Senior pentester

Solicitante De Empleo
Tres Cantos, Spain
10 days ago
Apply on www.recruit.net
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience required
5 years minimum
Working hours
Regular working hours

Tech stack

Artificial Intelligence Software System Penetration Testing Bash Shell Burp Suite Cloud Computing Python (Programming Language) Nmap Open Web Application Security Windows PowerShell Red Team (Cyber Security) Wi-Fi Technology Scripting
+4 more
Large Language Models Mitre Att&ck Metasploit Purple Team (Cyber Security)

Job description

As a Senior Pentester, you will lead offensive security assessments and design realistic attack scenarios using MITRE ATT&CK, guiding audit projects for organizations aiming to understand vulnerabilities before real attackers exploit them. You will work across web, mobile, network, cloud, AD, and AI-based systems, and participate in Red Team and Purple Team exercises to boost detection and response. You will translate findings into practical mitigation and contribute to risk-focused reports for technical and business audiences. This role offers collaboration with cross-functional teams and a chance to shape security practices at scale. Compensaciones / Beneficios

  • hybrid work model
  • remote work up to 8 weeks/year
  • flexible working hours
  • relocation package
  • training opportunities
  • wellbeing program

Responsabilidades

  • Lead penetration tests in complex corporate environments
  • Participate in Red Team exercises and apply evasion against EDR, XDR, WAF, and AVs
  • Identify vulnerabilities, assess impact and propose mitigations
  • Develop or adapt offensive tools and automations (Python, Bash, PowerShell)
  • Produce technical and executive risk-focused reports
  • Present findings to technical and business audiences
  • Manage audit projects, including scope, timelines and deliverables

Requirements

  • 5+ years in penetration testing (web, mobile, network, cloud, AD, Wi-Fi)
  • Experience in Red Team operations
  • Advanced knowledge of Burp Suite, Nmap, Metasploit or C2 frameworks
  • Automation of offensive tasks via scripting (Python, Bash, PowerShell)
  • Experience producing technical and executive risk reports
  • Strong communication and clear presentation of results
  • Experience managing cybersecurity or technical audit projects
  • Offensive certifications (OSCP, OSEP, OSWE, eCPPT, CRTP or equivalent)
  • Knowledge of PTES, MITRE ATT&CK, OWASP
  • Experience assessing security in AI/LLM-based systems (OWASP Top 10 for LLMs)

  • Strong communication
  • Independent leadership
  • Cross-functional collaboration
  • Burp Suite
  • Nmap
  • Metasploit

About the company

Solicitante de Empleo

Iniciar sesión

Publica tu currículum

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.recruit.net
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:52 min

Refining the agent by automating physical hardware restarts

Marc Plogas Marc Plogas · World Congress 2026 Europe

1:04 min

Introduction to Bitcoin script parsing tools

Steve Shadders · LIVE

3:52 min

Avoiding remote code execution from unsanitized inputs

Alexander Pirker · World Congress 2022

5:01 min

Bridging the gap between software development and security

Vandana Verma · LIVE

51 sec

Exploring offensive security with red team tooling

Stefania Chaplin · World Congress 2022

1:53 min

Evaluating traditional scripting languages for modern development tasks

Jens Knipper Jens Knipper · Europe 2026 Virtual

Videos

See all

Related articles

See all