> Markdown version of [/jobs/ext/2665310-pentester](https://www.wearedevelopers.com/jobs/ext/2665310-pentester). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Pentester - **Company:** GMV Spain - **Location:** Madrid, Spain (Remote available) - **Contract:** Permanent contract - **Skills:** Active Directory, Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Microsoft Azure, Bash Shell, Burp Suite, Cloud Computing, Intrusion Detection and Prevention, Mobile Application Software, Python (Programming Language), Nmap, Open Web Application Security, Windows PowerShell, Red Team (Cyber Security), Wi-Fi Technology, Computer Networking Systems, Google Cloud, Cloud Platform System, Large Language Models, Mitre Att&ck, Metasploit, Purple Team (Cyber Security), Blue Team (Cyber Security) - **Published:** September 2, 2026 - **Apply:** https://www.jobleads.com/es/job/e27474d936ae60ad935be9e24cb826ab4 ## About the Role We are looking for someone with strong experience in offensive cybersecurity, comfortable working in complex environments and able to independently lead technical security assessments. For this position, it is important to have: * 5+ years of experience in penetration testing (web, mobile, network, cloud, Active Directory, Wi-Fi). * Experience in Red Team operations designing and executing simulated attacks. * Advanced knowledge of tools such as Burp Suite, Nmap, Metasploit or C2 frameworks. * Ability to automate offensive tasks through scripting (Python, Bash or PowerShell). * Experience producing technical and executive reports focused on risk. * Strong communication skills and ability to present results clearly. * Experience managing cybersecurity or technical audit projects. * Offensive certifications such as OSCP, OSEP, OSWE, eCPPT, CRTP or equivalent. * Knowledge of frameworks and methodologies such as PTES, MITRE ATT&CK or OWASP. * Experience assessing security in AI or LLM-based systems (OWASP Top 10 for LLMs). ## Description Do you want to participate in advanced offensive security assessments? The GMV Technical Audits team is looking for you!, As a Senior Pentester, you will not only execute technical assessments but also design realistic attack scenarios based on MITRE ATT&CK TTPs and lead audit projects, helping organizations understand how they could be compromised… before a real attacker does. You will work on web and mobile applications, network infrastructures, Wi-Fi networks, cloud environments (AWS, Azure, GCP), Active Directory and AI-based systems. You will also participate in Red Team and Purple Team exercises, simulating real attacks and collaborating with Blue Team professionals to improve threat detection and response capabilities. In your day-to-day work you will: * Execute and lead penetration tests in complex corporate environments. * Participate in Red Team exercises, applying evasion techniques against EDR, XDR, WAF and antivirus solutions. * Identify vulnerabilities, analyze their impact and propose effective mitigation strategies. * Develop or adapt offensive tools and automations using Python, Bash or PowerShell. * Produce clear technical and executive reports focused on risk. * Present findings to both technical and business audiences. * Manage technical audit projects, coordinating scope, timelines and deliverables. ## Related Videos - [How to Cause (or Prevent) a Massive Data Breach- Secure Coding and IDOR](https://www.wearedevelopers.com/videos/39-how-to-cause-or-prevent-a-massive-data-breach-secure-coding-and-idor) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [It's a (testing) trap! - Common testing pitfalls and how to solve them](https://www.wearedevelopers.com/videos/1193-it-s-a-testing-trap-common-testing-pitfalls-and-how-to-solve-them) - [Let’s write an exploit using AI](https://www.wearedevelopers.com/videos/1004-let-s-write-an-exploit-using-ai) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 191: Malware interviews, EU ❤️ Open Source and Skilled Agents](https://www.wearedevelopers.com/magazine/645-dev-digest-191-malware-interviews-eu-open-source-and-skilled-agents) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this)