Cybersecurity Senior Consultant

Hack In Hire
Huelva, Spain
12 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
4 years minimum
Compensation
€44,000.0
Working hours
Regular working hours

Tech stack

Active Directory Amazon Web Services Software System Penetration Testing Microsoft Azure Bash Shell Cloud Computing Security Cyber Security Mobile Application Software Python (Programming Language) Open Source Technology Open Source Intelligence Open Web Application Security
+5 more
Windows PowerShell Software Vulnerability Management Wi-Fi Technology Scripting Mitre Att&ck

Job description

We’re hiring a Cybersecurity Senior ConsultantLocation:SpainSalary:From 44k€There you’ll find an environment where technical excellence is a priority. You’ll work on high-impact projects through advanced services such as security analysis, penetration testing, and technical audits - and enjoy conditions designed to strengthen your well-being and professional development.You won’t just perform tasks: you’ll have the opportunity to learn, research, grow, and make your mark on every project, while we ensure you have everything you need to advance your career.Main responsibilitiesExecute advanced security audits on complex web and mobile applications (OWASP / OWASP Mobile).Perform advanced penetration testing: external, internal, Active Directory and network environments, with EDR evasion.Participate in Ethical Hacking projects: Wi-Fi networks, social engineering, OSINT, etc.Document tests and gather key evidence.Write technical reports and deliver results presentations.Participate in vulnerability remediation, offering recommendations and validation tests.Collaborate with Project Managers and the team on continuous project improvement.Participate in internal talks and training sessions.Contribute to the development of proprietary tools and the team’s R&D projects.Attend industry events and stay up-to-date on emerging threats.Desired profileAt least 4 years performing security audits, web, mobile, and infrastructure hacking.Extensive knowledge of networks and their advanced operation.Solid experience in EDR bypassing mechanisms.Proficiency in web and mobile application hacking (OWASP and OWASP Mobile).Experience in infrastructure hacking: Wi-Fi, Active Directory, internal environments.Advanced scripting skills (Python, Bash, PowerShell, etc.).Ability to work in mixed teams and good communication skills.Especially valuedExperience technically leading projects or teams.Cloud security reviews (beyond AWS and Azure).Physical intrusion exercises.OT network exercises.ATM and device exercises (Hardware Hacking).Active participation in the security community: publications, talks, CTFs, open-source.Knowledge of MITRE ATT&CK and Red Teaming methodologies.Experience in cybersecurity service companies and technical leadership in hacking teams.#J-*****-Ljbffr

Requirements

At least 4 years performing security audits, web, mobile, and infrastructure hacking. Extensive knowledge of networks and their advanced operation. Solid experience in EDR bypassing mechanisms. Proficiency in web and mobile application hacking (OWASP and OWASP Mobile). Experience in infrastructure hacking: Wi-Fi, Active Directory, internal environments. Advanced scripting skills (Python, Bash, PowerShell, etc.). Ability to work in mixed teams and good communication skills. Especially valued Experience technically leading projects or teams. Cloud security reviews (beyond AWS and Azure). Physical intrusion exercises. OT network exercises. ATM and device exercises (Hardware Hacking). Active participation in the security community: publications, talks, CTFs, open-source. Knowledge of MITRE ATT&CK and Red Teaming methodologies. Experience in cybersecurity service companies and technical leadership in hacking teams. #J-*****-Ljbffr

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber ¡ WWC Europe 2026

3:52 min

Avoiding remote code execution from unsanitized inputs

Alexander Pirker ¡ WWC 2022

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders ¡ LIVE

5:01 min

Bridging the gap between software development and security

Vandana Verma ¡ LIVE

54 sec

Interpreting complex terminal commands safely using external explanation utilities

Dan Cranney +2 ¡ LIVE

6:12 min

Recommended training platforms for developing security mindsets

Thomas Konrad ¡ WWC 2021

Videos

See all

Related articles

See all