Senior Penetration Tester - The Netherlands

Mnemonic
Utrecht, Netherlands
about 2 months ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Working hours
Regular working hours
Languages
English
Job source

Tech stack

Amazon Web Services Software System Penetration Testing Architectural Patterns Automation of Tests Microsoft Azure Cloud Computing Security Identity and Access Management Network Segmentation Data Logging Google Cloud GWAPT Kubernetes
+2 more
Serverless Computing Microservices

Job description

  • Analyse code and architecture to identify design weaknesses, systemic risk and high-impact attack paths.
  • Provide concrete and strategic advice on secure architecture and solution design across application, cloud and on-prem environments.
  • Assess and secure high-risk areas in cloud deployments, such as Identity and Access Management (IAM), network segmentation and logging.
  • Test and advise on containerised and modern architectures, including Kubernetes, microservices and serverless solutions.
  • Develop and improve internal tooling, scripts and automation to ensure efficient, repeatable and high-quality security testing.
  • Establish and mature routines for efficient handling of vulnerabilities and secure operation.
  • Contribute as a senior resource in projects, procurement processes and security reviews.
  • Act as a trusted advisor for customers, facilitate technical discussions, and contribute to mentoring and knowledge sharing internally and externally.

Requirements

Do you have experience in Security?, mnemonic is looking for experienced candidates who combine deep technical expertise with business understanding and strong communication skills.

Have you worked for several years with security or within related disciplines, and want to further develop your professional profile and take a leading role as a trusted advisor within the security profession?

Maybe you have already worked as a penetration tester for a number of years and are looking for greater professional challenges and responsibility. You might also be a developer passionate about secure solutions and building your own testing tools, a cloud or infrastructure specialist with experience from complex IT environments, a technical architect involved in major development or migration projects, or a security analyst who solves “Capture the Flag” competitions as a hobby. Be it applications, cloud platforms or infrastructure, you fundamentally understand how technology works, you pick things apart and put them back together afterwards, and work hands-on to solve demanding problems in creative ways.

As a Senior Penetration Tester, you will combine hands-on technical expertise with strategic understanding, act as a technical authority in projects, and contribute to strengthening both our customers and our internal professional environment., * Has completed higher technical education, preferably within security or related disciplines.

  • Has relevant experience within penetration testing, security testing, development, cloud or infrastructure security.
  • Has the ability to independently scope, execute and conclude complex security assessments.
  • Enjoys working hands-on with technology, picking things apart to understand how they work.
  • Works structurally and independently, and takes clear ownership of deliveries and quality.
  • Has the ability to clearly communicate complex technical information to both technical and non-technical stakeholders, verbally and in writing.
  • Has good communication skills in English, both verbally and written.
  • Has consultancy experience and understands the customer perspective., * Offensive Security Certified Professional (OSCP)
  • GIAC Penetration Tester (GPEN), GIAC Web Application Penetration Tester (GWAPT)
  • Certified Cloud Security Professional (CCSP), Certificate of Cloud Security Knowledge (CCSK)
  • Security certifications for AWS, Azure or Google Cloud Platform (GCP)
  • CISSP, CISA

Benefits & conditions

  • Competitive salary, share program and bonus scheme that promotes a long-term employment outlook, including attractive pension and insurance coverage
  • Opportunities for relevant professional training (courses) and conferences
  • We place a strong emphasis on workplace well-being and teambuilding through social activities, events and trips with colleagues. In addition, we have an inclusive environment that promotes work-life balance and accommodates to families. All our offices are centrally located.
  • A workplace that has been ranked as one of the best in Europe for a number of years. In Norway we have been amongst the top 10 workplaces for 10 years in a row.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on indeed.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:10 min

Exposing sensitive information through partial search logs

Dennis Schulz Dennis Schulz +1 · WWC Europe 2026

2:28 min

Understanding Kubernetes architecture and core cluster components

Marc Nimmerrichter · WWC 2022

2:22 min

Structuring critical internal and external penetration testing procedures

Jasmin Azemović Jasmin Azemović · WWC 2023

1:56 min

Discovering incidents using logs, metrics, and traces

Nele Uhlemann · WWC 2023

4:04 min

Overview of Kubernetes operators and custom resource definitions

Philipp Krenn · WWC 2022

2:39 min

Shifting security testing focus toward critical application logic problems

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC Europe 2026

Videos

See all

Related articles

See all