Security Engineer - Red Team

Chronos Consulting
Barcelona, Spain
4 days ago
Apply on www.buscojobs.com.es
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours

Tech stack

Artificial Intelligence Amazon Web Services Software System Penetration Testing Bash Shell Software as a Service Cyber Security Python (Programming Language) Red Team (Cyber Security) Information Technology Metasploit Vulnerability Analysis Golang

Job description

OverviewIn this role you perform adversarial security testing to strengthen our cloud, AI model endpoints, and multi-tenant SaaS security.You’ll influence product security architecture through real-world red team activity and vulnerability research.You work with cross-functional teams to raise defenses during our AI transformation.The position offers remote work and impacts mission-critical systems globally.ResponsabilidadesConduct red team exercises and penetration tests to simulate real-world attacks and validate defensesPerform vulnerability research and exploit development to validate attack pathsCollaborate on threat modeling to anticipate attacker techniques and improve defensesPartner with SecOps and Bug Bounty teams to enhance detection and resilienceCoordinate external red team and third-party security assessmentsDevelop automated tools/frameworks to scale offensive security across systems and appsIdentify security weaknesses and influence product security architecture and improvementsContribute to security testing across diverse customer deploymentsRequisitos principalesBachelors degree in Computer Science, Cybersecurity, or a related field5+ years in cybersecurity with a focus on offensive security/red teamAdvanced penetration testing certifications (OSCP, OSCE, GPEN, GXPN)Deep AWS cloud security testing expertiseProficiency with exploitation frameworks and tools (Nuclei, Metasploit, Burp, Cobalt Strike)Scripting and automation skills (Python, Go, Bash)Hands-on vulnerability research and exploit development experienceKnowledge of threat modeling methodologies and attack path analysisCollaborative mindsetStrong communication skillsProblem-solving and analytical thinkingNucleiMetasploitBurp

Requirements

The position offers remote work and impacts mission-critical systems globally.ResponsabilidadesConduct red team exercises and penetration tests to simulate real-world attacks and validate defensesPerform vulnerability research and exploit development to validate attack pathsCollaborate on threat modeling to anticipate attacker techniques and improve defensesPartner with SecOps and Bug Bounty teams to enhance detection and resilienceCoordinate external red team and third-party security assessmentsDevelop automated tools/frameworks to scale offensive security across systems and appsIdentify security weaknesses and influence product security architecture and improvementsContribute to security testing across diverse customer deploymentsRequisitos principalesBachelors degree in Computer Science, Cybersecurity, or a related field5+ years in cybersecurity with a focus on offensive security/red teamAdvanced penetration testing certifications (OSCP, OSCE, GPEN, GXPN)Deep AWS cloud security testing expertiseProficiency with exploitation frameworks and tools (Nuclei, Metasploit, Burp, Cobalt Strike)Scripting and automation skills (Python, Go, Bash)Hands-on vulnerability research and exploit development experienceKnowledge of threat modeling methodologies and attack path analysisCollaborative mindsetStrong communication skillsProblem-solving and analytical thinkingNucleiMetasploitBurp

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.buscojobs.com.es
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

51 sec

Exploring offensive security with red team tooling

Stefania Chaplin · World Congress 2022

1:08 min

Building solutions with open source GoLang infrastructure tools

Jad Wahab · LIVE

3:52 min

Avoiding remote code execution from unsanitized inputs

Alexander Pirker · World Congress 2022

1:19 min

Enhancing product safety through continual red teaming operations

Rebekka Weiss Rebekka Weiss +1 · World Congress 2025

6:16 min

Event-driven Golang backend architecture and cloud deployment

Irina Branovic Irina Branovic · World Congress 2026 Europe

54 sec

Interpreting complex terminal commands safely using external explanation utilities

Dan Cranney Dan Cranney +2 · LIVE

Videos

See all

Related articles

See all