> Markdown version of [/jobs/ext/1980316-senior-penetration-tester](https://www.wearedevelopers.com/jobs/ext/1980316-senior-penetration-tester). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Penetration Tester - **Company:** Approach Cyber - **Location:** Mont-Saint-Guibert, Belgium (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Application Programming Interfaces (APIs), Software System Penetration Testing, Bash Shell, Burp Suite, Cyber Security, Python (Programming Language), Open Web Application Security, Reverse Engineering, Web Application Security, Mobile Security, Mitre Att&ck, Cyber Threat Analysis, Data Analytics, Nessus, Programming Languages - **Published:** August 8, 2026 - **Apply:** https://www.adzuna.be/details/5832944883 ## About the Role We are looking for a Senior Pentester with a strong record of pentesting engagement to integrate our Security Operations Centre. You will take part in stimulating offensive assignments which will include technical security assessments for different environments including applications (web, API, …), infrastructure, network and internet of things., * Minimum 5 years of experience in pentesting and red teaming activities, * A true passion for ethical hacking: pentesting exercices on platforms such as Hack The Box, Try Hack Me, or participation in CTF's, or technology watch (whitepapers, blogposts, …), etc * An excellent spoken and written English. * A strong knowledge of * Web application security testing * Network/infra security testing * Penetration testing tools such as Burp Suite, ffuf, Nuclei, Nessus, Bloodhound, Impacket, NetExec, ... * Scripting and automation using Python or Bash or any programming language. ## Description As a Senior Pentester, you will play a crucial role in identifying and mitigating security vulnerabilities across different environments. You will conduct stimulating penetration tests or red teaming exercises, analyze security risks, and provide actionable recommendations to enhance the security posture of our clients. Here are just a few of the responsibilities you should take on: * Perform applications, API's, infrastructures, networks/cloud and internet of things penetration testing and red teaming exercises, * Conduct reverse engineering of binaries, or obfuscated code to identify vulnerabilities and security risks * Identify, analyze, and exploit security vulnerabilities in accordance with industry standards (OWASP, MITRE ATT&CK, NIST, etc.), * Provide detailed reports on findings, including risk assessments and remediation recommendations, * Stay up to date with the latest cybersecurity threats, attack techniques, and security best practices and tools, * Use your knowledge to continually improve the tools, techniques and procedures used by your team, * Contribute to market development by developing a business/commercial approach towards potential customers and ensuring external visibility (which can take various forms, such as presence at trade shows, conference presentations, use cases, creation of CTFs, participation in networking groups, etc). * Mentor new young team members by supporting them in their day-to-day responsibilities and advising them on technology and skills development., * Your ability to speak/write/understand French or Dutch at a professional level remains a strong plus. * Your information security certifications such as: OSCP, CRTO, eCPPT, OSCE, or other red teaming/pentesting certifications * Your knowledges on one of these technologies : Cobaltstrike, Mythic * Your experience on mobile security testing projects. Human skills: * Curiosity: Ethical hacking is constantly evolving. New vulnerabilities, new tools, new methodologies... The good pentester you are loves to dig, test, experiment, and continuously learn. * Deep analytical skills and problem-solving: A pentest is like a puzzle. You need to analyze a system, identify potential weaknesses, and find attack paths that others might not have considered. * Clear and impactful communication: You know that a great security report isn't just about listing vulnerabilities; it's about telling a story that makes sense to non-technical stakeholders. You translate complex findings into clear, actionable insights. * Team spirit: Cybersecurity is a team effort. You share knowledge, discuss trends, and support your teammates, knowing that collaboration makes everyone stronger. * Integrity above all: You handle sensitive information with the highest level of confidentiality and professionalism. Trust is at the core of everything you do. * Last but not least, we would like you to become an ambassador for the professional values that are at the heart of our philosophy, * Benefit from an attractive salary package, including a full range of benefits: * Mobility budget you can use for a company car (electrical) or other green or shared mobility initiatives or housing costs. * Competitive group insurance including pension fund, death, and disability coverage, * Attractive complementary insurances for non-work-related accident and loss of salary in case of sickness, company fully supported contribution (hospitalisation and outpatient care) * 32 days holiday/year (on a fulltime equivalent basis) * Flexible home working policy (2,5 days/week minimum at office) * Bonus based on your annual objectives * Other fringe benefits (meal vouchers, eco vouchers, bike lease, …) * Enjoy some fun company events and exclusive team experiences * Contribute to a safer, fairer world for data subjects and citizens, ensure the serenity of great businesses and essential public institutions. * Live your values daily in a dynamic, fun and multicultural working environment. ## Related Videos - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Old tools, new tricks](https://www.wearedevelopers.com/videos/1916-old-tools-new-tricks) - [It's a (testing) trap! - Common testing pitfalls and how to solve them](https://www.wearedevelopers.com/videos/1193-it-s-a-testing-trap-common-testing-pitfalls-and-how-to-solve-them) - [MCP doesn’t suck — your agent does](https://www.wearedevelopers.com/videos/100202-mcp-doesn-t-suck-your-agent-does) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Find a Developer Job: 12 Best Job Sites For Developers](https://www.wearedevelopers.com/magazine/165-find-a-developer-job-12-best-job-sites-for-developers) - [Where to Find Entry-Level Software Engineering Jobs](https://www.wearedevelopers.com/magazine/397-where-to-find-entry-level-software-engineering-jobs) - [Where To Find Software Engineering Jobs](https://www.wearedevelopers.com/magazine/396-where-to-find-software-engineering-jobs) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs)