> Markdown version of [/jobs/ext/293774-penetration-tester-red-team-specialist](https://www.wearedevelopers.com/jobs/ext/293774-penetration-tester-red-team-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Penetration Tester / Red team Specialist - **Company:** Raiffeisen Bank International AG - **Location:** Austria - **Salary:** €47,256.0 - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Active Directory, Software System Penetration Testing, Authentication Protocols, Linux, Supervisory Control and Data Acquisition (SCADA), Identity and Access Management, Intrusion Detection and Prevention, Python (Programming Language), Network Security, OAuth, Performance Tuning, Windows PowerShell, Azure Active Directory, Red Team (Cyber Security), Security Assertion Markup Language (SAML), Security Information and Event Management, Web Applications, Scripting, Purple Team (Cyber Security), Cyber Warfare, Blue Team (Cyber Security) - **Published:** June 3, 2026 - **Apply:** https://jobs.rbinternational.com/job/Wien-Penetration-Tester-Red-team-Specialist-%28fmx%29-1190/1362678557/ ## About the Role * Proven hands-on experience delivering red team, purple team, or advanced penetration testing engagements in large enterprise environments. * Experience in offensive operations beyond tool usage, including privilege escalation, lateral movement, persistence, defense evasion, and identity abuse in enterprise and cloud environments. * Hands-on experience in web application exploitation techniques, such as authentication bypass, session abuse, SSRF, deserialization, injection flaws, and OAuth/SAML abuse. * Deep understanding of the internals of at least one operating system (Windows or Linux), authentication mechanisms, service and process relationships, and system telemetry. * Prior knowledge of Active Directory abuse paths and enterprise identity attack techniques. * Understanding of how web attacks manifest in application logs, web logs, WAF telemetry, and identity providers. * Proficiency in at least one scripting language, preferably PowerShell or Python. * Ability to communicate clearly with both technical and non-technical stakeholders. Nice to have: * Experience working in Blue Team functions such as Detection Engineering or Incident Response. * Experience building, tuning, or validating detections in SIEM and EDR platforms. * Familiarity with Atomic Red Team, Caldera, or similar adversary simulation frameworks. * Knowledge of Azure AD / Entra ID and cloud identity attack techniques. * Experience in the financial services or other regulated industries (banking, insurance, critical infrastructure). * Knowledge of SWIFT security controls and attack surfaces. * Familiarity with TIBER-style or threat-led testing approaches, DORA (Digital Operational Resilience Act). * Experience with OT/SCADA environments or banking ATM/POS network security assessments. * Contributions to the offensive security community: CVE discoveries, public tooling, conference talks, blog posts, or CTF platforms. * Relevant offensive security certifications. * German language skills (business level) ## Description RBI Group Cyber Defense Services is seeking an experienced Red Team Specialist to operate in a large, complex enterprise environment spanning multiple business units, network banks, and subsidiaries. This role combines hands-on offensive security with defender enablement: you will simulate realistic attack paths, validate security controls, and translate offensive findings into concrete improvements for detection and response teams across the Group. The successful candidate will help raise capability on both the red and blue sides by running high-value exercises, documenting attack chains clearly, and turning technical findings into actionable improvements for defenders. Your mission at RBI: * Plan and execute red team and purple team engagements across enterprise, endpoint, identity, network, cloud, and web environments. * Conduct realistic attack-path exercises against Group units and subsidiaries, aligned with approved scope and business context. * Perform offensive activities including privilege escalation, lateral movement, persistence, defense evasion, and identity abuse in enterprise and cloud environments. * Assess internal infrastructure, Active Directory, cloud identity, and web application attack surfaces. * Document attack chains in a defender-centric manner, including techniques used, expected telemetry, detection gaps, and specific detection engineering recommendations. * Work closely with blue teams, detection engineers, and incident responders to validate controls and improve detection and response coverage. * Translate findings into prioritized remediation guidance, detection use cases, and practical follow-up actions. * Develop or customize offensive tooling, scripts, and test scenarios where required. ## About Raiffeisen Bank International AG **Did you know that RBI is one of the most popular domestic employers?**   Sure: it is also one of the **leading banking groups** in Austria and CEE. RBI not only shines on the outside, it also has inner values. The banking landscape is changing, as is RBI. **Cross-functional** teams, quick exchange of knowledge, independent work and **creativity** are very important. This is the only way for the bank to bring products and services onto the market in this fast-moving time that bring... **Tech Stack:** Java, Jenkins, Angular, JavaScript, Python, Kubernetes, Docker, REST, Agile Methodologies, Grafana, Apache, Go, Cloud (AWS/Google/Azure) , Data analysis, DevOps, Microservices **Industries:** Cloud Computing, Enterprise Software, Finance/Insurance, Computer Software [Company profile](https://www.wearedevelopers.com/companies/2938-raiffeisen-bank-international-ag) ### More Jobs at Raiffeisen Bank International AG - [Student Job - IT Delivery - Customer Onboarding and Master Data Management (20-25 h/week)](https://www.wearedevelopers.com/jobs/ext/1922678-student-job-it-delivery-customer-onboarding-and-master-data-management-20-25-h-week) - [IT Application Manager:in / Technical Analyst:in](https://www.wearedevelopers.com/jobs/48267-it-application-manager-in-technical-analyst-in) - [Platform Engineer (f/m/x) - Mercury Runtime Platform](https://www.wearedevelopers.com/jobs/48266-platform-engineer-f-m-x-mercury-runtime-platform) - [DevOps Engineer](https://www.wearedevelopers.com/jobs/ext/294657-devops-engineer) - [Platform Engineer - Mercury Runtime Platform](https://www.wearedevelopers.com/jobs/ext/293235-platform-engineer-mercury-runtime-platform) ## Related Videos - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [Keeping applications secure by evolving OAuth 2.0 and OpenID Connect](https://www.wearedevelopers.com/videos/100152-keeping-applications-secure-by-evolving-oauth-2-0-and-openid-connect) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Intermediate Bitcoin Script](https://www.wearedevelopers.com/videos/25-intermediate-bitcoin-script) - [Delay the AI Overlords: How OAuth and OpenFGA Can Keep Your AI Agents from Going Rogue](https://www.wearedevelopers.com/videos/1637-delay-the-ai-overlords-how-oauth-and-openfga-can-keep-your-ai-agents-from-going-rogue) ## Related Articles - [Software Developer Salary in Austria [2023]](https://www.wearedevelopers.com/magazine/213-software-developer-salary-in-austria-2023) - [Best Companies to Work For in Austria: Top 25 Companies in 2023 ](https://www.wearedevelopers.com/magazine/192-best-companies-to-work-for-in-austria-top-25-companies-in-2023) - [Data Analyst Salary Austria](https://www.wearedevelopers.com/magazine/275-data-analyst-salary-austria) - [IT Salaries in Austria](https://www.wearedevelopers.com/magazine/286-it-salaries-in-austria) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)