> Markdown version of [/jobs/ext/371268-penetration-tester-2971553](https://www.wearedevelopers.com/jobs/ext/371268-penetration-tester-2971553). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Penetration Tester (2971553) - **Company:** SOMI Solutions GmbH - **Location:** Kassel, Germany - **Salary:** €93,600.0 - €145,600.0 - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Open Web Application Security, Mitre Att&ck - **Published:** May 31, 2026 - **Apply:** https://www.xing.com/jobs/kassel-penetration-tester-2971553-154712883 ## About the Role * Zertifizierungen wie OSCP, CEH oder vergleichbar * Erfahrung in Web-, Infrastruktur- und Code-Analysen * Kenntnisse in OWASP und MITRE ATT&CK * Erfahrung in der Erstellung strukturierter, prüffähiger Reports * Selbstständige Arbeitsweise & professionelle Kommunikation, * Deutsch: Verhandlungssicher * Englisch: Erweiterte Kenntnisse ## Description * Full-timeEmployment type: Full-time * €45 - €70 (employer salary) * On-site About this job Deine Tätigkeiten * Planung, Durchführung und Dokumentation von Penetrationstests * Manuelle Analyse & Verifikation von Schwachstellen * Durchführung von Web-, Infrastruktur- und Quellcodeanalysen * Anwendung von Exploitation- und Post-Exploitation-Techniken * Erstellung prüffähiger technischer Reports sowie Management-Berichte * Abstimmung mit Projektverantwortlichen und regelmäßige Statusupdates ## Related Videos - [Bulletproof Web Applications: The 2025 OWASP Top Ten](https://www.wearedevelopers.com/videos/100072-bulletproof-web-applications-the-2025-owasp-top-ten) - [Hacking Kubernetes: Live Demo Marathon](https://www.wearedevelopers.com/videos/488-hacking-kubernetes-live-demo-marathon) - [Maturity assessment for technicians or how I learned to love OWASP SAMM](https://www.wearedevelopers.com/videos/351-maturity-assessment-for-technicians-or-how-i-learned-to-love-owasp-samm) - [Securing Your Web Application Pipeline From Intruders](https://www.wearedevelopers.com/videos/53-securing-your-web-application-pipeline-from-intruders) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) ## Related Articles - [The 8 Best Code Testing Tools](https://www.wearedevelopers.com/magazine/402-the-8-best-code-testing-tools) - [Best Coding Boot Camps in Germany](https://www.wearedevelopers.com/magazine/237-best-coding-boot-camps-in-germany) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Benefits of Using JMeter For Performance Testing](https://www.wearedevelopers.com/magazine/96-benefits-of-using-jmeter-for-performance-testing) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)