> Markdown version of [/jobs/ext/47757-expert-cyber-security-engineer](https://www.wearedevelopers.com/jobs/ext/47757-expert-cyber-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Expert Cyber Security Engineer - **Company:** Ciklum - **Location:** Spain (Remote available) - **Contract:** Permanent contract - **Skills:** Kubernetes Security, Artificial Intelligence, Amazon Web Services, Software System Penetration Testing, Cyber Security, Python (Programming Language), Software Product Management, Azure Machine Learning, Test Case, Scripting, Backend, Virtual Agents, Serverless Computing - **Published:** May 16, 2026 - **Apply:** https://es.indeed.com/viewjob?jk=b7e2ad9dee98468e ## About the Role Do you have experience in Scripting?, * 7+ years of experience in cybersecurity, with a heavy focus on advanced web application penetration testing * The "Consultant Mindset": Proven experience in a client-facing role (e.g., as a Security Consultant or Pre-Sales Engineer) where you have presented technical findings to external stakeholders * Technical Depth: Ability to identify complex, business-logic-driven vulnerabilities that automated scanners miss (multi-stage auth bypass, complex injection flaws) * Automation Skills: Solid Python scripting skills to build security tools and automate workflows * Startup DNA: You are proactive, flexible, and comfortable with the "controlled chaos" of a fast-growing startup. You don't just wait for tasks; you challenge requirements and propose better ways to work Desirable: * Experience securing AI/ML platforms or serverless architectures * Expertise in AWS, GCP, or Kubernetes security * Industry-standard certifications (OSCP, OSEP, CISSP) Personal skills: * Resilience & Composure: You stay calm during live demos and can pivot the conversation if a technical tool behaves unexpectedly * The Proactive Challenger: You are willing to push back on inappropriate work assignments and "challenge" the status quo to ensure the product stays on the right path * Bilingual Skills: You speak "Developer," "Hacker," and "Business" fluently, Penetration Testing Python Security Policies / Procedures / Standards ## Description As an Expert Cyber Security Engineer at client, you are more than just a tester; you are the bridge between our cutting-edge AI security product and our most sophisticated global clients. This role is a unique 50/50 split between deep-core security research and high-impact customer engagement. You will help us move beyond traditional, one-off pentesting toward an AI-first model of continuous validation. You will challenge our AI agent's findings, expand upon its capabilities, and lead the technical conversation with our customers to prove the value of AI-driven security. Responsibilities: * Strategic Customer Advisory (50%): * Act as the "Face of Security" for Tenzai during POCs and deep-dive technical sessions with external stakeholders + Present complex security findings and AI-generated insights to sophisticated clients, helping them interpret risks and prioritize remediation + Navigate the nuances of an early-stage AI product, confidently managing client expectations and demonstrating the system's evolving capabilities * Offensive Security Research (30%): * Perform manual, hands-on penetration testing to validate and expand upon the AI agent's findings + Investigate the "edge cases" where AI might hallucinate or miss logic-driven flaws, providing the human expertise needed to ensure 100% accuracy + Conduct vulnerability research across complex web applications and modern cloud-native infrastructures * Product R&D & Innovation (20%): + Collaborate directly with the development team to improve the AI agent's scanning methodology, coverage, and test case validation + Build security tools, scripts (Python), and prototypes to automate repetitive testing tasks and enhance the backend engine, * Care: your mental and physical health is our priority. We ensure comprehensive company-paid medical insurance and 4 additional undocumented sick leave days * Tailored education path: boost your skills and knowledge with our regular internal events (meetups, conferences, workshops), Udemy license, language courses and company-paid certifications * Growth environment: share your experience and level up your expertise with a community of skilled professionals, locally and globally * Flexibility: Own your schedule - you are the one to decide when to start your working day. Just don't miss your regular team stand-up. We are there to support your work-life balance and provide 23 vacation days & short Fridays * Opportunities: we value our specialists and always find the best options for them. Our Internal Mobility Program helps change a project if needed to help you grow, excel professionally and fulfill your potential * Global impact: work on large-scale projects that redefine industries with international and fast-growing clients * Welcoming environment: feel empowered with a friendly team, open-door policy, informal atmosphere within the company and regular team-building events ## Related Videos - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Developing the Backend with Stefan Lingler, CTO at Shpock](https://www.wearedevelopers.com/videos/100360-developing-the-backend-with-stefan-lingler-cto-at-shpock) - [AIQSpecFlow: Improves and automates your agile process of specification and creation of testcases.](https://www.wearedevelopers.com/videos/100084-aiqspecflow-improves-and-automates-your-agile-process-of-specification-and-creation-of-testcases) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Nest.js - TypeScript in the backend can also be clean](https://www.wearedevelopers.com/videos/1033-nest-js-typescript-in-the-backend-can-also-be-clean) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Why Upskilling And Reskilling is Important For Developers](https://www.wearedevelopers.com/magazine/428-why-upskilling-and-reskilling-is-important-for-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed)