Pentester
Identyfikator ogłoszenia: 25664
At Avenga, we believe that human creativity empowers technology that matters. Operating globally, our 6000+ specialists provide a full spectrum of services, including business and tech advisory, enterprise solutions, CX, UX and Ul design, managed services, product development, and software development.
We are seeking a professional Pentester, who will join the project from automotive industry. As a part of the team, you will be responsible for conducting advanced security assessments, simulating sophisticated attacks, and providing actionable insights to improve security posture. You will be also responsible for leading penetration testing engagements, mentoring junior team members and supervising junior pen testers on their assignments. Work on site, one day a week is mandatory for this role.
This is your mission
- Perform comprehensive penetration tests on web applications, networks, cloud environments, and infrastructure.
- Identify, exploit, and document security vulnerabilities and provide remediation guidance.
- Develop and execute advanced attack scenarios using manual and automated tools.
- Lead and manage penetration testing projects from scoping through reporting and follow-up.
- Collaborate with cross-functional teams to improve security controls and policies.
- Mentor and guide junior penetration testers, fostering a culture of continuous learning.
- Stay up-to-date with the latest security threats, vulnerabilities, and industry trends.
What you bring along
- Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience).
- Minimum of 4 years of hands-on experience in penetration testing or ethical hacking.
- Strong knowledge of penetration testing methodologies and tools (e.g., Burp Suite, Metasploit, Nmap, Wireshark, etc.).
- Expertise in testing web applications, network infrastructure, cloud services (AWS, Azure, GCP), and APIs.
- Proficient in scripting and programming languages such as Python, Bash, PowerShell, or similar.
- Relevant certifications like OSCP, OSCE, CEH, CISSP, or GIAC are highly desirable.
- Excellent problem-solving skills and attention to detail.
- Strong communication skills, with the ability to explain complex security issues to non-technical audiences.
- Experience with threat modeling and risk assessment frameworks.
- Knowledge of regulatory requirements such as PCI-DSS, HIPAA, GDPR.
- Familiarity with DevSecOps and secure SDLC practices.
Your benefits
- Private medical care
- Cafeteria system
- Psychological care
- Sports plans and sports teams
- Life insurance
- Possibility to change the project
- Dedicated income protection and third-party liability insurance for IT professionals
- Opportunity to develop competencies in Competence Centers
- Team-building events
- Support in day-to-day work (in project-related topics and administrative/HR matters)
Joanna Stachowiak
Junior IT Recruiter
+48 517 022 183
Inne stanowiska
Więcej ofertDidn’t find a suitable open position?
Send us your CV
Want to refer a friend?
Referal