
Opieka zdrowotna
Ubezpieczenie
Mindbox

Mindbox

327 aktywnych ofert

Zobacz wszystkie oferty
Aplikuj teraz