TasksTasks
- You will conduct penetration testing of web applications, APIs and microservices architectures aligned with standards such as from OWASP
- You will perform advanced security assessments of cloud environments (AWS, Azure, GCP), hybrid and on-prem infrastructure
- You will perform security validation of Infrastructure as Code (IaC) implementations, identifying misconfigurations and compliance gaps
- You will conduct mobile application security assessments for Android and iOS platforms
- You will author detailed technical reports documenting vulnerabilities, risk analysis, and remediation recommendations
- You will present findings to stakeholders and technical teams
- You will mentor colleagues and contribute to team skill development
- You will handle the development of testing methodologies and processes through automation and innovation
QualificationsQualifications
Proven track record in web application security testing with Burp Suite proficiencyDemonstrated experience in cloud security for at least one major platform (AWS / Azure / GCP)Good understanding of IT architectures and security conceptsExperience writing clear, actionable reportsStrong problem-solving abilitiesProfessional English communication skillsTeam-oriented mindsetAbility to explain technical concepts to various audiencesNice to have :
Security assessment and testing certifications (e.g. : OSCP, OSWE, WAPTX) or cloud security certsExperience with Infrastructure as Code (Terraform, Ansible)Familiarity with enterprise environmentsGerman language skillsBasic understanding of OT / IoT securityInterest in security research and continuous learningThings to know before departure :
Start : by arrangement - always on the 1st and th of the monthWorking hours : full-time ( h); vacation daysEmployment contract : UnlimitedLine of work : ConsultingLanguage skills : Fluency in written and spoken English; German would be a plusFlexibility & willingness to travelOther : a valid work permit