Penetration Tester
⚲ Poland (Remote)
33 600 - 40 320 PLN netto (B2B)
Wymagania
- Mobile Security Testing
- Burp Suit
- Nmap
- Nessus
- Metasploit
- Infrastructure Pentesting
Opis stanowiska
We are looking for a skilled Penetration Tester with hands-on experience in mobile application security testing and infrastructure assessments. This role is ideal for someone with solid technical penetration testing skills who can independently conduct security assessments and provide actionable recommendations.
Responsibilities
• Perform penetration testing of mobile applications (Android and iOS).
• Conduct infrastructure and network security assessments.
• Identify, validate, and document security vulnerabilities.
• Produce clear and comprehensive penetration testing reports, including remediation recommendations.
• Collaborate with technical teams to support vulnerability remediation efforts.
• Verify and retest implemented security fixes.
Requirements
• Approximately 3–7 years of hands-on penetration testing experience.
• Proven experience in mobile application security testing (required).
• Strong background in infrastructure, network, and system penetration testing.
• Good understanding of penetration testing methodologies and security standards (e.g., OWASP, PTES).
• Experience identifying, exploiting, and documenting security vulnerabilities.
• Familiarity with common penetration testing tools and techniques.
• Ability to work independently and communicate findings effectively.
Nice to Have
• Relevant security certifications such as OSCP, eJPT, PNPT, or similar.
• Experience with web application security testing.
• Basic scripting or automation skills.
Responsibilities
• Perform penetration testing of mobile applications (Android and iOS).
• Conduct infrastructure and network security assessments.
• Identify, validate, and document security vulnerabilities.
• Produce clear and comprehensive penetration testing reports, including remediation recommendations.
• Collaborate with technical teams to support vulnerability remediation efforts.
• Verify and retest implemented security fixes.
Requirements
• Approximately 3–7 years of hands-on penetration testing experience.
• Proven experience in mobile application security testing (required).
• Strong background in infrastructure, network, and system penetration testing.
• Good understanding of penetration testing methodologies and security standards (e.g., OWASP, PTES).
• Experience identifying, exploiting, and documenting security vulnerabilities.
• Familiarity with common penetration testing tools and techniques.
• Ability to work independently and communicate findings effectively.
Nice to Have
• Relevant security certifications such as OSCP, eJPT, PNPT, or similar.
• Experience with web application security testing.
• Basic scripting or automation skills.
🔍 Dekoder Ogłoszenia
🔴
independently conduct security assessments
Oczekuje się, że będziesz w stanie samodzielnie zarządzać całym procesem testów penetracyjnych, od planowania po raportowanie, bez ciągłego nadzoru.
🟡
provide actionable recommendations
Nie wystarczy znaleźć luki; musisz zaproponować konkretne i wykonalne rozwiązania, które zespół techniczny będzie w stanie wdrożyć.
🟡
Approximately 3–7 years of hands-on penetration testing experience
Przedział lat doświadczenia jest dość szeroki, co może sugerować, że szukają kogoś, kto pasuje do zakresu, ale niekoniecznie spełnia wszystkie kryteria na wyższym końcu skali.
🔴
Proven experience in mobile application security testing (required)
To kluczowy wymóg, więc jeśli nie masz solidnego doświadczenia w tym obszarze, prawdopodobnie nie będziesz odpowiednim kandydatem.
🟡
Ability to work independently and communicate findings effectively
Oprócz samodzielności technicznej, oczekuje się również umiejętności jasnego i zwięzłego przedstawiania skomplikowanych kwestii technicznych zarówno zespołowi technicznemu, jak i potencjalnie nietechnicznym interesariuszom.